Patents by Inventor Jean-Yves Fine
Jean-Yves Fine has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20240129024Abstract: Provided is a low capability device (UE) active in a communication system comprising a plurality of satellites (Si, Sj) insuring a temporally continuous communication coverage for the low capability device (UE), said satellites being further grouped in families (S1x), satellites of a same family (S1x) sharing same and common access information, said device (UE) comprises a power saving module to send to the serving satellite (S11), during a first data session, a next access request for a next or continued data session with time indications including at least a desired next time interval to be granted for communication. Other embodiments disclosed.Type: ApplicationFiled: January 13, 2022Publication date: April 18, 2024Applicants: THALES DIS FRANCE SAS, THALESInventors: Jean-Yves FINE, David BOHATY, Lars WEHMEIER, Mohamed EL JAAFARI, Volker BREUER, Nicolas CHUBERRE
-
Patent number: 11943612Abstract: A method for authenticating by a network server a communication apparatus, the communication apparatus contains a tamper resistant area adapted to memorize a first secret, by receiving from the communication apparatus a request message including a subscriber identifier; providing, by consulting a database accessible by the network server, a device identifier associated to the received subscriber identifier allowing to identify the communication apparatus; identifying in a secure distributed ledger a record published by a manufacturer of at least a portion of the communication apparatus, the record including a second secret attributed to the identified communication apparatus; generating a challenge message including a random number and sending it to the communication apparatus for it to generate a first result; receiving from the communication apparatus a response message including the first result, the communication apparatus being authenticated by the network server if the first result is equal to a secondType: GrantFiled: November 13, 2019Date of Patent: March 26, 2024Assignee: THALES DIS FRANCE SASInventors: Milas Fokle Kokou, Jean-Yves Fine, Michel Anslot
-
Publication number: 20230057543Abstract: Provided is a method for pushing data to a mobile network operator (MNO), the method being suitable to be implemented by a server and comprising the following steps of: receiving, from the MNO, a message comprising at least one communication pattern associated with at least one device identifier identifying a type or a provider of a device; receiving, from a user, a request for downloading a subscription profile of the MNO; sending, in response to the request, the subscription profile to a device of the user; identifying, from the at least one communication pattern, a communication pattern applicable to the subscription profile according to device data obtained from the request; and pushing data comprising an identifier of the subscription profile and the applicable communication pattern to the MNO.Type: ApplicationFiled: February 1, 2021Publication date: February 23, 2023Applicant: THALES DIS FRANCE SASInventors: Jean-Yves FINE, Frederic DAO
-
Publication number: 20220248315Abstract: A method for updating a terminal comprising a secure element is provided by way of an Over-the-Air (OTA) platform. The OTA receives at least a location data reflecting the location of the terminal and a request for downloading a list of preferred networks in the terminal. Each of said preferred networks may be associated with its own target roaming quota usage, at least one weighting factor associated to a given list of the set may be updated as a result of an optimization function which aims at generating one weighting factor based on a target roaming quota usage associated to each preferred network of the given list. Other embodiments are disclosed.Type: ApplicationFiled: May 12, 2020Publication date: August 4, 2022Applicant: THALES DIS FRANCE SASInventors: Ly Thanh PHAN, Jean-François GROS, Jean-Yves FINE, Vincent DANY
-
Publication number: 20220070813Abstract: A method for connecting a secure element to a network of a first mobile network operator using an ephemeral first IMSI, in order to get a second IMSI, from the first mobile network operator, includes: Selecting a first radio serving network, the first selected network being not listed in the Forbidden VPLMN list of the secure element; Sending a REGISTER REQUEST message comprising the first IMSI to the first selected network; If the first selected network does not route the message to the network of the first mobile network operator, stop trying to register with the first selected network and put the MCC/MNC codes of the first selected network in the Forbidden VPLMN list of the secure element; Searching for a another network to register with; and Repeat the foregoing steps until a network routes the first IMSI to the network of the first mobile network operator.Type: ApplicationFiled: January 2, 2020Publication date: March 3, 2022Applicant: THALES DIS FRANCE SAInventors: Jean-Yves FINE, Ly Thanh PHAN
-
