Analysis of PPSE Problems Faced by Financial IC Cards in SIM Cards

The mobile e-commerce business at home and abroad has grown rapidly in recent years. The trial of NFC-based mobile phone-based near-field transaction services started gradually in 2012. The business development models and product plans in different countries and regions are not the same, and the business scale is also uneven. Combining domestic and international mobile operators, financial institutions, terminal and Internet companies, security and card companies in recent years, product development, pilot operations, trials and tribulations, summed up and talked about a series of inevitable issues facing NFC business promotion, and How to solve the possible or already used methods and programs.

This time talk about PPSE issues faced by domestic financial IC cards (PBOC cards and terminals) used in NFC SIM cards.

What is PPSE?

According to the definition of China's financial IC card specification, PPSE is short for ProximityPaymentSystemsEnvironment, and Chinese is called near-distance payment system environment. PPSE is the identification and application selection path file for non-contact financial PBOC application (also known as qPBOC) stored in the card. The file stores several lists, each list includes the application identification (AID) and application of the financial application accepted in the card. Labels and application priority indicators. PPSE itself is also an application. It has its own AID, which is defined as "2PAY.SYS.DDF01" in the specification.

When was PPSE written to the card? Most of the current financial banks are in the personalization stage before the issuance of financial IC cards, and are written by card issuers or cooperating card-makers. The writing content varies according to the issuing bank, and the formats are all in compliance with the specifications. Each list includes the application identification (AID), application tag, and application priority indicator of the financial application accepted in the card. The application priority indicator is the order in which the financial applications within the card are selected.

When was PPSE used? If the terminal supports qPBOC, pre-transaction processing should be performed before prompting the cardholder to present the card and the POS terminal is activated. After the POS terminal detects the non-contact card, it attempts to read the PPSE. The process is as follows:

——POS terminal adopts AID name “2PAY.SYS.DDF01” to select PPSE;

- The card will provide PPSE information to the POS terminal in the form of a list, through the FCI of the Select instruction;

- The POS terminal shall establish a list of applications that are included in the FCI and supported by the terminal. The terminal shall determine the priority 4-1 of the application priority indicator (indicating the order in which the applications are selected) and select the application with the highest priority to process the transaction. If only one application is included in the FCI and supported by the terminal, the terminal shall select This application does not consider the setting of the application priority indicator that may appear.

NFCSIM supports multiple applications of one card, that is to say, this SIM can contain multiple financial IC cards of multiple banks, which brings problems that standard financial IC cards do not encounter.

(1) Conflict of PPSE content: The content of a bank account PPSE is determined by the card issuing bank. The contents of multiple bank accounts PPSE are determined by multiple card issuers. There will be multiple PPSEs in a SIM card, and which PPSE is activated. effect? If all are valid, what if they encounter content conflicts (such as applying a priority indicator)?

(2) PPSE write flow problem: If multiple bank card accounts are preset, it is necessary to obtain PPSE data from multiple banks and write them in advance. No matter how complicated the process is, the theory can be manipulated. If the user downloads a new bank card over the air to the SIM, it needs a secure TSM platform to write. Which TSM platform to use? According to the existing specifications, there is only one PPSE file in the card. Is it possible for multiple TSM platforms to operate on it or only one TSM platform?

In the current formulation of the PBOCIC series specifications, there is not much consideration for one-card and multi-application scenarios. In reality, there is rarely one case where other bank IC applications are placed in the bank's IC card. As the promotion and use of multi-application cards for mobile payment, a series of new problems will be encountered, such as the efficiency of the use of card space in the previous article and the PPSE issues of multiple card issuers in this article. In the long run, there is a need to upgrade existing specifications to support the real promotion of mobile payments. In the short term, solutions can also be found without changing specifications, changing existing POS equipment, or changing transaction processes.

The solution to the first problem is by setting a default way to activate bank card accounts. From the user's point of view, the user sets the default activated bank card account on the mobile phone, and then goes to the card. If the user wants to change the card, other bank cards can be selected in the mobile phone, which is like the action of choosing different bank cards from their own wallet for consumption. Specific technical solutions and implementation details require some design of the card and mobile phone software. This article will not elaborate. Through this program, the PPSE content of multiple banks can exist within one SIM card, and the used bank card will return the associated PPSE content.

The solution to the second problem is not only technical solutions but also cooperation models. From the security point of view, the operation of updating the unique PPSE file in the card should be controlled by the only platform (TSM platform). If the updating of the PPSE in the SIM card by multiple TSM platforms will cause mutual trust among multiple banks, it will also increase the difficulty of controlling the risk when the security problem occurs, and even seriously affect the traceability of the cause of the problem. Choosing a trusted TSM platform is the key to solving this problem.

NFC is a new technology and NFC service is a series of new services. The cooperation of NFCSIM card is a new requirement. Therefore, in this three-new environment, we must not stick to the rules. Technological innovation and model innovation are the ways to product success, and the satisfaction of user needs and A good user experience is a basic prerequisite. The promotion of more than one card and multiple applications requires the cooperation of multiple card-based parties. The basic premise of cooperation is mutual trust. This requires management, technology, and business aspects to be bound and guaranteed, but it must be operable.

Weigh 2kg-5kg Electronic Scales

Weigh 2Kg-5Kg Electronic Scales,Luggage Scale,Digital Scale For Baking,Digital Scales For Body Weight

Shanghai Liuyuan Trading Co. , Ltd. , https://www.ly-weighing.com