[go: up one dir, main page]

CN103051456A - Method for managing application procedures in intelligent secure digital (SD) card and system - Google Patents

Method for managing application procedures in intelligent secure digital (SD) card and system Download PDF

Info

Publication number
CN103051456A
CN103051456A CN2012105720866A CN201210572086A CN103051456A CN 103051456 A CN103051456 A CN 103051456A CN 2012105720866 A CN2012105720866 A CN 2012105720866A CN 201210572086 A CN201210572086 A CN 201210572086A CN 103051456 A CN103051456 A CN 103051456A
Authority
CN
China
Prior art keywords
card
intelligent
client
authentication information
user
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2012105720866A
Other languages
Chinese (zh)
Other versions
CN103051456B (en
Inventor
王濯尘
张靖
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
BEIJING DATANG SMART CARD Co Ltd
Original Assignee
BEIJING DATANG SMART CARD Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by BEIJING DATANG SMART CARD Co Ltd filed Critical BEIJING DATANG SMART CARD Co Ltd
Priority to CN201210572086.6A priority Critical patent/CN103051456B/en
Publication of CN103051456A publication Critical patent/CN103051456A/en
Application granted granted Critical
Publication of CN103051456B publication Critical patent/CN103051456B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Stored Programmes (AREA)

Abstract

The invention provides a method for managing the application procedures in an intelligent secure digital (SD) card and a system. The method comprises the following steps that when receiving an access request of a user to the intelligent SD card, a client terminal sends the access request to the intelligent SD card; the intelligent SD card requests the identity authentication information of the user to the client terminal; after receiving the identity authentication request of the intelligent SD card, the client terminal acquires the identity authentication information of the user, and sends the same to the intelligent SD card; the intelligent SD card compares the received identity authentication information of the user with reference identity authentication information which is stored locally; if the identity authentication information of the user is the same with the reference identity authentication information, the client terminal is allowed to acquire the identity information of the intelligent SD card; and after acquiring the identity information of the intelligent SD card, the client terminal initiates a management process to the application procedures of the intelligent card.

