CA2890673C

Systems, methods, and computer program products for interfacing multiple service provider trusted service managers and secure elements

Abstract

System, methods, and computer program products are provided for interfacing between one of a plurality of service provider (SP) trusted service managers (TSM) and one of a plurality of secure elements (SE). A first request to renew a service is received from an SP system over a communications network. The first request includes a service qualifier associated with the service. A secure element corresponding to the service qualifier is determined. A second request to delete data associated with the service qualifier from the secure element is transmitted to the secure element. A third request to install an application on the secure element is transmitted to the secure element. A fourth request to activate the application on the secure element is transmitted to the secure element.

CA2890673C, drawing sheet 1
Sheet 1 of 14

Term

7 yearsleft in the term

Expires 17 September 2033.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Expires

29 claims: 4 independent, 25 dependent

  1. 1
    -52What is claimed is:1. A system to interface between one of a plurality of service provider computing systems and one of a plurality of secure elements, comprising: a trusted service manager comprising at least one memory and a processor communicatively coupled to the at least one memory, wherein the processor executes application code instructions that are stored in the at least one memory to cause the system to: receive, from a service provider computing system over a communications network, a request to renew a service, the request to renew the service comprising a service qualifier associated with the service;determine a secure element that corresponds to the service qualifier associated with the service;transmit, to the secure element, a request to delete data associated with the service qualifier from the secure element;transmit, to the secure element, a request to install an instance of an application associated with the service on the secure element;transmit, to the secure element, a request to extradite the instance of the application associated with the service to a security domain on the secure element associated with the service provider computing system;and transmit, to the service provider computing system, a response comprising an indication whether the request to renew the service was successfully processed.
  2. 4
    5. The system of claim 4, wherein the request to install the instance of the application comprises instructions for creating the instance of the application based on the service identifier.
  3. 5
    6. A method to interface between one of a plurality of service provider computing systems and one of a plurality of secure elements, comprising:receiving, by a trusted service manager computing system and from a service provider computing system over a communications network, a request to renew a service, the request to renew the service comprising a service qualifier associated with the service;determining, by the trusted service manager computing system, a secure element that corresponds to the service qualifier associated with the service;transmitting, by the trusted service manager computing system and to the secure element, a request to delete data associated with the service qualifier from the secure element;transmitting, by the trusted service manager computing system and to the secure element, a request to install an instance of an application associated with the service on the secure element, the application instantiated for two or more of a plurality of service providers;transmitting, by the trusted service manager computing system and to the secure element, a request to extradite the instance of the application associated with the service to a security domain on the secure element associated with the service provider computing system;and transmitting, by the trusted service manager computing system and to the service provider computing system, a response comprising an indication whether the request to renew the service was successfully processed. CA 2890673 2011-07-26 -547. The method of claim 6, further comprising updating, by the trusted service manager computing system, the status of the service in at least one memory of the trusted service manager computing system.
  4. 6
    8. The method of claim 6, wherein the request to renew the service is received from the service provider computing system via an enterprise service bus.
  5. 9
    11. A computer program product, comprising:a non-transitory computer-readable medium having computer-readable program instructions embodied therein that when executed by a computer cause the computer to interface between one of a plurality of service provider computing systems and one of a plurality of secure elements, the computer-readable program instructions comprising: computer-readable program instructions to receive, by a trusted service manager computing system and from a service provider computing system over a communications network, a request to renew a service, the request to renew the service comprising a service qualifier associated with the service;computer-readable program instructions to determine, by the trusted service manager computing system, a secure element that corresponds to the service qualifier associated with the service;computer-readable program instructions to transmit, by the trusted service manager computing system and to the secure element, a request to delete data associated with the service qualifier from the secure element;CA 2890673 2017-07-26 -55computer-readable program instructions to transmit, by the trusted service manager computing system and to the secure element, a request to install an instance of an application associated with the service on the secure element;computer-readable program instructions to transmit, by the trusted service manager computing system and to the secure element, a request to extradite the instance of the application associated with the service to a security domain on the secure element associated with the service provider computing system;and computer-readable program instructions to transmit, by the trusted service manager computing system and to the service provider computing system, a response comprising an indication whether the request to renew the service was successfully processed.
  6. 11
    13. The computer-readable medium of claim 11, wherein request to renew the service is received from the service provider computing system via an enterprise service bus.
  7. 16
    19. The method of claim 16, further comprising receiving, by the trusted service manager computing system, a pre-personalization request from the service provider computing system, the pre-personalization request comprising a request to create the security domain on the secure element that corresponds to the service provider.
  8. 19
    23. A computer program product, comprising:a non-transitory computer-readable medium having computer-readable program instructions embodied therein that when executed by a computer cause the computer to interface between one of a plurality of service provider computing systems and one of a plurality of secure elements, the computer-readable program instructions comprising: computer-readable program instructions to receive, by a trusted service manager computing system and from a service provider computing system, a request to activate a service;computer-readable program instructions to transmit, by the trusted service manager computing system and to a secure element, a request to create a security domain on the secure element that corresponds to the service provider;computer-readable program instructions to transmit, by the trusted service manager computing system and to the secure element, a request to extradite an instance of an application associated with the service to the security domain on the secure element associated with the service provider computing system, the application instantiated for two or more of a plurality of service providers;and computer-readable program instructions to transmit, by the trusted service manager computing system and to the service provider computing system, a response comprising an indication whether the request to activate the service was successfully processed.
  9. 23
    28. The computer program product of claim 23, wherein the request to install the instance ofthe application comprises instructions for creating the instance of the application based on the service identifier.
  10. 25
    30. A system to interface between one of a plurality of service provider computing systems and one of a plurality of secure elements, comprising:a trusted service manager comprising at least one memory and a processor communicatively coupled to the at least one memory, wherein the processor executes application code instructions that are stored in the at least one memory to cause the system to: receive, from a service provider computing system, a request to activate a service;CA 2890673 2017-07-26 -59transmit, to the secure element, a request to create a security domain on the secure element that corresponds to the service provider;transmit, to the secure element, a request to extradite an instance of an application associated with the service to the security domain on the secure element associated with the service provider computing system, the application instantiated for two or more of a plurality of service providers;and transmit, to the service provider computing system, a response comprising an indication whether the request to activate the service was successfully processed.