Summary of the invention
The present invention is the antitheft mobile phone of a kind of new type of safe (MS), is made up of mobile telephone equipment (ME1) and card (C2).Wherein, mobile telephone equipment (ME1) can be hidden password 3 (with the storage of ciphertext form) and algorithm 4.Algorithm 4 can produce characteristic 6 at several 5 o'clock at input feature vector.Card (C2) hidden algorithm 7, algorithm 7 can produce characteristic 9 at several 8 o'clock at input feature vector.Password 3 is enough big, makes methods such as adopting enumerative technique be difficult to successfully find out this password, and characteristic is unique or enough big random number or some processing sequence.Can communicate by letter between mobile telephone equipment (ME1) and the card (C2), communication mode is unrestricted.
Card (C2) can be GSM Subscriber Identity Module (SIM card), the Subscriber Identity Module (UIM card) in the CDMA mobile phone in the GPRS mobile phone, it can be storage card, for example secure data storage card (SD card), multimedia storage card (mmc card), can be the card (CF card) of Compact Flash interface or the card of USB interface, also can be personality card, safe and secret card etc. for example.Card (C2) can be a card, also can be a plurality of cards, promptly a plurality of cards that need protection or parts.Can communicate by letter between mobile telephone equipment (ME1) and the card (C2), communication mode is unrestricted.For example, GSM in the GPRS mobile phone, the communication mode between mobile telephone equipment (ME1) and the Subscriber Identity Module (SIM card) is the wired serial mode.Also can adopt communications such as Bluetooth between mobile telephone equipment (ME1) and the card (C2), so that separately deposit.
Characteristic 6 can be used as various the accessing to your password of card (C2).For example, when card (C2) for GSM Subscriber Identity Module in the GPRS mobile phone when being SIM card, characteristic 6 can be used as SIM card PIN PIN or/and PUK PUK or/and PIN PIN2 or/and PUK PUK2 etc.When card (C2) was secure data storage card (SD card) or multimedia storage card (mmc card), characteristic 6 can be used as the various of SD card or mmc card and accesses to your password, and comprises the encrypt and decrypt password of its saved software or data.
Characteristic 9 can be used as various the accessing to your password of mobile telephone equipment (ME1).For example, keyboard password, menu password, short message password, its saved software or data encryption and clear crytpographic key etc.
After mobile telephone equipment (ME1) is loaded onto card (C2) and start, enter characteristic by menu prompt and make.At first input password 3, use for the first time the back if mobile phone dispatches from the factory, and after the password of being given when then input handset dispatches from the factory (default password), mobile telephone equipment (ME1) confirm that the password inputed 3 is correct, enters that characteristic is made or characteristic cancellation submenu.When selecting characteristic to make, mobile telephone equipment (ME1) generating feature is several 6, and as the accessing to your password of card (C2), starts card (C2) password and enable, and makes card (C2) be in the password enabled state, possesses specific feature.Card (C2) generating feature is several 9, and as the accessing to your password of mobile telephone equipment (ME1), starts mobile telephone equipment (ME1) password and enable, and makes mobile telephone equipment (ME1) be in the password enabled state, possesses specific feature.When selecting the characteristic cancellation, mobile telephone equipment (ME1) generating feature is several 6, and as the accessing to your password of card (C2), starts the cancellation of card (C2) password, makes card (C2) be in password and cancels state, cancels specific feature.Card (C2) generating feature is several 9, and as the accessing to your password of mobile telephone equipment (ME1), starts the cancellation of mobile telephone equipment (ME1) password, makes mobile telephone equipment (ME1) be in password cancellation state, cancels specific feature.
After mobile telephone equipment (ME1) confirmed that the password inputed 3 is correct, the user also can select to enter password and revise submenu, revises password 3.
In use carry out password authentification automatically.Access to your password when packing into for the card (C2) of characteristic 6 behind the mobile telephone equipment (ME1) and start into characteristic 9 accessing to your password, mobile telephone equipment (ME1) produces characteristic 6 automatically, send to card (C2) and carry out password authentification, card (C2) is generating feature several 9 automatically, send to mobile telephone equipment (ME1) and carry out password authentification, mobile telephone equipment after password authentification is passed through (ME1) and card (C2) can normally be used.After shutdown start again, need to repeat said process.
