Design, installation and execution of a security agent for mobile stations

  • Authors:
  • William G. Sirett;John A. MacDonald;Keith Mayes;Konstantinos Markantonakis

  • Affiliations:
  • Smart Card Centre, Information Security Group, University of London, Egham, England;Smart Card Centre, Information Security Group, University of London, Egham, England;Smart Card Centre, Information Security Group, University of London, Egham, England;Smart Card Centre, Information Security Group, University of London, Egham, England

  • Venue:
  • CARDIS'06 Proceedings of the 7th IFIP WG 8.8/11.2 international conference on Smart Card Research and Advanced Applications
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper we present a methodology and protocol for establishing a security context between a Mobile Operator's application server and a GSM/UMTS SIM card. The methodology assumes that the already issued Mobile Station is capable but unprepared. The proposed scheme creates a secure entity within the Mobile Station “Over The Air” (OTA). This secure entity can then be used for subsequent SIM authentications enabling m-Commerce, DRM or web service applications. To validate our proposal we have developed a proof of concept model to install and execute the security context using readily available J2ME, Java Card, J2SE and J2EE platforms, with the KToolBar MIDP2.0 emulator tool from Sun, and a Gemplus Java Card.