Description

A kind of method and system of managing application program in the intelligent SD card
Technical field
The present invention relates to computer application field, relate in particular to a kind of management method and system that in intelligent SD card, uses program.
Background technology
The SD card apparatus of standard is comprised of a high capability flash memory and a SD controller (SDC), and intelligent SD card is the New type of S D card apparatus (application number/patent No.: 200710045741) that has been embedded in a smart card (smart IC) chip at standard SD card apparatus.Exterior terminal equipment must carry out exchanges data (standard SD card function) by SDC and mass storage, perhaps carries out communication by SDC and intelligent SD card, and the guiding intelligent SD card carries out data processing operation.Be that SDC is unique interface that SD card (perhaps intelligent SD card) externally presents, internal data all is transmitted to exterior terminal equipment by SDC.
Intelligent SD card has been owing to embedded intelligent card chip in SD equipment, thereby had certain data-handling capacity.If service application presets in operator in the intelligent SD card of its distribution, the user just can enjoy the service that operator provides easily on the terminal equipment of supporting intelligent SD card.But the subject matter that present this scheme faces is, after intelligent SD card arrives the user, operator can only upgrade the service application in user's intelligent SD card in the business hall or change, and this mode is so that the user can't enjoy the up-to-date business service of operator easily.Along with the development of technology, mobile communication carrier begins to adopt over the air that service application in user's the SIM card is upgraded and upgrades, but this mode can be because unstable the causing of network condition be used renewal speed slowly or failure.Be not suitable for the applied business management in intelligent SD card.
Summary of the invention
The invention provides a kind of method and system of managing application program in the intelligent SD card, the technical problem that solve is to make the user can enjoy easily the respective services of operator when the service provider requires service security satisfying.
For solving the problems of the technologies described above, the invention provides following technical scheme:
A kind of method of managing application program in the intelligent SD card comprises:
When client to the user during to the access request of intelligent SD card, client sends described access request to described intelligent SD card;
Intelligent SD card is to client-requested user's authentication information;
Client is obtained user's authentication information after receiving the ID authentication request of intelligent SD card, and described authentication information is sent to described intelligent SD card;
Described intelligent SD card compares the user's that receives the authentication information benchmark authentication information with local storage;
If user's authentication information is identical with the benchmark authentication information, then allow described client to obtain the identity information of described intelligent SD card;
Described client is initiated the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card.
Preferably, described method also has following features: described client arrives before the access request of user to intelligent SD card, also comprises:
When the user accessed intelligent SD card first by client, intelligent SD card was initiated the user to the access register flow path of intelligent SD card in the terminal to client;
Client output access log-on message obtains the authentication information that the user accesses this intelligent SD card;
Client sends described authentication information to intelligent SD card;
Intelligent SD card will be accessed the authentication information that register flow path obtains and be preserved as the benchmark authentication information.
Preferably, described method also has following features: described client is initiated the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card, comprising:
User end to server sends the identity information of described intelligent SD card;
Described server obtains the application data of described intelligent SD card according to the information of described intelligent SD card, and described application data is sent to described client;
Described client is saved in described application data in the memory of intelligent SD card;
After the application data preservation was finished, the controller in the client notice SD card carried out fitting operation;
The controller of intelligent SD card after receiving installation order, the application data that adopts memory in intelligent SD card set up applications in the smart card, and installation results returned to client.
Preferably, described method also has following features:
Described server obtains the application data of described intelligent SD card, and described application data is sent to described client, comprising:
Described server adopts encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted, and the application data after described server will be encrypted is handed down to client;
The controller of described intelligent SD card adopts the application program of memory in the intelligent SD card to carry out fitting operation after receiving installation order, comprising:
Controller in the intelligent SD card adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
The intelligent SD card middle controller adopts the application data after the deciphering to carry out fitting operation.
Preferably, described method also has following features: described method also comprises:
The order of application program in the client deletion intelligent SD card, and will delete the order of application program in the intelligent SD card and send to controller in the described intelligent SD card;
Controller is deleted the application program on the smart card among the described intelligent SD according to the order of application program in the described deletion intelligent SD card, and returns the deletion result to client.
A kind of system that manages application program in the intelligent SD card, comprise portable terminal, wherein said portable terminal comprises processor and intelligent SD card, wherein said SD smart card comprises memory, controller and the smart card that links to each other successively, wherein said processor comprises client terminal device, link to each other with described controller, wherein:
The first sending module in the described client terminal device when being used for receiving the user to the access request of intelligent SD card, sends described access request to described intelligent SD card;
The first request module in the described controller links to each other with described the first sending module, is used for the authentication information to client terminal device request user;
The first acquisition module in the client terminal device links to each other with described the first request module, is used for obtaining user's authentication information, and described authentication information being sent to described intelligent SD card after receiving the ID authentication request of intelligent SD card;
The comparison module of described controller links to each other with described the first acquisition module, and the benchmark authentication information of storing for authentication information and this locality of the user that will receive compares;