Characteristic is constructed for making mobile telephone equipment (ME1) and card (C2) to possess specific feature, and the characteristic cancellation is used for cancelling mobile telephone equipment (ME1) and blocks the feature that (C2) possessed.Therefore, characteristic is made and the characteristic cancellation is used in mainly that mobile phone uses, changes mobile telephone equipment (ME1) first or/and change card (C2), change mobile telephone equipment (ME1) and block the situations such as feature that (C2) possessed.Characteristic is made and the characteristic cancellation needs the user to input password 3.In common mobile phone use, carry out password authentification automatically, do not need the user to input password, use the same with regular handset.
After legal mobile telephone equipment (ME1) and legal card (C2) are lost together, if legal mobile telephone equipment (ME1) and legal card (C2) all are not replaced, then can send short message or mobile phone electronic mail or a supplementary service of destructuring user data or default in advance particular number (subaddressing) call, circuit switching or a packet switched data communication message of representing specific instruction to this mobile phone immediately, mobile telephone equipment (ME1) and card (C2) are taken remote measurement and remote control.For example:
1) after mobile phone is received this specific instruction, former legal mobile telephone equipment (ME1) and former legal card (C2) are set new password respectively, making that former legal mobile telephone equipment (ME1) is loaded onto former legal card (C2) can not operate as normal.
2) mobile phone specifies the particular number of (or default in advance) to send short message or the supplementary service of destructuring user data or call or mobile phone electronic mail, data communication message etc., information such as the residing geographical position of report disabled user when remote control.
3) start mobile telephone equipment (ME1) and can only receive incoming call, Content of Communication (telephonograph, short message, supplementary service, Email, data communication message etc.) record is also initiatively mail to the number of appointment or/and start mobile telephone equipment (ME1).
4) it is available to start mobile telephone equipment (ME1), but card (C2) is unavailable, and information such as mobile telephone equipment (ME1) report disabled user's IMSI International Mobile Subscriber Identity (IMSI), calling number, residing geographical position.Can proceed remote measurement and remote control to mobile telephone equipment (ME1) according to these information.
For fear of legal mobile telephone equipment (ME1) and legal card (C2) by malice remote measurement and remote control, need be with remote measurement, the remote control relevant password authentification of all remote measurements and remote control by after just can work.
The owner of lost property uses above method, can easy, quick remote measurement and remote control mobile telephone equipment (ME1) and card (C2).When blocking (C2) is Subscriber Identity Module, and for example SIM card also can be reported the loss by SIM card service provider (Virtual network operator), and making card (C2) is that SIM card is cancelled, and SIM card can not normally be used.Because card (C2) cancels, so mobile telephone equipment (ME1) also just can not normally use.Usually owner of lost property's remote measurement and remote control mobile telephone equipment (ME1) and card (C2) make card (C2) calcellation easier to be faster than reporting the loss by card (C2) service provider (Virtual network operator).
After legal mobile telephone equipment (ME1) and legal card (C2) are lost together, if one of legal mobile telephone equipment (ME1) and legal card (C2) are replaced, one of perhaps legal mobile telephone equipment (ME1) and legal card (C2) are lost, and following two kinds of situations are then arranged:
When illegal mobile telephone equipment (ME1) used legal card (C2), because accessing to your password of legal card (C2) is characteristic 6, characteristic 6 was unique or enough big random numbers.Illegal mobile telephone equipment (ME1) almost can not generate the password identical with characteristic 6.Therefore, legal card (C2) can not be by password authentification, so can not normally use legal card (C2) on illegal mobile telephone equipment (ME1).
When illegal card (C2) used legal mobile telephone equipment (ME1), because accessing to your password of legal mobile telephone equipment (ME1) is characteristic 9, characteristic 9 was unique or enough big random numbers.Illegal card (C2) almost can not generate the password identical with characteristic 9.Therefore, legal mobile telephone equipment (ME1) can not be by password authentification, so can not normally use legal mobile telephone equipment (ME1) on illegal card (C2).But in this case, legal mobile telephone equipment (ME1) can be to information such as in advance default number report disabled user's IMSI International Mobile Subscriber Identity (IMSI), calling number, residing geographical position.Then, can carry out remote measurement recited above and remote control to legal mobile telephone equipment (ME1).
