Nova Patents
EP1510901A2

Secure data management apparatus

Abstract

A secure data management apparatus capable of improving reliability and certainty of synchronization processing with the server, security of data, and reliability of time, and performing data management with high reliability and high security. In the apparatus, a data management card application (301) on an IC card (102) issues MTA (Master Trusted Agent) (200) that is a terminal application operating on the terminal (101) to the terminal (101). The MTA (200) embeds authentication information in the code of the data management application (201) that is a terminal application for executing data synchronization processing with a server (103) to start up the data management application (201). Based on the authentication information, the data management card application (301) authenticates the data management application (201), and the data management application (201) stores target data of the synchronization processing in the IC card (102). Based on the target data stored in the IC card (102), the data management application (201) performs the synchronization processing with the server (103).

EP1510901A2, drawing sheet 1
Sheet 1 of 36

Term

Term ended

Projected expiry passed 18 August 2024, 2.1 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

28 claims: 3 independent, 25 dependent

  1. 1
    A secure data management apparatus comprised of a secure device (102) that executes storage and calculation of data in a confidential state, and an information processing terminal (101) to which the secure device (102) is attached, wherein the secure device (102) comprises:a card processing module (106) that issues to the information processing terminal (101) an application (200) for controlling startup of an application that operates on the information processing terminal (101);and a card storage device (107) that stores data of the application (200), the information processing terminal (101) comprises a storage device (105) that stores actual data and data of a data management application (201) that manages the actual data, and starts up the application (200) issued by the secure device (102), the application (200) initiated and the secure device (102) mutually perform authentication, the application (200) authenticated by the secure device (102) starts up the data management application (201), the data management application (201) initiated and the secure device (102) mutually perform authentication, and the data management application (201) authenticated by the secure device (102) performs synchronization processing of the actual data with an external server (103).
  2. 14
    A secure data management apparatus comprised of a secure device (102) that executes storage and calculation of data in a confidential state, and an information processing terminal (101) to which the secure device (102) is attached, wherein the secure device (102) comprises:a card processing module (106) that issues to the information processing terminal (101) an application (200) for controlling startup of an application that operates on the information processing terminal (101);and a card storage device (107) that stores data of the application (200), the application (200) comprises: a time acquisition section (206) that acquires current time from a server (103) on a network, and a time count section (207) that counts current time on the information processing terminal (101), the information processing terminal (101) starts up the application (200) issued by the secure device (102), the application (200) initiated and the secure device (102) mutually perform authentication, the time acquisition section (206) of the application (200) authenticated by the secure device (102) acquires the current time from the server (103) to set the time count section (207), and the time indicated by the time count section (207) is set as the current time.
  3. 19
    A secure data management apparatus comprised of a secure device (3001) that executes storage and calculation of data in a confidential state, and an information processing terminal (101) to which the secure device (3001) is attached, wherein the secure device (3001) comprises:a card processing module (3002) that issues to the information processing terminal (101) an application (3200) for controlling startup of an application that operates on the information processing terminal (101);and a secure storage device (3003) that stores data of the application (3200), actual data and data of a data management application (3201) that manages the actual data, the information processing terminal (101) starts up the application (3200) issued by the secure device (3001), the application (3200) initiated and the secure device (3001) mutually perform authentication, the application (3200) authenticated by the secure device (3001) starts up the data management application (3201), the data management application (3201) initiated and the secure device (3001) mutually perform authentication, and the data management application (3201) authenticated by the secure device (3001) performs synchronization processing of the actual data with an external server (103).