The control module of described controller links to each other with described comparison module, if it is identical with the benchmark authentication information to be used for user's authentication information, then allows described client terminal device to obtain the identity information of described intelligent SD card;
Installation module in the described client terminal device is used for initiating the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card.
Preferably, described system also has following features: described system also comprises:
The first Registering modules of described controller is used for when the user accesses intelligent SD card first by client terminal device, initiates the user to the access register flow path of intelligent SD card in the terminal to client terminal device;
The second Registering modules of client terminal device links to each other with described the first Registering modules, is used for the output access log-on message, obtains the authentication information that the user accesses this intelligent SD card;
The second sending module in the client terminal device links to each other with described the second Registering modules, is used for sending described authentication information to intelligent SD card;
Preservation module in the described controller links to each other with described the second sending module, is used for accessing the authentication information that register flow path obtains and preserves as the benchmark authentication information.
Preferably, described system also has following features: described system also comprises server, wherein:
Described installation module comprises:
Transmitting element in the client terminal device is for the identity information that sends described intelligent SD card to server;
The second acquisition module in the described server links to each other with described transmitting element, is used for the information according to described intelligent SD card, obtains the application data of described intelligent SD card;
The 3rd sending module in the described server links to each other with described the second acquisition module, is used for described application data is sent to described client terminal device;
Storage unit in the described installation module is for the memory that described application data is saved in intelligent SD card;
Notification unit in the described installation module links to each other with described storage unit, is used for after the application data preservation is finished, and the controller in the client terminal device notice SD card carries out fitting operation;
The processing module of described controller is used for after receiving installation order, and adopting the application data of memory in the smart card is the smart card set up applications;
The 4th sending module of described processor links to each other with described processing module, is used for installation results is returned to client terminal device.
Preferably, described system also has following features:
Described the second acquisition module also comprises:
Ciphering unit is used for adopting encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted;
Wherein, the application data after described the 3rd sending module will be encrypted is handed down to client;
Described processing module also comprises:
Decryption unit adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
The intelligent SD card middle controller adopts the application data after the deciphering to carry out fitting operation.
Preferably, described system also has following features: described system also comprises:
Receiver module in the described client terminal device is used for receiving the order of deletion intelligent SD card application program;
The 5th sending module of described client links to each other with described receiver module, and the order that is used for deleting the intelligent SD card application program sends to the controller in the described smart card;
Respond module in the described controller links to each other with described the 5th sending module, is used for deleting the application program on the smart card among the described intelligent SD according to the order of described deletion intelligent SD card application program;
The 6th sending module in the described controller links to each other with described respond module, is used for returning the deletion result to client terminal device.
Compared with prior art, embodiment provided by the invention.The client that employing is installed on the terminal equipment manages the service application in the intelligent SD card; and by the user who uses this client being carried out the authentication management; the application program can not be modified or leak without authorization in the protection intelligent SD card, guarantees the data security of intelligent SD.
Description of drawings
Fig. 1 is the schematic flow sheet of the embodiment of the method for application program in the management intelligent SD card provided by the invention;
Fig. 2 is the structural representation of the system applies example of application program in the management intelligent SD card provided by the invention;
Fig. 3 is the mutual schematic diagram of the method application example of application program in the management intelligent SD card provided by the invention;
Fig. 4 is the structural representation of the system embodiment of application program in the management intelligent SD card provided by the invention.
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with the accompanying drawings and the specific embodiments.Need to prove that in the situation of not conflicting, the embodiment among the application and the feature among the embodiment be combination in any mutually.
Fig. 1 is the schematic flow sheet of the embodiment of the method for application program in the management intelligent SD card provided by the invention.Embodiment of the method shown in Figure 1 comprises:
When step 101, client to the user during to the access request of intelligent SD card, client sends described access request to described intelligent SD card;
Step 102, intelligent SD card are to client-requested user's authentication information;
Step 103, client are obtained user's authentication information after receiving the ID authentication request of intelligent SD card, and described authentication information is sent to described intelligent SD card;
Step 104, described intelligent SD card compare the user's that receives the authentication information benchmark authentication information with local storage;
If step 105 user's authentication information is identical with the benchmark authentication information, then allow described client to obtain the identity information of described intelligent SD card;
Step 106, described client are initiated the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card.
Compared with prior art, embodiment of the method provided by the invention.The client that employing is installed on the terminal equipment manages the service application in the intelligent SD card; and by the user who uses this client being carried out the authentication management; the application program can not be modified or leak without authorization in the protection intelligent SD card, guarantees the data security of intelligent SD.
The below is described further said method embodiment:
Fig. 2 is the structural representation of the system applies example of application program in the management intelligent SD card provided by the invention.
