CA2575288A1

Method and system for coordinating client and host security modules

Abstract

This record has no abstract on file.

CA2575288A1, drawing sheet 1
Sheet 1 of 7

Term

Term ended

Projected expiry passed 10 November 2024, 1.9 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

23 claims: 23 independent, 0 dependent

  1. 1
    CA 02575288 2007-01-26 WO 2006/010239 PCT/CA2004/001943 WHAT IS CLAIMED IS:1. A method for coordinating a client security module with a host security module, wherein both modules are resident on a mobile electronic device, the method comprising the steps of: detecting a lock event;implementing a first lock operation by one of the client security module and the host security module;sending a lock command from said one of the client security module and the host security module to the other of the client security module and the host security module;and initiating a lock operation at said other of the client security module and the host security module in response to said lock command.
  2. 2
    The method claimed in claim 1, wherein said step of detecting a lock event includes alerting the client security module to said lock event, and wherein said step of implementing includes implementing a client lock by the client security module.
  3. 3
    The method claimed in claim 2, wherein said step of alerting the client security module to the lock event comprises calling an application programming interface for alerting the client security module to the lock event.
  4. 4
    The method claimed in claim 1, wherein said step of sending comprises sending the lock command through a platform abstraction layer.
  5. 5
    The method claimed in claim 1, wherein said step of sending comprises calling an application programming interface for instructing said other of the client security module and the host security module to perform a second lock.
  6. 6
    The method claimed in claim 1, wherein said step of initiating a lock operation comprises launching a security screen.
  7. 7
    The method claimed in claim 1, wherein said step of initiating a lock operation comprises locking a keypad. -18CA 02575288 2007-01-26 WO 2006/010239 PCT/CA2004/001943
  8. 8
    The method claimed in claim 1, wherein said step of implementing a first lock operation comprises preventing user access to data stored on the device.
  9. 9
    A method for coordinating a client security module with a host security module, wherein both modules are resident on a mobile electronic device, the method comprising the steps of:receiving a user security input;validating said received user security input;performing a first unlock operation by one of the client security module and the host security module;sending an unlock command from said one of the client security module and the host security module to the other of the client security module and the host security module;and initiating a second unlock operation at said other of the client security module and the host security module in response to said unlock command.
  10. 10
    The method claimed in claim 9, wherein said step of validating is performed by the client security module.
  11. 11
    The method claimed in claim 9, wherein said step of sending comprises sending the unlock command through a platform abstraction layer.
  12. 12
    The method claimed in claim 11, wherein said platform abstraction layer comprises a plurality of application programming interfaces, and wherein said step of sending the unlock command comprises calling one of said application programming interfaces.
  13. 13
    The method claimed in claim 9, wherein said step of performing a first unlock operation comprises permitting user access to data stored on the device.
  14. 14
    The method claimed in claim 9, wherein said step of initiating a second unlock operation comprises permitting user access to host-side applications. -19CA 02575288 2007-01-26 WO 2006/010239 PCT/CA2004/001943
  15. 15
    The method claimed in claim 9, further including steps of detecting an input event and, in response to said input event, displaying a dialog for receiving said user security input.
  16. 16
    The method claimed in claim 15, wherein said step of detecting an input event includes alerting the client security module to detection of the input event, and wherein said step of displaying said user interface is performed by said client security module.
  17. 17
    A mobile electronic device, comprising:a host operating system;a host security module, wherein the host operating system and the host security module are resident on a host-side of the device;a client application, the client application including a client security module, wherein the client application is resident on a client-side of the device;and an abstraction interface layer between the client-side and the host-side, said abstraction layer including a plurality of application programming interfaces for exchanging communications between the client security module and the host security module.
  18. 18
    The mobile electronic device claimed in claim 17, wherein said client security module includes a component for implementing a client-side lock operation in ' response to a lock event and for calling one of said application programming interfaces for instructing said host security module to implement a host-side lock operation.
  19. 19
    The mobile electronic device claimed in claim 18, wherein said host security module includes a component for performing a host lock operation in response to said call from said client security module.
  20. 20
    The mobile electronic device claimed in claim 17, wherein said client security module includes a component for unlocking the client-side of the device in response to a valid password and for calling one of said application programming interfaces for instructing said host security module to unlock the host-side of the device. -20CA 02575288 2007-01-26 WO 2006/010239 PCT/CA2004/001943
  21. 21
    The mobile electronic device claimed in claim 20, wherein said host security module includes a component for performing a host unlock operation in response to said call from said client security module.
  22. 22
    The mobile electronic device claimed in claim 17, wherein said application programming interfaces include an application programming interface for requesting validation of a password.
  23. 23
    The mobile electronic device claimed in claim 20, wherein said host security module includes an unlock component for operation on start-up of the device, wherein said unlock component receives an input password and calls said application programming interface for requesting validation of said input password.
Independent claims23