EP2337300A1

Method of Securely Transferring Services Between Mobile Devices

Abstract

A method for securely transferring a service from a first mobile device to a second mobile device, the service being associated with a server configured for facilitating provisioning of services to mobile devices over a wireless communications network. The method includes generating in the first mobile device a shared key, the shared key being generated using a master key unique to the server and to the first mobile device, the master key being accessible by the server and by the first mobile device; and sending said shared key from the first mobile device to the second mobile device using an alternate communication mechanism independent from the server.

EP2337300A1, drawing sheet 1
Sheet 1 of 8

Term

3.2 yearsto projected expiry

Projected expiry 21 December 2029, counted from filing; an application has no term until it is granted.

  1. Priority and filed
  2. Published
  3. Today
  4. Projected expiry

12 claims: 6 independent, 6 dependent

  1. 1
    A method for transferring a service (144) from a first mobile device (201 a) to a second mobile device (201b), the service (144) being associated with a server configured for facilitating provisioning of services to mobile devices over a wireless communications network (101), the method comprising:generating (327) in the first mobile device (201a) a shared key, the shared key being generated using a master key unique to the server and to the first mobile device (201a), the master key being accessible by the server and by the first mobile device (201a);and sending (328) said shared key from the first mobile device (201a) to the second mobile device (201b) using an alternate communication mechanism independent from the server.
  2. 7
    The method as claimed in any preceding claim, further comprising, prior to said sending (328), encrypting or signing said shared key.
  3. 9
    The method as claimed in any preceding claim, further comprising:authenticating, by the server, the shared key from the second mobile device (201b);and sending (330) the master key from the server to the second mobile device (201b) upon successful authentication.
  4. 10
    The method as claimed in any preceding claim, the method further comprising:encrypting or signing (322) data (227) of the first mobile device (201 a) using a first key resulting in encrypted or signed data;encrypting or signing (326) the first key using the master key resulting in an encrypted or signed first key;and sending (328) said encrypted or signed data and said encrypted or signed first key from the first mobile device (201a) to the second mobile device (201b) using the alternate communication mechanism independent from the server.
  5. 11
    The method as claimed in any preceding claim, wherein said sending (328) of said shared key using the alternate communication mechanism comprises storing said shared key to a removable memory, and removing said removable memory from the first mobile device (201 a) for reading by the second mobile device (201b).
  6. 12
    A mobile device (201), comprising:a controller (240) for controlling operation of the device (201);a communication subsystem (211) connected to the controller (240) configured for data communication with a wireless communication network (101), the wireless communication network including a service (144) associated with a server configured for facilitating provisioning of services to mobile devices over the wireless communications network (101);and a memory (244) for storage of data (227) and accessible by the controller (240), the controller (240) being configured for performing the method as claimed in any one of claims 1 to 8 and 10 to 11.