In Fig. 2, this client can be installed in computer, mobile phone etc. can the terminal equipment of accessing Internet on, can receive at any time service provider's new business information.This client adopts menu mode externally to show to the service application in blocking, and can show the state of each service application, for example whether installs, whether locks, whether needs renewal and card remaining space size etc.; Can trigger by menu button simultaneously the operation of service application, wherein by the client-requested intelligent SD card state of application program is informed to client, and by client by predefined displaying interface with these State-outputs, can represent the state of all application and trigger the operation of service application by menu.Wherein, smart card in the intelligent SD card adopts the Java card technology that meets the GP standard to realize, at the application data that needs by the client indication to install, controller can initiatively read application content to be installed in mass storage, and the data message after will resolving sends to smart card, the guiding smart card is finished to use and is installed, and externally exports installation results, namely shows relevant information at client software.Intelligent SD card carries out data interaction by SD interface and terminal equipment under the control of SDC, can externally not show mount message, user data and service provider's data in installation process, has therefore reached the effect of data confidentiality.
Wherein, described client arrives before the access request of user to intelligent SD card, also comprises:
When the user accessed intelligent SD card first by client, intelligent SD card was initiated the user to the access register flow path of intelligent SD card in the terminal to client;
Client output access log-on message obtains the authentication information that the user accesses this intelligent SD card;
Client sends described authentication information to intelligent SD card; Intelligent SD card will be accessed the authentication information that register flow path obtains and be preserved as the benchmark authentication information.
The flow process of above intelligent SD card being obtained the benchmark authentication information is illustrated, and this shows that the benchmark authentication information can be arranged according to individual demand by the user, is user-friendly to; And when this smart card is placed in other-end, also can realize the checking to the identity information of accessing this intelligent SD card, and because above-mentioned information is kept in the intelligent SD card, be stored in safety in the memory of terminal.
Certainly, this benchmark authentication information also can be notified the user by the publisher of intelligent SD card.
Unlike the prior art be, the present invention can realize dynamically updating application program in the intelligent SD card according to user's request, and wherein, described client is after obtaining the identity information of described intelligent SD card, initiation comprises the management process of the application program of described smart card:
User end to server sends the identity information of described intelligent SD card;
Described server obtains the application data of described intelligent SD card according to the information of described intelligent SD card, and described application data is sent to described client;
Described client is saved in described application data in the memory of intelligent SD card;
After the application data preservation was finished, the controller in the client notice SD card carried out fitting operation;
The controller of intelligent SD card after receiving installation order, the application data that adopts memory in intelligent SD card set up applications in the smart card, and installation results returned to client.
In order to guarantee the safety of installation, prevent leakage of information, described server obtains the application data of described intelligent SD card, and described application data is sent to described client, comprising:
Described server adopts encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted, and the application data after described server will be encrypted is handed down to client;
The controller of described intelligent SD card adopts the application program of memory in the intelligent SD card to carry out fitting operation after receiving installation order, comprising:
Controller in the intelligent SD card adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
The intelligent SD card middle controller adopts the application data after the deciphering to carry out fitting operation.
After installing application program, if need deletion, the safety for the data that guarantee intelligent SD proposes following scheme, and described method also comprises:
The order of application program in the client deletion intelligent SD card, and will delete the order of application program in the intelligent SD card and send to controller in the described intelligent SD card;
Controller is deleted the application program on the smart card among the described intelligent SD according to the order of application program in the described deletion intelligent SD card, and returns the deletion result to client.
Wherein, the order of deletion can be to issue delete command by client software to intelligent SD card by the user; Or the use term of validity of using expires and sends delete command by client software to the intelligent SD card that has connected by background server.
The below further specifies method provided above with a mutual schematic diagram:
Fig. 3 is the mutual schematic diagram of the method application example of application program in the management intelligent SD card provided by the invention.This flow process comprises:
When the user accessed intelligent SD card first by client, intelligent SD card was initiated the user to the access register flow path of intelligent SD card in the terminal to client;
Client output access log-on message obtains the authentication information that the user accesses this intelligent SD card;
Client sends described authentication information to intelligent SD card;
Intelligent SD card will be accessed the authentication information that register flow path obtains and be preserved as the benchmark authentication information;
When client during to the access request of intelligent SD card, sends described access request to described intelligent SD card to the user;
Intelligent SD card is to client-requested user's authentication information;
Client is obtained user's authentication information after receiving the ID authentication request of intelligent SD card, and described authentication information is sent to described intelligent SD card;
Described intelligent SD card compares the user's that receives the authentication information benchmark authentication information with local storage;
If user's authentication information is identical with the benchmark authentication information, then allow described client to obtain the identity information of described intelligent SD card;
Described client sends the identity information of described intelligent SD card to server after obtaining the identity information of described intelligent SD card;
Server obtains the application data of described intelligent SD card according to the identity information of described intelligent SD card;
Described server adopts encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted;
Application data after described server will be encrypted is handed down to client;
Application data after client software will be encrypted is saved in the mass storage of intelligent SD card;
