Virtual Terminal Authorization for Secure Element Crypto Operations
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional data transfer systems require dedicated hardware devices like dongles for secure data transfers, lacking authorization controls and exposing sensitive data to potential security and privacy risks.
Innovation Solution
A virtual terminal hosted by a secure element on a multipurpose device, integrated into mobile devices, uses an authorizer application to authorize cryptographic operations, ensuring secure data transfers without separate hardware, and enabling authorization checks through a backend server.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If dedicated hardware devices like dongles are used for secure data transfers, then data security is improved, but device complexity and portability are worsened
Solution Approach 1:
The patent merges the secure element that performs cryptographic operations with the authorization management functionality into a single integrated component within the mobile device. This eliminates the need for separate dedicated hardware devices like dongles, while maintaining data security through the secure element's cryptographic capabilities and authorization controls.
Solution Approach 2:
The secure element is designed to perform multiple functions: it executes cryptographic applets for data encryption/decryption, manages authorization tokens, and controls access to sensitive operations. This multi-functional approach replaces the need for specialized dedicated hardware devices, reducing overall system complexity while maintaining security.
2Reliability
If dedicated hardware devices are used for secure data transfers, then authorization control is improved, but ease of operation is worsened
Solution Approach 1:
The secure element autonomously manages authorization by executing cryptographic applets and verifying authorization tokens without requiring external hardware intermediaries. The system automatically handles authorization checks for cryptographic operations, eliminating the need for users to manually manage separate authorization devices while maintaining robust control.
3Reliability
If separate hardware devices are used for cryptographic operations, then security is improved, but loss of time in operations is worsened
Solution Approach 1:
By combining the secure element with authorization management capabilities within the same device, the patent eliminates the time required for communication and coordination between separate hardware devices. Cryptographic operations and authorization checks occur within the same integrated system, reducing operational delays while maintaining security.
Data Source
AI summary
Techniques for using an authorizer in a virtual terminal on a multipurpose device to authorize operations of a cryptographic applet in a secure element associated with the multipurpose device are described herein. These techniques include receiving an authorization token and setting authorization criteria for the operation of the cryptographic applet based on the authorization token.