The present invention is the antitheft mobile phone of a kind of new type of safe, does not in use need the user to input password, use the same with regular handset.In use carry out password authentification automatically, discern illegal mobile telephone equipment (ME1) automatically or/and illegal card (C2) stops mobile telephone equipment (ME1) or/and the illegal use of card (C2) equipment and information thereof can be accepted remote measurement and remote control.Solved when mobile phone uses and to have inputed the inconvenience that password brings; Solved cell phone apparatus illegal use and mobile phone in information illegally read the use problem, solved the various important card that comprises SIM card or the illegal use and the information thereof of parts and illegally read the use problem.
Embodiment
Execution mode 1:
Card (C2) is Subscriber Identity Module (SIM card or a UIM card).The user inputs correct password 3 and enters characteristic making and cancellation submenu, the user selects characteristic to make, characteristic 5 is password 3 (a close zhang form), the algorithm 4 of mobile telephone equipment (ME1) is according to characteristic 5 generating features several 6, characteristic 6 is password a 3 (plaintext form, be the password 3 that the user inputs), with this characteristic 6 accessing to your password as card (C2).Promptly the password of importing when characteristic is made with the user 3 is as the accessing to your password of card (C2), and its benefit is can carry out password by other mobile telephone equipment (ME1) and 3 pairs of cards of password (C2) and cancel when mobile telephone equipment (ME1) when breaking down." reading IMSI " that card (C2) is sent with mobile telephone equipment (ME1) instructed as characteristic 8, the algorithm 7 of card (C2) is according to this characteristic 8, generating feature several 9 promptly should block the IMSI (IMSI International Mobile Subscriber Identity) of (C2), as accessing to your password of mobile telephone equipment (ME1).Because IMSI is an IMSI International Mobile Subscriber Identity, is unique in the world.Can report the loss by card (C2) service provider (Virtual network operator) again, card (C2) is cancelled.Therefore, available IMSI is as the password of mobile telephone equipment (ME1).
The characteristic of using:
When 1) characteristic 5 was password 3 (ciphertext form), the characteristic 6 that algorithm 4 produces was password 3 (an expressly form).
When 2) characteristic 8 was for " card (C2) password with password 3 (expressly form) enables (password authentification, password cancellation) instruction ", the characteristic 9 that algorithm 7 produces was " card (C2) password enables (password authentification, password cancellation) success or failure indication ".
When 3) characteristic 8 was for " reading the IMSI instruction ", the characteristic 9 that algorithm 7 produces was " IMSI of card (C2) (an expressly form) ".
When 4) characteristic 5 was IMSI (expressly form), the characteristic 6 that algorithm 4 produces was IMSI (a ciphertext form).Characteristic is made:
1) after mobile telephone equipment (ME1) is packed card (C2) start into, the user inputs correct password 3 (expressly form).
2) user selects characteristic to make, and generates password 3 (ciphertext form), is hidden in the mobile telephone equipment (ME1).
3) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), characteristic 8 is " card (C2) the password enable command with password 3 (expressly form) ", the characteristic 9 that the algorithm 7 of card (C2) produces is " card (C2) password enables success or failure indication ", and sends back to mobile telephone equipment (ME1).If card (C2) password enables successfully, then card (C2) is in the password enabled state, enters 4).Otherwise card (C2) is in password cancellation state, cue card (C2) operation failure, and characteristic is made failure.
4) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), and characteristic 8 is " IMSI of card (C2) (an expressly form) " for " reading the IMSI instruction ", the characteristic 9 that the algorithm 7 of card (C2) produces, and sends back to mobile telephone equipment (ME1).
5) mobile telephone equipment (ME1) with the IMSI that receives (expressly form) as characteristic 5, the characteristic 6 that algorithm 4 produces is IMSI (a ciphertext form), as accessing to your password of mobile telephone equipment (ME1), startup mobile telephone equipment (ME1) password enables and is in the password enabled state, and prompting user characteristics numeral system is done successfully.