After download was finished, the client notice was carried out the installation of application data;
SDC in the intelligent SD card adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
Adopt the application data after deciphering to carry out fitting operation in the intelligent SD card, and after finishing installation, notice client process result.
Certainly, server can also increase digital signature at application data, after the intelligent SD card middle controller received this application program, the legitimacy by the digital signature authentication of using being guaranteed use guaranteed that unwarranted service application can not be installed in the intelligent SD card.
In summary it can be seen that application example provided by the invention has following advantage:
Service application can download and install or delete easily;
A plurality of service providers' service application can be present in the intelligent SD card simultaneously;
Can protect the safety of service provider and user's critical data.
Fig. 4 is the structural representation of the system embodiment of application program in the management intelligent SD card provided by the invention.System shown in Figure 4 comprises portable terminal, wherein said portable terminal comprises processor and intelligent SD card, and wherein said SD smart card comprises memory, controller and the smart card that links to each other successively, and wherein said processor comprises client terminal device, link to each other with described controller, wherein:
The first sending module in the described client terminal device when being used for receiving the user to the access request of intelligent SD card, sends described access request to described intelligent SD card;
The first request module in the described controller links to each other with described the first sending module, is used for the authentication information to client terminal device request user;
The first acquisition module in the client terminal device links to each other with described the first request module, is used for obtaining user's authentication information, and described authentication information being sent to described intelligent SD card after receiving the ID authentication request of intelligent SD card;
The comparison module of described controller links to each other with described the first acquisition module, and the benchmark authentication information of storing for authentication information and this locality of the user that will receive compares;
The control module of described controller links to each other with described comparison module, if it is identical with the benchmark authentication information to be used for user's authentication information, then allows described client terminal device to obtain the identity information of described intelligent SD card;
Installation module in the described client terminal device is used for initiating the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card.
Wherein, described system also comprises:
The first Registering modules of described controller is used for when the user accesses intelligent SD card first by client terminal device, initiates the user to the access register flow path of intelligent SD card in the terminal to client terminal device;
The second Registering modules of client terminal device links to each other with described the first Registering modules, is used for the output access log-on message, obtains the authentication information that the user accesses this intelligent SD card;
The second sending module in the client terminal device links to each other with described the second Registering modules, is used for sending described authentication information to intelligent SD card;
Preservation module in the described controller links to each other with described the second sending module, is used for accessing the authentication information that register flow path obtains and preserves as the benchmark authentication information.
Optionally, described system also comprises server, wherein:
Described installation module comprises:
Transmitting element in the client terminal device is for the identity information that sends described intelligent SD card to server;
The second acquisition module in the described server links to each other with described transmitting element, is used for the information according to described intelligent SD card, obtains the application data of described intelligent SD card;
The 3rd sending module in the described server links to each other with described the second acquisition module, is used for described application data is sent to described client terminal device;
Storage unit in the described installation module is for the memory that described application data is saved in intelligent SD card;
Notification unit in the described installation module links to each other with described storage unit, is used for after the application data preservation is finished, and the controller in the client terminal device notice SD card carries out fitting operation;
The processing module of described controller is used for after receiving installation order, and adopting the application data of memory in the smart card is the smart card set up applications;
The 4th sending module of described processor links to each other with described processing module, is used for installation results is returned to client terminal device.
Optionally, described the second acquisition module also comprises:
Ciphering unit is used for adopting encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted;
Wherein, the application data after described the 3rd sending module will be encrypted is handed down to client;
Described processing module also comprises:
Decryption unit adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
The intelligent SD card middle controller adopts the application data after the deciphering to carry out fitting operation.
Optionally, described system also comprises:
Receiver module in the described client terminal device is used for receiving the order of deletion intelligent SD card application program;
The 5th sending module of described client links to each other with described receiver module, and the order that is used for deleting the intelligent SD card application program sends to the controller in the described smart card;
Respond module in the described controller links to each other with described the 5th sending module, is used for deleting the application program on the smart card among the described intelligent SD according to the order of described deletion intelligent SD card application program;
The 6th sending module in the described controller links to each other with described respond module, is used for returning the deletion result to client terminal device.
Compared with prior art, system embodiment provided by the invention.The client that employing is installed on the terminal equipment manages the service application in the intelligent SD card; and by the user who uses this client being carried out the authentication management; the application program can not be modified or leak without authorization in the protection intelligent SD card, guarantees the data security of intelligent SD.Because the user can manage intelligent SD card by the direct control client software, bring great convenience to the user simultaneously.
The above; be the specific embodiment of the present invention only, but protection scope of the present invention is not limited to this, anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; can expect easily changing or replacing, all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the described protection range of claim.

