首页> 外文会议>Conference on Mobile and Secure Services >Manage your own security domain on your smartphone
【24h】

Manage your own security domain on your smartphone

机译:在智能手机上管理自己的安全域

获取原文

摘要

Mobile network operators' role as keystone players in the smartphone ecosystem is challenged by other actors and technologies that aim to reduce the importance of the Universal Integrated Circuit Card (also known as SIM card). Modern Universal Integrated Circuit Cards are Java Cards that also include a Global Platform conformant Secure Element, usually under the mobile operator's control. We argue that mobile operators still have the opportunity to defend their role by offering easy access for customers and service providers to the Secure Element on the Universal Integrated Circuit Card for storing data and executing applications with high demands for security. The mobile operators could let the customers or service providers own and manage their private Global Platform specified supplementary security domain on the Secure Element. Such access to supplementary security domains on the Universal Integrated Circuit Card can enable new ecosystems and new business models created around this asset. This paper describes a novel smartphone, customer and service provider oriented, technical approach to management of the secure element. We have designed and implemented SecurePlay, a client side, proxy based "lightweight" Trusted Service Manager prototype and have successfully used it to manage Secure Elements on Universal Integrated Circuit Cards in the Telenor operated mobile phone network in Norway. SecurePlay allow operators to cost efficiently enable end users' ownership and operation of their own private security. Implementation details of a proof-of-concept prototype are presented.
机译:移动网络运营商在智能手机生态系统中扮演主要角色的角色受到旨在降低通用集成电路卡(也称为SIM卡)重要性的其他参与者和技术的挑战。现代通用集成电路卡是Java卡,通常还包括在移动运营商的控制下的,符合Global Platform标准的安全元素。我们认为,移动运营商仍然可以通过为客户和服务提供商提供对通用集成电路卡上的Secure Element的轻松访问权限来捍卫自己的角色,以存储数据并执行对安全性有很高要求的应用程序。移动运营商可以让客户或服务提供商拥有并管理他们在Secure Element上指定的私有全球平台补充安全域。对通用集成电路卡上的补充安全域的这种访问可以启用围绕该资产创建的新生态系统和新业务模型。本文介绍了一种新颖的面向智能手机,面向客户和服务提供商的技术方法来管理安全元素。我们已经设计并实现了SecurePlay,这是一种基于客户端,基于代理的“轻量级”可信服务管理器原型,并已成功地使用它来管理挪威Telenor运营的移动电话网络中通用集成电路卡上的安全元件。 SecurePlay使运营商可以经济高效地实现最终用户对自己的私有安全的所有权和运营。提出了概念验证原型的实现细节。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号