The characteristic cancellation:
1) after mobile telephone equipment (ME1) is packed card (C2) start into, the user inputs correct password 3 (expressly form), and the user selects the characteristic cancellation.
2) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), characteristic 8 is " card (C2) the password cancellation instruction with password 3 (expressly form) ", the characteristic 9 that the algorithm 7 of card (C2) produces is " password is cancelled successfully or the indication of failing ", and sends back to mobile telephone equipment (ME1).Block (C2) if password is cancelled successfully and enter password cancellation state, cue card (C2) characteristic is cancelled successfully.Otherwise card (C2) password enabled state is constant, cue card (C2) characteristic cancellation failure.
3) start the cancellation of mobile telephone equipment (ME1) password, make it enter password cancellation state, prompting user's mobile telephone equipment (ME1) characteristic is cancelled successfully.
Automatic password authentification process during use:
1) at mobile telephone equipment (ME1) card (C2) of packing into, start.
2) mobile telephone equipment (ME1) detects mobile telephone equipment (ME1) and card (C2).If mobile telephone equipment (ME1) and card (C2) all are not in the password enabled state, then enter normal use.If have only one to be in the password enabled state in mobile telephone equipment (ME1) and the card (C2), then enter the prompting user and import cryptographic processes (it is illegal having probably).If mobile telephone equipment (ME1) and card (C2) all are in the password enabled state, then enter 3) password authentification automatically.
3) mobile telephone equipment (ME1) is a characteristic 5 with password 3 (ciphertext form), and it is password 3 (expressly form) that algorithm 4 produces characteristic 6.
4) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), characteristic 8 is " the password authentification instruction with password 3 (expressly form) ", the characteristic 9 that the algorithm 7 of card (C2) produces is " password authentification success or failure indication ", and sends back to mobile telephone equipment (ME1).
5) if mobile telephone equipment (ME1) receives that password authentification successfully indicates, then enter 6), otherwise enter illegal use.
6) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), and characteristic 8 is " IMSI of card (C2) (an expressly form) " for " reading the IMSI instruction ", the characteristic 9 that card (C2) algorithm 7 produces, and sends back to mobile telephone equipment (ME1).
7) as characteristic 5, the characteristic 6 that algorithm 4 produces is IMSI (a ciphertext form) to mobile telephone equipment (ME1), carries out password authentification as accessing to your password of mobile telephone equipment (ME1) with the IMSI that receives (expressly form).If the password authentification success then enters normal use, otherwise enters illegal use.
Execution mode 2:
Card (C2) is Subscriber Identity Module (SIM card or a UIM card).
The characteristic of using:
1) characteristic 5 is password 3 (a ciphertext form), and the characteristic 6 that algorithm 4 produces is password 3 (an expressly form).
2) characteristic 8 is " password with password 3 (expressly form) enables (password authentification, password cancellation) instruction ", and the characteristic 9 that algorithm 7 produces is " password enables (password authentification, password cancellation) success or failure indication ".Characteristic is made:
1) after mobile telephone equipment (ME1) is packed card (C2) start into, the user inputs correct password 3 (expressly form).
2) user selects characteristic to make, and generates password 3 (ciphertext form), is hidden in the mobile telephone equipment (ME1).
3) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), characteristic 8 is " the password enable command with password 3 (expressly form) ", the characteristic 9 that the algorithm 7 of card (C2) produces is " password enables success or failure indication ", and sends back to mobile telephone equipment (ME1).
4), then start mobile telephone equipment (ME1) and enter the password enabled state, and prompting user characteristics numeral system is done successfully if mobile telephone equipment (ME1) receives that password enables successfully to indicate.Otherwise cue card (C2) operation failure, characteristic is made failure.
The characteristic cancellation:
1) after mobile telephone equipment (ME1) is packed card (C2) start into, the user inputs correct password 3 (expressly form), and the user selects the characteristic cancellation.
2) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), characteristic 8 is " the password cancellation instruction with password 3 (expressly form) ", make card (C2) enter password cancellation state, the characteristic 9 that the algorithm 7 of card (C2) produces is " password is cancelled successfully or the indication of failing ", and sends back to mobile telephone equipment (ME1).If password cancels successfully then cue card (C2) characteristic is cancelled successfully, otherwise cue card (C2) characteristic cancellation failure.
3) start mobile telephone equipment (ME1) and enter password cancellation state, prompting user's mobile telephone equipment (ME1) characteristic is cancelled successfully.
Automatic password authentification process during use:
1) at mobile telephone equipment (ME1) card (C2) of packing into, start.
2) mobile telephone equipment (ME1) detects mobile telephone equipment (ME1) and card (C2).If mobile telephone equipment (ME1) and card (C2) all are not in the password enabled state, then enter normal use.If have only one to be in the password enabled state in mobile telephone equipment (ME1) and the card (C2), then enter the prompting user and import cryptographic processes.If mobile telephone equipment (ME1) and card (C2) all are in the password enabled state, then enter 3) password authentification automatically.
3) mobile telephone equipment (ME1) is a characteristic 5 with password 3 (ciphertext form), and it is password 3 (expressly form) that algorithm 4 produces characteristic 6.
4) mobile telephone equipment (ME1) sends characteristic 8 to card (C2), characteristic 8 is " the password authentification instruction with password 3 (expressly form) ", the characteristic 9 that the algorithm 7 of card (C2) produces is " password authentification success or failure indication ", and sends back to mobile telephone equipment (ME1).
5) above-mentioned 3) with 4) under the situation (characteristic is 3) and 4) the processing sequence of formation), if mobile telephone equipment (ME1) receives that password authentification successfully indicates, then start mobile telephone equipment (ME1) and enter normal use, otherwise enter illegal use.
Because password 3 is enough big, illegally the probability that the password 3 of the password 3 of mobile telephone equipment (ME1) and legal mobile telephone equipment (ME1) is identical is very low.Therefore, the password 3 (ciphertext form) of illegal mobile telephone equipment (ME1), the probability that the password 3 (expressly form) that produces through algorithm 4 passes through the password authentification of card (C2) is very low.
In the above-described embodiment, " password that characteristic 8 be ' has password 3 (bright zhang form) enable (password authentification; password cancellation) instruction '; the characteristic 9 that algorithm 7 produces enable (password authentification; password cancellation) success for ' password or failure indication ' " also can use instead " characteristic 8 be ' password be the password of mobile telephone equipment (ME1) IMEI (expressly form) enable (password authentification; password cancellation) instruction '; the characteristic 9 that algorithm 7 produces is ' password enables (password authentification, password cancellation) success or failure indication ' "; " mobile telephone equipment (ME1) is a characteristic 5 with password 3 (ciphertext form), it is characteristic 5 for password 3 (expressly form) " changing into " mobile telephone equipment (ME1) with its IMEI (ciphertext form) that algorithm 4 produces characteristic 6, and it is IMEI (expressly form) that algorithm 4 produces characteristic 6 ".Wherein IMEI is an International Mobile Station Equipment Identification.According to the rules, IMEI is unique in the world.
Execution mode 3:
Card (C2) is Subscriber Identity Module (SIM card) and multimedia storage card (mmc card), and mobile phone (MS) is made up of mobile telephone equipment (ME1) and Subscriber Identity Module (SIM card), multimedia storage card (mmc card).The feature of mobile telephone equipment (ME1) and Subscriber Identity Module (SIM card) can realize by execution mode 1 or execution mode 2.
The characteristic 6 of mobile telephone equipment (ME1) also can be used as the software of mmc card or the encrypt and decrypt password of data.The device serial number of mmc card can also be can be used as characteristic 9, connect as various the accessing to your password of mobile telephone equipment (ME1) with the characteristic 9 that SIM card provides.Similarly, 9 series connection of the characteristic that provides of the characteristic 6 of mobile telephone equipment (ME1) and SIM card access to your password as the various of mmc card together.Characteristic 9 series connection that the characteristic 6 of mobile telephone equipment (ME1) and mmc card provide access to your password as the various of SIM card together.