Claims (10)

1. a method of managing application program in the intelligent SD card is characterized in that, comprising:
When client to the user during to the access request of intelligent SD card, client sends described access request to described intelligent SD card;
Intelligent SD card is to client-requested user's authentication information;
Client is obtained user's authentication information after receiving the ID authentication request of intelligent SD card, and described authentication information is sent to described intelligent SD card;
Described intelligent SD card compares the user's that receives the authentication information benchmark authentication information with local storage;
If user's authentication information is identical with the benchmark authentication information, then allow described client to obtain the identity information of described intelligent SD card;
Described client is initiated the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card.
2. method according to claim 1 is characterized in that, described client arrives before the access request of user to intelligent SD card, also comprises:
When the user accessed intelligent SD card first by client, intelligent SD card was initiated the user to the access register flow path of intelligent SD card in the terminal to client;
Client output access log-on message obtains the authentication information that the user accesses this intelligent SD card;
Client sends described authentication information to intelligent SD card;
Intelligent SD card will be accessed the authentication information that register flow path obtains and be preserved as the benchmark authentication information.
3. method according to claim 1 is characterized in that, described client is initiated the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card, comprising:
User end to server sends the identity information of described intelligent SD card;
Described server obtains the application data of described intelligent SD card according to the information of described intelligent SD card, and described application data is sent to described client;
Described client is saved in described application data in the memory of intelligent SD card;
After the application data preservation was finished, the controller in the client notice SD card carried out fitting operation;
The controller of intelligent SD card after receiving installation order, the application data that adopts memory in intelligent SD card set up applications in the smart card, and installation results returned to client.
4. method according to claim 3 is characterized in that:
Described server obtains the application data of described intelligent SD card, and described application data is sent to described client, comprising:
Described server adopts encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted, and the application data after described server will be encrypted is handed down to client;
The controller of described intelligent SD card adopts the application program of memory in the intelligent SD card to carry out fitting operation after receiving installation order, comprising:
Controller in the intelligent SD card adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
The intelligent SD card middle controller adopts the application data after the deciphering to carry out fitting operation.
5. method according to claim 1 is characterized in that, described method also comprises:
The order of application program in the client deletion intelligent SD card, and will delete the order of application program in the intelligent SD card and send to controller in the described intelligent SD card;
Controller is deleted the application program on the smart card among the described intelligent SD according to the order of application program in the described deletion intelligent SD card, and returns the deletion result to client.
6. system that manages application program in the intelligent SD card, it is characterized in that, comprise portable terminal, wherein said portable terminal comprises processor and intelligent SD card, wherein said SD smart card comprises memory, controller and the smart card that links to each other successively, wherein said processor comprises client terminal device, links to each other with described controller, wherein:
The first sending module in the described client terminal device when being used for receiving the user to the access request of intelligent SD card, sends described access request to described intelligent SD card;
The first request module in the described controller links to each other with described the first sending module, is used for the authentication information to client terminal device request user;
The first acquisition module in the client terminal device links to each other with described the first request module, is used for obtaining user's authentication information, and described authentication information being sent to described intelligent SD card after receiving the ID authentication request of intelligent SD card;
The comparison module of described controller links to each other with described the first acquisition module, and the benchmark authentication information of storing for authentication information and this locality of the user that will receive compares;
The control module of described controller links to each other with described comparison module, if it is identical with the benchmark authentication information to be used for user's authentication information, then allows described client terminal device to obtain the identity information of described intelligent SD card;
Installation module in the described client terminal device is used for initiating the management process to the application program of described smart card after obtaining the identity information of described intelligent SD card.
7. system according to claim 6 is characterized in that, described system also comprises:
The first Registering modules of described controller is used for when the user accesses intelligent SD card first by client terminal device, initiates the user to the access register flow path of intelligent SD card in the terminal to client terminal device;
The second Registering modules of client terminal device links to each other with described the first Registering modules, is used for the output access log-on message, obtains the authentication information that the user accesses this intelligent SD card;
The second sending module in the client terminal device links to each other with described the second Registering modules, is used for sending described authentication information to intelligent SD card;
Preservation module in the described controller links to each other with described the second sending module, is used for accessing the authentication information that register flow path obtains and preserves as the benchmark authentication information.
8. system according to claim 6 is characterized in that, described system also comprises server, wherein:
Described installation module comprises:
Transmitting element in the client terminal device is for the identity information that sends described intelligent SD card to server;
The second acquisition module in the described server links to each other with described transmitting element, is used for the information according to described intelligent SD card, obtains the application data of described intelligent SD card;
The 3rd sending module in the described server links to each other with described the second acquisition module, is used for described application data is sent to described client terminal device;
Storage unit in the described installation module is for the memory that described application data is saved in intelligent SD card;
Notification unit in the described installation module links to each other with described storage unit, is used for after the application data preservation is finished, and the controller in the client terminal device notice SD card carries out fitting operation;
The processing module of described controller is used for after receiving installation order, and adopting the application data of memory in the smart card is the smart card set up applications;
The 4th sending module of described processor links to each other with described processing module, is used for installation results is returned to client terminal device.
9. system according to claim 8 is characterized in that:
Described the second acquisition module also comprises:
Ciphering unit is used for adopting encryption key corresponding to described application program and the corresponding security algorithm of this encryption key and security protocol, and described application data is encrypted;
Wherein, the application data after described the 3rd sending module will be encrypted is handed down to client;
Described processing module also comprises:
Decryption unit adopts decruption key corresponding to this application program and the corresponding security algorithm of this decruption key and security protocol, and described application data is decrypted;
The intelligent SD card middle controller adopts the application data after the deciphering to carry out fitting operation.
10. system according to claim 6 is characterized in that, described system also comprises:
Receiver module in the described client terminal device is used for receiving the order of deletion intelligent SD card application program;
The 5th sending module of described client links to each other with described receiver module, and the order that is used for deleting the intelligent SD card application program sends to the controller in the described smart card;
Respond module in the described controller links to each other with described the 5th sending module, is used for deleting the application program on the smart card among the described intelligent SD according to the order of described deletion intelligent SD card application program;
The 6th sending module in the described controller links to each other with described respond module, is used for returning the deletion result to client terminal device.
CN201210572086.6A 2012-12-25 2012-12-25 The method and system of application program in a kind of management intelligent SD card Expired - Fee Related CN103051456B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210572086.6A CN103051456B (en) 2012-12-25 2012-12-25 The method and system of application program in a kind of management intelligent SD card

