Device Committee
The aim of the GlobalPlatform Device Committee is:
- To define an open security architecture for wireless devices and the Trusted Execution Environment (TEE), enabling the development and deployment of security applications from multiple service providers.
- To define on-device services necessary for the management of secure elements (SE).
The Device Committee is currently chaired by Christophe Colas from Trusted Logic Mobility (an affiliate of Gemalto).
Committee Objectives:
- To develop, maintain and evolve specifications for the TEE targeting in particular the wireless industry and other TEE technologies.
- To define and develop the GlobalPlatform Device TEE Compliance Program, to facilitate interoperability within GlobalPlatform device application deployments.
- To define and develop the GlobalPlatform Device TEE Security Certification Program, to facilitate the security ranking of TEE implementations.
- To develop, maintain and evolve specifications for the GlobalPlatform Secure Element Remote Application Management Specification facilitating the connection of Trusted Service Managers (TSM) to SEs.
- To develop, maintain and evolve specifications for the GlobalPlatform Secure Element Access Control Specification enabling the control of communication between device applications to SEs.
- To reach out to and liaise with other relevant industry and standardization groups and identify new business requirements and opportunities for progressing joint working initiatives.
- To work with GlobalPlatform's Task Forces and Card and Systems Committees to ensure the alignment of device technology within the context of the wider GlobalPlatform technology infrastructure.
- To maintain the legacy GlobalPlatform Device/STIP Specifications and related supporting documents and tools, while retaining backwards compatibility with earlier technology releases, as well as the legacy GlobalPlatform Device and Application Security Management (DASM) Specification.
Beneficiaries of the Committee Include:
- Device and chipset manufacturers looking for a standardized way to provide a TEE.
- Service providers who will benefit from the isolation of applications in a heterogeneous business model operating within a single, standardized and interoperable environment.
- Application developers wishing to create interoperable yet sensitive applications, while enjoying the added support provided by the GlobalPlatform community.
- Network and service operators wishing to offer customers a secure environment which is interoperable between various device platforms.
- All of the above parties that have an interest in having SE management components within a device.
2012 Activities and Priorities:
- To evolve TEE Internal APIs to include features such as trusted user interface, access to SEs, networking and near field communication (NFC).
- To develop specifications for the administration of the TEE.
- To complete the GlobalPlatform TEE Compliance Program.
- To develop the TEE security certification program.
- To complete the GlobalPlatform Secure Element Access Control Specifications.
- To maintain and update all GlobalPlatform Device Specifications as appropriate.
Device Committee Working Groups:
TEE Specifications Working Group
Objectives:
- To define and advance GlobalPlatform's TEE core technology developments and market offering including APIs and TEE administration
TEE Compliance Working Group
Objectives:
- To facilitate interoperability between TEEs.
TEE Security Working Group
Objectives:
- To ensure there is a method to evaluate the security of TEEs by closing the certification gap with a pragmatic approach.
TEE Roadmap Working Group
Objectives:
- To identify opportunities and strategic direction of GlobalPlatform's TEE Roadmap to meet market requirements.
SE Remote Application Management Working Group
Objectives:
- To evolve as necessary the GlobalPlatform SE Remote Application Management Specification
SE Access Control Working Group
Objectives:
- To design security mechanisms to control and standardize the manner in which the access control policy is stored and read in an SE.
- To implement an access control policy at a device level (e.g. on an Android application).
Upcoming Meetings:
Please see below a schedule of upcoming meetings of the Device Committee and its working groups. If you have an interest in keeping abreast of committee discussions and developments or would like to become actively involved in these meetings, become a GlobalPlatform member.
6 February 2012: TEE Security Working Group Face to face meeting - Meudon, France
7 February 2012: TEE Compliance Working Group – Test 1 Meeting – Rennes, France
21-22 February 2012: TEE Specification Working Group Face to face meeting – Maidenhead, UK
13-14 March 2012: TEE Specification Working Group Face to face meeting - Villeneuve Loubet
|