SECURE WATERMARKING OF CONTENT
    1.
    发明公开
    SECURE WATERMARKING OF CONTENT 审中-公开
    外管局WATER MARK标记内容

    公开(公告)号:EP2939360A1

    公开(公告)日:2015-11-04

    申请号:EP13814996.8

    申请日:2013-12-30

    IPC分类号: H04L9/00

    摘要: Methods and systems for secure watermarking of at least part of a content item X are described, wherein the method comprises: providing a distorted content item X+y, comprising one or more distorted data units wherein the payload of a distorted data unit comprises a distortion signal y which distorts the rendering of the payload in said distorted data unit; providing a compensating watermark payload w-y comprising one or more compensating watermark signals δ-y; using homomorphic encryption for encrypting at least part of said distorted content item X+y and said compensating watermark payload into an encrypted distorted content item E(X+y) and an encrypted compensating watermark payload E(w-y) on the basis of one or more encryption keys; and, combining said encrypted distorted content item with said encrypted compensating watermark payload on the basis of one or more homomorphic computations, wherein said one or more computations modify a distortion signal y in the payload of a distorted data unit into a non-perceptible watermark signal δ.

    PROXIMITY DISCOVERY, AUTHENTICATION AND LINK ESTABLISHMENT BETWEEN COMMUNICATION MOBILE DEVICES IN 3GPP LTE
    2.
    发明公开
    PROXIMITY DISCOVERY, AUTHENTICATION AND LINK ESTABLISHMENT BETWEEN COMMUNICATION MOBILE DEVICES IN 3GPP LTE 有权
    NÄHERUNGSERKENNUNG,AUTHENTIFIZIERUNG UND VERBINDUNGSAUFBAU ZWISCHEN MOBILKOMMUNIKATIONSVORRICHTUNGEN IN 3GPP-LTE

    公开(公告)号:EP2826223A1

    公开(公告)日:2015-01-21

    申请号:EP14701517.6

    申请日:2014-01-23

    IPC分类号: H04L29/06 H04W12/06

    摘要: The invention enables a device to discover one or more other devices within range for a device-to-device mode of communication. This proximity discovery may trigger a target device, e.g. to start listening to signals from a source device or perform any other action based on the proximity discovery like e.g. charging at a toll gate. A source device that wants to be discovered broadcasts a message including an identifier or a representation of the identifier. This identifier may be an identifier of the target device to be contacted or of the source device or a derivation thereof or a common security association used by a set of peers. The target device compares the broadcast identifier with a known identifier to establish proximity discovery.

    摘要翻译: 本发明使得设备能够在设备到设备通信模式的范围内发现一个或多个其他设备。 该邻近发现可以触发目标设备,例如, 开始收听来自源设备的信号,或者基于邻近发现执行任何其他动作,例如, 在收费站收费。 想要被发现的源设备广播包括标识符的标识符或表示的消息。 该标识符可以是要联系的目标设备或源设备的标识符或其派生或一组对等体使用的公共安全关联。 目标设备将广播标识符与已知标识符进行比较以建立邻近度发现。

    SECURE DISTRIBUTION OF CONTENT
    3.
    发明公开
    SECURE DISTRIBUTION OF CONTENT 审中-公开
    内容的安全分发

    公开(公告)号:EP2759088A1

    公开(公告)日:2014-07-30

    申请号:EP12755886.4

    申请日:2012-09-07

    IPC分类号: H04L9/08 H04L9/26 H04L9/30

    摘要: Methods and systems are described for secure delivery of a content item from at least a first content distribution network (CDN1) to at least one content receiving entity using a split-key cryptosystem comprising encryption and decryption algorithms E and D, a cipher algorithm for generating encryption and decryption keys e,d on the basis of secret information S and a split-key algorithm using secret information S for splitting e into i different split-encryption keys e
    1 ,e
    2 ,…,e
    i and/or for splitting d into k different split-decryption keys d
    1 ,d
    2 ,…,d
    k respectively, such that D
    dk (D
    dk-1 (…(D
    d2 (D
    d1 (E
    ei (E
    ei-1 (…(E
    e2 (E
    e1 (X))…))= D
    dk (D
    dk-1 (…(D
    d2 (D
    d1 (X
    e1,e2,…,ei ))=X wherein i,k≥1 and i+k>2. The method may comprise: a content source providing said at least one CDN1 with at least one an encrypted content item X
    e ; a key generator associated with said content source comprising said cipher and split-key algorithm generating first split-key information and transmitting said first split-key information to said first CDN1, preferably to a first secure module associated with said CDN1; generating a partially decrypted content item on the basis of said encrypted content item X
    e , said decryption algorithm D and said first split-key information; and, transmitting said partially decrypted content item to said content receiving entity.