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210572086.6A CN103051456B (en) 2012-12-25 2012-12-25 The method and system of application program in a kind of management intelligent SD card

Publications (2)

Publication Number Publication Date
CN103051456A true CN103051456A (en) 2013-04-17
CN103051456B CN103051456B (en) 2017-04-05

Family

ID=48063964

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210572086.6A Expired - Fee Related CN103051456B (en) 2012-12-25 2012-12-25 The method and system of application program in a kind of management intelligent SD card

Country Status (1)

Country Link
CN (1) CN103051456B (en)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103677931A (en) * 2013-12-19 2014-03-26 北京奇虎科技有限公司 Software moving method and device
CN103699853A (en) * 2013-12-27 2014-04-02 北京大唐智能卡技术有限公司 Smart SD (secure digital memory card) and control system and control method thereof
CN105005502A (en) * 2015-07-15 2015-10-28 上海斐讯数据通信技术有限公司 Method and system for ending SD card using process through kernel
CN105516136A (en) * 2015-12-08 2016-04-20 深圳市口袋网络科技有限公司 Authority management method, device and system
CN105610671A (en) * 2016-01-11 2016-05-25 北京奇虎科技有限公司 Terminal data protection method and device
CN107277794A (en) * 2017-06-09 2017-10-20 中国联合网络通信集团有限公司 Set up the method, device and mobile terminal of communication connection
CN107395365A (en) * 2017-08-04 2017-11-24 中国信息安全测评中心 A kind of card on-chip system and safety certifying method
CN111078331A (en) * 2018-10-18 2020-04-28 甲骨文国际公司 Adaptive authentication in a spreadsheet interface integrated with a WEB service

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN2824145Y (en) * 2005-08-05 2006-10-04 群联电子股份有限公司 ID card
WO2007071695A1 (en) * 2005-12-22 2007-06-28 Gemplus Processing proprietary data transmitted over a radio communication network to a mobile terminal under the control of a smart card
CN101819696A (en) * 2009-02-27 2010-09-01 中兴通讯股份有限公司 Application downloading system and method
CN101895572A (en) * 2010-06-28 2010-11-24 中兴通讯股份有限公司 Data interaction method and system between SD card and main control equipment
CN101931945A (en) * 2010-08-24 2010-12-29 武汉天喻信息产业股份有限公司 Download and installation method for realizing (U) SIM card application by using PC terminal
CN102184110A (en) * 2011-04-15 2011-09-14 中国联合网络通信集团有限公司 Identification and drive loading method and system of SD (Secure Digital) intelligent card
CN102646075A (en) * 2012-02-16 2012-08-22 兰宦泽 Storage card locking method and system

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN2824145Y (en) * 2005-08-05 2006-10-04 群联电子股份有限公司 ID card
WO2007071695A1 (en) * 2005-12-22 2007-06-28 Gemplus Processing proprietary data transmitted over a radio communication network to a mobile terminal under the control of a smart card
CN101819696A (en) * 2009-02-27 2010-09-01 中兴通讯股份有限公司 Application downloading system and method
CN101895572A (en) * 2010-06-28 2010-11-24 中兴通讯股份有限公司 Data interaction method and system between SD card and main control equipment
CN101931945A (en) * 2010-08-24 2010-12-29 武汉天喻信息产业股份有限公司 Download and installation method for realizing (U) SIM card application by using PC terminal
CN102184110A (en) * 2011-04-15 2011-09-14 中国联合网络通信集团有限公司 Identification and drive loading method and system of SD (Secure Digital) intelligent card
CN102646075A (en) * 2012-02-16 2012-08-22 兰宦泽 Storage card locking method and system

