SIM Cards & SIM Applications
Georgian Finichiu
Orange ROMANIA – Multimedia Services
Agenda…
What is SIM card ?
What is SIM Applet ? SIM ToolKit apps
Orange SIM Cards Applets – Functionalities
and Servers Architecture
Personal Space Portal
Conclusion
Q&A
What is SIM Card ?
SIM – Subscriber Identity Module
Makes it possible to securely store the IMSI
(international Mobile Subscriber Identity) and
authentification key (Ki) used to identify a
subscriber.
Operating System governing communication
between SIM card and mobile terminal - Native
and Java Card OS.
Native SIMs are based on proprietary, vendor
specific software;
Java Card SIMs are based on standards,
particularly Java Card which is a subset of the
Java programming language specifically
embedded devices.
What is SIM Applet ?
Applet - small Java-based applications - state machine which
processes incoming command requests and responds by
sending data to the interface device;
Applets run securely on smart cards and similar small memory
devices;
Main features of this technology: portability and security.
Portability: allowing the same Java Card applet to run on
different smart cards, from different suppliers, different OS’s.
Security:
- Data encapsulation - Java Card applications are executed
in an isolated environment, separate from operating
system and hardware;
- Applet Firewall - Different applets separated from each other
by an applet firewall which restricts and checks access of data
elements of one applet to another;
- Cryptography – encryption algorithms (DES, 3DES).
SIM Application Toolkit
STK - Standard of the GSM system which enables the SIM to
initiate actions which can be used for various value added
services;
Set of commands programmed into the SIM card which define
how the SIM should interact directly with the outside world;
Initiates commands independently of the handset and of the
network;
SIM also gives commands to the handset, such as display
menu and ask for user input;
STK enables higher levels of security through identity
verification and encryption;
Orange SIM Cards Applications
SIM Agenda Backup
Group Text Messages
SIM Wallet
Personal Space Portal
Orange SIM Cards Applications
SIM Agenda Backup
Simple and secure method of saving the phone
numbers from your SIM card on the Orange server
under confidentiality conditions.
Can be used both on your mobile and on the web
Possibility to recover the agenda(change sim card,
sim card loose, etc).
Service activation from the Orange mobile STK menu.
Text message confirmation received–access to service
. Each access - receive another password in a text
message on your Orange phone.
OTP mechanism – One time password - password
valid for one session only.
SIM Agenda Backup Application
Architecture
Application server which delivers the main
functionality of the service;
Web interface which delivers an easy way
to manage user - delete, edit, add new
contacts; Restore function available;
STK application which allows mobile
management (save and restore) of the
contacts; Periodicity function available.
SIM Agenda Backup NW Architecture
Orange SIM Cards Applications
Group Text Messages
Send same text message to all SIM contacts, in the same time;
Either from Orange STK menu or from web, without additional costs
Standard tariff for a text message sent to each of recipients;
User can create personal lists with all or only one part of the SIM
contacts - up to 2000 SIM contacts/distribution list;
Security - the access to Group Text Message web service is
restricted by a one time password (OTP mechanism);
GMS accessible on web, regardless of the type of SIM card;
User need an OTP every time when access the service;
Receive the password in a text message on Orange phone. The
password is valid for one session only;
After 30 minutes of inactivity and a new password will be required.
GMS application architecture
Application server which delivers the main
functionality of the service;
Web interface which delivers an easy way to manage
user contacts and distribution lists information;
STK application which allows mobile management of
distribution lists – up to 2000 SIM contacts/list;
STK commands available: add a contact with more
than one number – available for 3G SIM cards;
Database model which integrates a common agenda
of contacts with Sim Agenda Backup and also contains
more info about user’s contacts – email, office
number, mobile number.
Group Text Message architecture
Orange SIM Cards Applications
SIM Wallet
SimToolKit application to keep personal/private data;
Personal data: bank accounts, credit card info,
passwords, agenda, personal notes, SIM passwords;
Data can be send to another SIM Wallet users directly
from STK menu;
Application installed on 2G and 3G Postpay Orange
profiles;
Server application used to backup and restore at request
all the data stored on the SIM card.
SIM Wallet application
Application server which delivers the main functionality
of the service;
Extra security, all data will be saved on the Orange
server – also restore function;
Data can be modified, deleted or send forward to others
SIM Wallet users using SMS;
Informations can be updated directly or by configuring a
periodicity (daily, weekly, and monthly).
Personal Space Portal
Personal Space Chat Communication
Online communication with instant messaging;
Socialising or scheduling automatic messages for birthdays of
people user know;
On Personal Space the user can set up a personal profile
visible to other users;
User can choose the favourite handle and can contact or be
contacted by other users, communicating with them online via
instant messaging;
The Orange customer can also change status as seen by other
Personal Space users;
Can choose to keep receiving instant messages via text even
after log out.
Online instant messages are free.
Personal Space Chat Communication
Conclusions
Orange wants to provide an complete set of SIM Toolkit
applications;
Orange promote SIM Agenda instead phone agenda;
3G SIM agenda – 1000 contacts (2 numbers + email);
The central entity of all STK applications – SIM card
agenda;
Personal Space Portal – SIM services present in the
same web unified interface;
Personal Chat Communication between all SIM Agenda
contacts – presence functions;
SMS continuity function for Personal Chat;
The same login mechanism for all services: One Time
Password mechanism.
SIM cards
Q&A
SSO – Single Sign On Identity
Orange customers can access the online services using the
Single Sign-On service (SSO).
For the moment, existing services are using different login
systems based on username, password or one time
password mechanisms.
SSO able to provide unique login interface for ORO
services.
Ensure complex authentication for targeted services.
The main benefit for the customer: a single username and
password for the online services.
In the first phase two services are integrated in SSO:
Personal Space and Mobile E-mail. During time, more
online services will follow.
Orange Romania proposal for the future regarding modules
authentification is to increase the number of integrated
online services into SSO platform.
Single Sign On - Home page
SSO – Single Sign On Identity
The registration mechanism is considering username and password
as protective data against fraud attempts.
The username is defined by default for all customers as MSISDN.
During registration process, every customer is allowed to choose a
nickname that will be use in parallel as username.
Data passing through between services and SSO database and
back is secured/encripted.
SSO solution not allow two login sessions in the same time. If login
is already done, SSO will not ask again for password confirmation.
The SSO consider both web and wap services, which require
login/authentication or automatically recognize the customer
profile by MSISDN, user agent, profile or other defined criteria.
Gather specified data from services (web/wap) integrated with
SSO and also from CRM systems and centralize it in the SSO
database.
Allow access to certain information from the SSO database in order
to be used by another applications/services to customize web/wap
interface or to use the data for specific processes.
A new look, more user friendly for the SSO “my services” page.
SSO – My Services Page
SSO Service – Mobile Email page
Thank you