Publication number: 20220022037Abstract: The invention proposes a method for establishing a bidirectional NAS signalization channel between a secure element cooperating with a terminal and a distant platform through a Network Exposure Function, upon request of either the secure element or the distant platform. The method includes an exchange of containers of data between the distant platform and the secure element through the Network Exposure Function.Type: ApplicationFiled: December 10, 2019Publication date: January 20, 2022Applicant: THALES DIS FRANCE SAInventor: Jean-Yves FINE
-
Publication number: 20220014909Abstract: A method for authenticating by a network server a communication apparatus, the communication apparatus contains a tamper resistant area adapted to memorize a first secret, by receiving from the communication apparatus a request message including a subscriber identifier; providing, by consulting a database accessible by the network server, a device identifier associated to the received subscriber identifier allowing to identify the communication apparatus; identifying in a secure distributed ledger, using the device identifier, a record published by a manufacturer of at least a portion of the communication apparatus, said record comprising a second secret attributed to the identified communication apparatus; generating a challenge message comprising a random number RAND and sending it to the communication apparatus for it to generate a first result F_HWRES; receiving from the communication apparatus a response message comprising the first result F_HWRES, the communication apparatus being authenticated by the nType: ApplicationFiled: November 13, 2019Publication date: January 13, 2022Inventors: Milas FOKLE KOKOU, Jean-Yves FINE, Michel ANSLOT
-
Patent number: 11177951Abstract: This invention related to a method for provisioning a first communication device with a set of at least one credential required for accessing to a wireless network by using a second communication device provisioned with a cryptographic key K also known by the wireless network, the first communication device being associated with a certificate comprising a public key PK, said certificate being stored with an associated private key PrK in said first communication device, the method comprising the following steps: receiving by the second communication device a registration request from the first communication device in order to be provisioned with the set of at least one credential; transmitting to the wireless network by the second communication device the registration request to generate a set of at least one credential associated to the first communication device comprising at least a cryptographic key K?, the wireless network being adapted to generate a first random number R1 and a second random number R2; rType: GrantFiled: March 30, 2017Date of Patent: November 16, 2021Assignee: THALES DIS FRANCE SAInventors: Mireille Pauliac, Michel Endruschat, Ly Thanh Phan, Jean-Yves Fine
-
Publication number: 20210258156Abstract: The invention is a method for updating a first secret data in a credential container including a subscriber identity module. The credential container comprises a set of secret parameters customized for a network operator and is configured to execute a symmetric mutual authentication algorithm using said set. The credential container receives from a remote server a second secret data enciphered using a second algorithm different from said symmetric mutual authentication algorithm and a subset of said secret parameters, the credential container deciphers the enciphered second secret data by using both the subset and a third algorithm and replaces the first secret data with the second secret data.Type: ApplicationFiled: August 22, 2019Publication date: August 19, 2021Applicant: THALES DIS FRANCE SAInventors: Michel ANSLOT, Jean-Yves FINE
-
Patent number: 10959094Abstract: A method of replacing an authentication parameter for authenticating a security element co-operating with a terminal includes storing in the security element a first authentication parameter; transmitting to a mobile network operator the first authentication parameter for the operator to record it in its authentication system; on occurrence of an event, having a remote platform transmit to the security element an indicator informing the security element that it is authorized to replace the first authentication parameter with a second authentication parameter if its authentication fails; on occurrence of the event, having the entity transmit to the operator a second authentication parameter to replace the first authentication parameter; and in the event of subsequent failure of the security element to connect to the mobile network and if the indicator is present at the security element, replacing the first authentication parameter with the second authentication parameter at the security element.Type: GrantFiled: June 23, 2016Date of Patent: March 23, 2021Assignee: THALES DIS FRANCE SAInventors: Patrice Amiel, Michel Endruschat, Sébastien Ponard, Gabriel Pereira, Jean-Yves Fine, François Zannin, Michel Martin, Caroline Durant Dinet, Xavier Berard