    摘要翻译: 描述了使用包括加密和解密算法E和D的分裂密钥密码系统将内容项从至少第一内容分发网络(CDN1)安全传递到至少一个内容接收实体的方法和系统,用于生成 加密和解密密钥e,d基于秘密信息S和使用秘密信息S的分裂密钥算法,用于将e分割成不同的分裂加密密钥e 1,e 2,...,ei和/或用于将d分割成 (E e1(E ei-1(...(E e2(E e1(E ei-1))...(D e (X))...))= D dk(D dk-1(...(D d2(D d1(X e1,e2,...,ei))= X其中i,k≥1且i + k> 2。 方法可以包括:内容源,向所述至少一个CDN1提供至少一个加密内容项X e;与所述内容源相关联的密钥生成器,包括所述密码和分裂密钥算法,生成第一分裂密钥信息和传输 将所述第一分离密钥信息提供给所述第一CDN1,优选分配给与所述CDN1相关联的第一安全模块; 根据所述加密内容项X e,所述解密算法D和所述第一分裂密钥信息产生部分解密的内容项; 以及将所述部分解密的内容项目传输到所述内容接收实体。

    DRM KEY TREE PROVISIONING
    5.
    发明授权

    公开(公告)号:EP3179669B1

    公开(公告)日:2018-09-19

    申请号:EP16203128.0

    申请日:2016-12-09

    IPC分类号: H04L9/00 H04L9/08

    摘要: A method, suitable for content delivery, is described of communicating a value originating at a first node which forms a part of a first entity, to a third node, which first and second node are separated by a second node which is arranged to generate a key distribution scheme. The third node is arranged to receive keys distributed via the key distribution scheme. The method comprises encrypting the value at the first node using a number N generated by the first entity, and a random number r i generated by the third entity, and where r i and N do not have a common divisor, N has large prime factors p and q, and the second entity is in receipt of N but is not in receipt of p and q. The encrypted value is transmitted from the first node through the second node to the third node.

    DRM KEY TREE PROVISIONING
    7.
    发明公开
    DRM KEY TREE PROVISIONING 审中-公开
    DRM关键树配置

    公开(公告)号:EP3179669A1

    公开(公告)日:2017-06-14

    申请号:EP16203128.0

    申请日:2016-12-09

    IPC分类号: H04L9/00 H04L9/08

    摘要: A method, suitable for content delivery, is described of communicating a value originating at a first node which forms a part of a first entity, to a third node, which first and second node are separated by a second node which is arranged to generate a key distribution scheme. The third node is arranged to receive keys distributed via the key distribution scheme. The method comprises encrypting the value at the first node using a number N generated by the first entity, and a random number r i generated by the third entity, and where r i and N do not have a common divisor, N has large prime factors p and q, and the second entity is in receipt of N but is not in receipt of p and q. The encrypted value is transmitted from the first node through the second node to the third node.

    摘要翻译: 描述了一种适用于内容传递的方法,用于将源自构成第一实体的一部分的第一节点的值传递给第三节点,该第三节点由第二节点分隔,该第二节点被布置成生成 密钥分配方案。 第三节点被安排成接收通过密钥分配方案分配的密钥。 该方法包括使用由第一实体产生的数目N和由第三实体产生的随机数ri对第一节点处的值进行加密,并且其中ri和N不具有公约数,N具有较大的素数因子p和 q,而第二个实体收到N但没有收到p和q。 加密值从第一节点通过第二节点传输到第三节点。

    SECURE DISTRIBUTION OF CONTENT
    8.
    发明公开
    SECURE DISTRIBUTION OF CONTENT 审中-公开
    内容的安全分发

    公开(公告)号:EP2772004A1

    公开(公告)日:2014-09-03

    申请号:EP12775505.6

    申请日:2012-10-24

    摘要: Methods and systems are described for enabling secure delivery of a content item from a content source to a content receiving device associated with a decryption module configured for use with a split-key cryptosystem comprising encryption and decryption algorithms E and D, a cipher algorithm for generating encryption and decryption keys e,d on the basis of secret information S and a split- key algorithm for splitting e and/or d into i different split-encryption keys e
    1 ,e
    2 ,…,e
    i and/or k different split-decryption keys d
    1 , d
    2 ,…,d
    k respectively, such that Ddk(Ddk-
    1 (…(D
    d2 (D
    d1 (E
    ei (E
    ei-1 (…(E
    e2 (E
    e1 (X))…))= D
    dk (D
    dk-1 (…(D
    d2 (D
    d1 (X
    e1 ,
    e2 ,
    …,ei ))=X wherein i,k≥1 and i+k>2, wherein the method comprises: provisioning said decryption module with first split-key information comprising at least a first split-key; generating second split-key information comprising at least a second split-key on the basis of said first split-key information, said decryption key d and, optionally, said secret information S; and, provisioning said decryption module with said at least second split-key 1 information for decrypting an encrypted content item X
    e on the basis of said first and second split-key information and decryption algorithm D in said decryption module.