EP1737181A1

Apparatus, method and computer program product for controlling the usability of an application module by means of security module

Abstract

Es wird für ein Kommunikationsendgerät (10) ein Sicherheitsmodul (1) vorgeschlagen, das eingerichtet ist, ein Telekommunikationsnetz (2) zu authentifizieren. Das Sicherheitsmodul (1) umfasst ein Sperrmodul (12) zum Aufheben der Nutzbarkeit des Applikationsmoduls (11), ein Freigabemodul (13) zum Wiederherstellen der Nutzbarkeit des Applikationsmoduls (11), und ein Steuermodul (14) zum Aktivieren des Freigabemoduls (13) abhängig von empfangenen Daten, die authentifizierbar einem bestimmten Telekommunikationsnetz (2) zuweisbar sind. Das Steuermodul (14) ist eingerichtet, das Sperrmodul (12) abhängig von der Selektion und Benutzung des Applikationsmoduls (11) zu aktivieren. Das Steuermodul (14) ist eingerichtet, das Freigabemodul (13) abhängig vom Empfang von authentifizierbaren Berechtigungsmeldungen oder Authentifizierungsdaten vom Telekommunikationsnetz (2) zu aktivieren. Durch die Freigabe oder Aufhebung der Nutzbarkeit eines Applikationsmoduls (11) abhängig von Daten, die authentifizierbar einem bestimmten Telekommunikationsnetz (2) zuweisbar sind, kann die Nutzung von netzunabhängigen Applikationen an die Nutzung eines bestimmten Telekommunikationsnetzes angebunden werden.

EP1737181A1, drawing sheet 1
Sheet 1 of 5

Term

Term ended

Projected expiry passed 23 June 2025, 1.3 years ago.

  1. Priority and filed
  2. Published
  3. Projected expiry
  4. Today

13 claims: 3 independent, 10 dependent

  1. c-de-0001
    Security module (1) is adapted for a communication terminal (10), which security module (1) to authenticate a telecommunications network (2), and that the security module (1) comprises at least one application module usable (11), marked by a locking module (12) for canceling the usability of the application module (11), a release module (13) to restore the usability of the application module (11), and a control module (14) for activating the release module (13) depending on the received data, the authenticated a particular telecommunications network (2) can be assigned.
  2. c-de-0003
    Security module (1) according to one of claims 1 or 2, characterized in that the control module (14) is arranged to activate the enable module (13) in response to one of:received authorization message that is authenticated and the specific telecommunications network (2) assignable, and received authentication data to the specific telecommunications network (2) assignable.
  3. c-de-0004
    Security module (1) according to one of claims 1 to 3, characterized in that the lock module (12) is arranged to pick up the usability of the application module (11) by one of:Disable, Blocking, Hiding, hibernate, and uninstalling the application module (11), and that the enable module (13) is arranged, the usability of the application module ( 11) recover accordingly by one of: activating, deblocking, listing, waking and install the application module (11).
  4. c-de-0005
    Security module (1) according to one of claims 1 to 4, characterized in that it comprises at least an expiration register (15) that is associated with one or more application modules (11), and that the control module (14) is arranged to store in the expiration register (15) updated information from at least one of:number of uses of the application module (11 ), number of selections of the application module (11), number of uses functions of the application module (11), number of sessions through a logical channel of the application module (11), number of resetting cycles of the security module (1) and time.
  5. c-de-0006
    Security module (1) according to one of claims 1 to 5, characterized in that it comprises at least an authorization register (16) that is associated with one or more application module (11), and that the control module (14) is arranged to store in the privilege registers (16) information on at least one of:legitimate number uses of the application module (11 ), authorized number selections of the application module (11), authorized number uses of functions of the application module (11), entitled number sessions through a logical channel of the application module (11), authorized number reset cycles of the security module (1) and authorized period.
  6. c-de-0007
    Security module (1) according to one of claims 1 to 6, characterized in that it is designed as a device, in particular a chip card, which is removably connectable to the communication terminal (10).
  7. c-de-0008
    Security module (1) according to one of claims 1 to 7, characterized in that it is implemented as a computer program product comprising computer program code means for controlling one or more processors of the communication terminal (10).
  8. c-de-0009
    Security module (1) according to one of claims 1 to 8, characterized in that it is embodied as a subscriber identity module, and in that it is performed for a mobile, fitted for mobile networks communication terminal (10).
  9. c-de-0010
    A computer program product comprising:computer program code means for controlling one or more processors of a security module (1) for a communication terminal (10), which security module (1) is adapted to authenticate a telecommunications network (2), and that the security module (1) at least a usable application module (11 ) comprises, in such a way that the security module (1) performs a lifting of the usability of the application module (11), that the security module (1) performs a restoring the usability of the application module (11), and that the security module (1) restoring the usability of the application module (11) is activated depending on the received data, the authenticatable a particular telecommunications network (2) are assignable ,
  10. c-de-0011
    A method for controlling the usability of an application module (11), wherein the application module (11) in a security module (1) for a communication terminal (10) is arranged, and wherein the security module (1) is arranged to authenticate a telecommunications network (2), marked by Picked up the usability of the application module (11) by a locking module (12) of the security module (1), Restoring the usability of the application module (11) by a release module (13) of the security module (1), and Enabling of restoring the viability of by a control module (14) of the security module (1) depending on the received data, the authenticated a particular telecommunications network (2) can be assigned.
  11. c-de-0013
    A method according to any one of claims 11 or 12, characterized in that Restoring the utility is activated dependent on one of:received authorization message that authenticated the specific telecommunications network (2) is assignable, and received authentication data to the specific telecommunications network (2) assignable.