-
Patent number: 10756927Abstract: The invention specifically relates to a method for virtually connecting two persons, with the first person having a first NFC device and the second person having a second NEC device. One of the NFC devices is a telecommunications terminal comprising an application, and both NFC devices comprise the identity of the person to which they belong. According to the invention, the method includes transmitting the identity of the first person from the first NFC device to the second NFC device; transmitting the identity of the second person from the second NFC device to the first NFC device; generating a secret shared by the persons using the application, with the shared secret giving access to an Internet space shared by the persons; and storing the shared secret in the NFC devices, with a reference relating to the virtual connection thereof.Type: GrantFiled: September 27, 2013Date of Patent: August 25, 2020Assignee: THALES DIS FRANCE SAInventors: Marc Gemeto, Jean-Yves Fine
-
Publication number: 20190238324Abstract: This invention related to a method for provisioning a first communication device with a set of at least one credential required for accessing to a wireless network by using a second communication device provisioned with a cryptographic key K also known by the wireless network, the first communication device being associated with a certificate comprising a public key PK, said certificate being stored with an associated private key PrK in said first communication device, the method comprising the following steps: receiving by the second communication device a registration request from the first communication device in order to be provisioned with the set of at least one credential; transmitting to the wireless network by the second communication device the registration request to generate a set of at least one credential associated to the first communication device comprising at least a cryptographic key K?, the wireless network being adapted to generate a first random number R1 and a second random number R2; rType: ApplicationFiled: March 30, 2017Publication date: August 1, 2019Applicant: Gemalto SAInventors: Mireille PAULIAC, Michel ENDRUSCHAT, Ly Thanh PHAN, Jean-Yves FINE
-
Patent number: 10251062Abstract: The invention is a method for managing access to a service wherein the method comprises the following steps: a client application sends to an application server a request to access the service by using credentials and a first anti-clone code, the application server performs a verification of the credentials and said first anti-clone code, the application server sends a second anti-clone code to the client application and deactivates said first anti-clone code only in case of successful verification, said second anti-clone code being required for the next attempt to access the service.Type: GrantFiled: April 25, 2016Date of Patent: April 2, 2019Assignee: GEMALTO SAInventors: HongQian Karen Lu, Jean-Yves Fine, Benoît Gonzalvo, Aline Gouget
-
Publication number: 20180176778Abstract: A method of replacing an authentication parameter for authenticating a security element co-operating with a terminal includes storing in the security element a first authentication parameter; transmitting to a mobile network operator the first authentication parameter for the operator to record it in its authentication system; on occurrence of an event, having a remote platform transmit to the security element an indicator informing the security element that it is authorized to replace the first authentication parameter with a second authentication parameter if its authentication fails; on occurrence of the event, having the entity transmit to the operator a second authentication parameter to replace the first authentication parameter; and in the event of subsequent failure of the security element to connect to the mobile network and if the indicator is present at the security element, replacing the first authentication parameter with the second authentication parameter at the security element.Type: ApplicationFiled: June 23, 2016Publication date: June 21, 2018Applicant: GEMALTO SAInventors: Patrice AMIEL, Michel ENDRUSCHAT, Sébastien PONARD, Gabriel PEREIRA, Jean-Yves FINE, Francois ZANNIN, Michel MARTIN, Caroline DURANT DINET, Xavier BERARD
-
Patent number: 9961626Abstract: The invention relates to a method for accessing an Internet protocol Multimedia Subsystem type subsystem, said subsystem. According to the invention, a device is firstly connected to a mobile communication network, as a visited network, said first network. The method comprises the following steps. The first network sends to the device a first message comprising current location data relating to a location where the device is currently present. The device analyzes whether at least one roaming rule associated with the current location data is or is not stored within the device. The at least one roaming rule includes, each, at least one parameter for accessing the subsystem. And if the device does store the at least one roaming rule associated with the current location data, then the device sends to the subsystem a second message including a request for connecting to the subsystem. The invention also pertains to a corresponding device.Type: GrantFiled: October 21, 2015Date of Patent: May 1, 2018Assignee: GEMALTO SAInventors: Jean-Yves Fine, Julien Baudouin
