A novel consumer-centric card management architecture and potential security issues

Abstract : Multi-application smart card technology has gained momentum due to the Near Field Communication (NFC) and smart phone revolution. Enabling multiple applications from different application providers on a single smart card is not a new concept. Multi-application smart cards have been around since the late 1990s; however, uptake was severely limited. NFC has recently reinvigorated the multi-application initiative and this time around a number of innovative deployment models are proposed. Such models include Trusted Service Manager (TSM), User Centric Smart Card Ownership Model (UCOM) and GlobalPlatform Consumer-Centric Model (GP-CCM). In this paper, we discuss two of the most widely accepted and deployed smart card management architectures in the smart card industry: GlobalPlatform and Multos. We explain how these architectures do not fully comply with the UCOM and GP-CCM. We then describe our novel flexible consumer-centric card management architecture designed specifically for the UCOM and GP-CCM frameworks, along with ways of integrating the TSM model into the proposed card management architecture. Finally, we discuss four new security issues inherent to any architecture in this context along with the countermeasures for our proposed architecture.
Type de document :
Article dans une revue
Information Sciences, Elsevier, 2015, 321, pp.150-161. 〈10.1016/j.ins.2014.12.049〉
Liste complète des métadonnées

https://hal-unilim.archives-ouvertes.fr/hal-01293442
Contributeur : Damien Sauveron <>
Soumis le : jeudi 24 mars 2016 - 16:52:17
Dernière modification le : jeudi 11 janvier 2018 - 06:26:29

Lien texte intégral

Identifiants

Collections

Citation

Raja Naeem Akram, Konstantinos Markantonakis, Damien Sauveron. A novel consumer-centric card management architecture and potential security issues. Information Sciences, Elsevier, 2015, 321, pp.150-161. 〈10.1016/j.ins.2014.12.049〉. 〈hal-01293442〉

Partager

Métriques

Consultations de la notice

102