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103677931A (en) * 2013-12-19 2014-03-26 北京奇虎科技有限公司 Software moving method and device
CN103677931B (en) * 2013-12-19 2017-06-27 北京奇虎科技有限公司 Method and device for moving software
CN103699853B (en) * 2013-12-27 2017-01-04 北京大唐智能卡技术有限公司 A kind of intelligent SD card and control system thereof and method
CN103699853A (en) * 2013-12-27 2014-04-02 北京大唐智能卡技术有限公司 Smart SD (secure digital memory card) and control system and control method thereof
CN105005502B (en) * 2015-07-15 2018-07-17 上海斐讯数据通信技术有限公司 A kind of method and system terminated by kernel using SD card process
CN105005502A (en) * 2015-07-15 2015-10-28 上海斐讯数据通信技术有限公司 Method and system for ending SD card using process through kernel
CN105516136A (en) * 2015-12-08 2016-04-20 深圳市口袋网络科技有限公司 Authority management method, device and system
CN105516136B (en) * 2015-12-08 2019-05-24 深圳市口袋网络科技有限公司 Right management method, device and system
CN105610671A (en) * 2016-01-11 2016-05-25 北京奇虎科技有限公司 Terminal data protection method and device
CN107277794A (en) * 2017-06-09 2017-10-20 中国联合网络通信集团有限公司 Set up the method, device and mobile terminal of communication connection
CN107395365A (en) * 2017-08-04 2017-11-24 中国信息安全测评中心 A kind of card on-chip system and safety certifying method
CN107395365B (en) * 2017-08-04 2020-07-31 中国信息安全测评中心 System on card and security authentication method
CN111078331A (en) * 2018-10-18 2020-04-28 甲骨文国际公司 Adaptive authentication in a spreadsheet interface integrated with a WEB service
CN111078331B (en) * 2018-10-18 2024-03-19 甲骨文国际公司 Adaptive authentication in a spreadsheet interface integrated with a Web service

Also Published As

Publication number Publication date
CN103051456B (en) 2017-04-05

Similar Documents

Publication Publication Date Title
CN103051456A (en) Method for managing application procedures in intelligent secure digital (SD) card and system
EP2741548B1 (en) Method for changing mno in embedded sim on basis of dynamic key generation and embedded sim and recording medium therefor
US11025611B2 (en) Method and apparatus of constructing secure infra-structure for using embedded universal integrated circuit card
EP2704053B1 (en) Method and system for updating a firmware of a security module
US7941128B2 (en) Data backup system
CN103460186B (en) Method for updating a data storage medium
US9730060B2 (en) Method and system for transfering profiles of authentication module
EP3621332B1 (en) Method, terminal device, management server and system for distributing data of virtual subscriber identity module
US10440111B2 (en) Application execution program, application execution method, and information processing terminal device that executes application
US20140220971A1 (en) Change of Subscription Data In An Identification Module
MX2014009822A (en) Mobile apparatus supporting a plurality of access control clients, and corresponding methods.
CN107332817B (en) Mobile device supporting multiple access control clients and corresponding method
EP3783861B1 (en) Data downloading and management method and terminal
CN103455520A (en) Method and device for accessing Android database
CN102149083A (en) Personalized card writing method, system and device
CN102163153A (en) User terminal, server and controlling method thereof
KR101580419B1 (en) Method for accessing at least one service and corresponding system
CN103686688A (en) Method and device for protecting user address list of mobile terminal and mobile terminal
KR101900710B1 (en) Management method of trusted application download, management server, device and system using it
US20140040988A1 (en) Method and System for Data Communication to an Identification Module in a Mobile Radio Terminal
JP5468182B2 (en) Analysis method of operation of maintenance electronic token
CN108769989B (en) Wireless network connection method, wireless access device and equipment
CN108432201B (en) Electronic device including a security module supporting a local management mode for subscriber profile configuration
KR101404713B1 (en) SYSTEM FOR MANAGING FINANCE Micro SD
CN114244573A (en) Data transmission control method and device, computer equipment and storage medium

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20170405