-
Publication number: 20180091977Abstract: The invention is a method for managing access to a service wherein the method comprises the following steps: a client application sends to an application server a request to access the service by using credentials and a first anti-clone code, the application server performs a verification of the credentials and said first anti-clone code, the application server sends a second anti-clone code to the client application and deactivates said first anti-clone code only in case of successful verification, said second anti-clone code being required for the next attempt to access the service.Type: ApplicationFiled: April 25, 2016Publication date: March 29, 2018Applicant: GEMALTO SAInventors: HongQian Karen LU, Jean-Yves FINE, Benoît GONZALVO, Aline GOUGET
-
Patent number: 9854046Abstract: The invention relates, in particular, to a method for registering at least one public address in an IMS network including a terminal that interacts with a security element. According to the invention, the security element includes an application that invites the user of the terminal, upon the occurrence of an event, to enter a public address, selected by the user, via the man/machine interface of the terminal, the application transmitting the public address, accompanied by at least one identifier of the security element, to a remote network via the terminal such that the remote network associates the public address with the identifier.Type: GrantFiled: July 11, 2013Date of Patent: December 26, 2017Assignee: GEMALTO SAInventors: Julien Baudouin, Jean-Yves Fine
-
Publication number: 20170339634Abstract: The invention relates to a method for accessing an Internet protocol Multimedia Subsystem type subsystem, said subsystem. According to the invention, a device is firstly connected to a mobile communication network, as a visited network, said first network. The method comprises the following steps. The first network sends to the device a first message comprising current location data relating to a location where the device is currently present. The device analyses whether at least one roaming rule associated with the current location data is or is not stored within the device. The at least one roaming rule includes, each, at least one parameter for accessing the subsystem. And if the device does store the at least one roaming rule associated with the current location data, then the device sends to the subsystem a second message including a request for connecting to the subsystem. The invention also pertains to a corresponding device.Type: ApplicationFiled: October 21, 2015Publication date: November 23, 2017Applicant: GEMALTO SAInventors: Jean-Yves FINE, Julien BAUDOUIN
-
Patent number: 9148896Abstract: A method for establishing a communication channel between a local server and a remote server includes: i) transmitting, from the local server to a terminal, the IP address of the remote server and a communication port of the local server; ii) transmitting the IP address of the terminal from the terminal to the local server; iii) transmitting, from the local server to the terminal, a request to connect to the remote server, including the IP addresses of the remote server and the terminal, an identifier of the local server; and the communication port; iv) transmitting, from the local server to the remote server, the IP address of the terminal, an identifier of the local server, and the communication port; and v) combining, at the remote server, the identifier of the local server and the IP address of the terminal to ascertain an IP address of the local server.Type: GrantFiled: January 12, 2012Date of Patent: September 29, 2015Assignee: GEMALTO SAInventors: Didier Morel, Cyril Barras, Jean-Yves Fine, Ly-Thanh Phan
-
Publication number: 20150249902Abstract: The invention specifically relates to a method for virtually connecting two persons, with the first person having a first NFC device and the second person having a second NEC device. One of the NFC devices is a telecommunications terminal comprising an application, and both NFC devices comprise the identity of the person to which they belong. According to the invention, the method includes transmitting the identity of the first person from the first NFC device to the second NFC device; transmitting the identity of the second person from the second NFC device to the first NFC device; generating a secret shared by the persons using the application, with the shared secret giving access to an Internet space shared by the persons; and storing the shared secret in the NFC devices, with a reference relating to the virtual connection thereof.Type: ApplicationFiled: September 27, 2013Publication date: September 3, 2015Applicant: GEMALTO SAInventors: Marc Gemeto, Jean-Yves Fine