|
 |
 |
|
Solutions based on W-
PKI
Secure Wireless Unlimited applications
Mobile value-added application
scheme based on W- PKI
Along with the mobile subscriber’s requirements for
the convenient mobile commerce, mobile bank and real-time
mobile data transmission, service providers need a
kind of faster and more secure way to offer value-added
service via mobile network.
SmartCOS/WPKXC , endows SIM card with the function
of PKI, supports security encrypt certification of
W-PKI, and offers mobile subscribers secure mobile
commerce service.
Wireless Public Key Infrastructure (WPKI), is an optimized
extension of traditional PKI for the wireless environment.
WPKIs, like all PKIs, enforce m-commerce business
policies by managing relationships, keys and certificates.
WPKI is concerned primarily with the policies that
are used to manage E-Business and security services
provided by WTLS and WMLSCrypt in the wireless application
environment. It can offer mobile operators cryptographic
security service such as encrypt ,digital signature
and so on, for kinds of application in different wireless
networks.
In the case of wireless networks, WPKI standards are
the most commonly used.
Public-key infrastructure (PKI) is the combination
of software, encryption technologies, and services
that enables enterprises to protect the security of
their communications and business transactions on
the Internet. PKI integrates digital certificates,
public-key cryptography, and certificate authorities
into a total, enterprise-wide network security architecture.
On the e-commerce business, it can ensure confidentiality,
data integrity, authentication and non-repudiation.
With the safeguard of W-PKI, you can go on with commercial
activities cushily anywhere mobile phone could be
used.
Mobile value-added application
scheme based on W-PKI
Mobile application
Security first
Electronic commerce and mobile telephone technology
develop swift and maturely. Now, people can integrate
e-commerce with mobile communications to exchange
information anywhere. Mobile providers, mobile value-added
service providers, banks and smart card manufacturers
are cooperating to set up a mobile security business
platform of multi-function and multi-channel, such
as a mobile value-added service platform which based
on the short message mechanism and STK technique.
It integrates Internet, mobile network and wireless
PKI technique to ensure the security of the on-line
business. In future, everybody can connect to the
network to browse information, send mail, order goods
or bank via the mobile phone.
Remote managing for the mobile
value-added application via OTA technology
In protean market, the mobile providers need the toolkit
which can help them to simplify the logistics operation,
reduce expenses, ensure the time of coming into the
market, prevent the customers run off and increase
the value of ARPU.
OTA (Over The Air) is a technology which remotely
controls the SIM card and the applications via mobile
communications (GSM/CDMA). It is the best solution
for updating the value-added service in 2G mobile
network. Presently, the dynamic STK business adopts
the advanced OTA technology to manage the applications
in SIM cards over the air. The subscribers can experience
data access as per individual design and service providers
can easily create, remotely administer, and personalize
new services effectively.
Features of OTA:
l Remote management of SIM card and individual information
configuration.
l The convenience of providing the new services.
l The subscribers can remotely customize, update,
activate or invalidate service menu according to their
favorites.
l The subscribers can remotely edit or strengthen
card menu or contents. The personal information can
be securely transferred between different cards via
the services provided.
Operational principle of OTA
Based on STK and SMS mechanism, the subscribers send out download request from STK card (supporting
OTA) via man machine interface, then the network server
sends the corresponding service to the SIM card by
short message according to the request. Organizing
and storing the download data, SIM card realizes homologous
STK menu management.
Series of M&W Smart Card on mobile communication
|
product |
standard compliance |
security&
authentication algorithm |
features |
memory |
application |
| SmartCOS-XSIM |
Phase
II
GSM11.11
GSM11.12 |
A3A8
(COMP128-1) |
• storing and managing the subscriber information
• subscriber identity authentication
• aborative design of COS, excellent frame, flexible configuration
• ensure the security of COS and A3A8 algorithm
• prevent vicious attack
• customer-specific memory configuration
• ensure secure access
• low power consumption, support sleeping
• efficient security access mechanism
• multilevel key control for top security.
• support power protection, keep data from losing accidently |
8k
Bytes
16k
Bytes |
GSM
basal telecommunication service |
| SmartCOS-XSTK |
Phase II+
GSM11.11
GSM11.12
GSM11.14
GSM03.38
GSM03.40
GSM03.48 |
A3A8
(COMP128-1)
DES/3DES |
• multiple-stripe STK mobile value-added
application
• OTA download and update
• expand menu service
• aborative design of COS, excellent frame, flexible configuration
• ensure the security of COS and A3A8 algorithm
• prevent vicious attack
• customer-specific memory configuration
• ensure secure access
• low power consumption, support sleeping
• efficient security access mechanism
• multilevel key control for top security.
• support power protection, keep data from losing accidently |
32k
Bytes
64k
Bytes |
Value-added
services:
• Monternet
• Mobile Banking
• Mobile Brokerage
• Mobile Gambling
• … |
| |
| SmartCOS/WPKXC |
Phase II+
GSM11.11
GSM11.12
GSM11.14
GSM03.38
GSM03.40
GSM03.48 |
A3A8
(COMP128-1)
DES/3DES
1024bit/2048bit
RSA(optional),
digital
signature
and signature verification
192 bit ECC
(optional) |
• mobile PKI
• multiple-stripe STK mobile value-added
application
• OTA download and update
• expand menu service
• aborative design of COS, excellent frame, flexible configuration
• ensure the security of COS and A3A8 algorithm
• prevent vicious attack
• customer-specific memory configuration
• ensure secure access
• low power consumption, support sleeping
• efficient security access mechanism
• multilevel key control for top security.
• support power protection, keep data from losing accidently |
32k
Bytes
64k
Bytes |
• M-commerce
• Internet accessing |
| SmartCOS-XUIM/UTK |
Phase II+
GSM11.11
GSM11.14
GSM03.38
GSM03.40
GSM03.48 |
A3A8
(COMP128-1)
DES/3DES
CAVE |
• multiple-stripe UTK mobile value-added application based on CDMA
• support both GSM and CDMA on network, expand menu service
• OTA download and update
• aborative design of COS, excellent frame, flexible configuration
• ensure the security of COS and A3A8/CAVE algorithm
• prevent vicious attack
• customer-specific memory configuration
• ensure secure access
• low power consumption, support sleeping
• efficient security access mechanism
• multilevel key control for top security.
• support power protection, keep data from losing accidently |
32k
Bytes
64k
Bytes |
CDMA/GSM basal telecommunication service
Value-added
services:
• Monternet
• Mobile Banking
• Mobile Brokerage
• Mobile Gambling
• … |
|
|
|
|