Data protection system that protects data by encrypting the data

    公开(公告)号:US07395425B2

    公开(公告)日:2008-07-01

    申请号:US10297089

    申请日:2002-03-28

    摘要: A data protection system is provided that reduces, to a degree, the amount of encrypted data that is distributed to a plurality of terminals. In the data protection system a terminal whose decryption keys are exposed by a dishonest party is made to be unable to decrypt the data correctly, while other terminals are able to decrypt the data correctly.The data protection system includes a plurality of terminals, and an encryption device that encrypts distribution data distributed to each terminal. Each terminal is corresponded with one node on a lowest level of a 4-ary tree structure or the like having a plurality of hierarchies. The data protection system, for each node in the tree structure, excluding those on the lowest level, determines a plurality of combination patterns that include combinations of two or more of all four nodes that are reached one level below the node, decides an individual decryption key for each determined combination pattern, and decides an individual decryption key for each node on the lowest level. Further, the data protection system has each terminal store all decryption keys decided for the nodes on the path from the node on the lowest level that corresponds to the terminal through to the node on the highest level. The data protection system prescribes nodes that are reached from the node on the lowest level that corresponds to the terminal through to the node on the highest level that correspond to a terminal that has been dishonestly analyzed as invalid nodes. For invalid nodes, other than invalid nodes on the lowest level, the data protection system designates an encryption key that corresponds to the decryption key decided in correspondence with the combination pattern that combines all nodes, excluding invalid nodes, of the four nodes that are reached one level below the node, and has the encryption device encrypt distribution data that uses each of the designated encryption keys.

    Public key certificate revocation list generation apparatus, revocation judgement apparatus, and authentication system
    93.
    发明授权
    Public key certificate revocation list generation apparatus, revocation judgement apparatus, and authentication system 有权
    公钥证书撤销列表生成装置,撤销判定装置和认证系统

    公开(公告)号:US07373503B2

    公开(公告)日:2008-05-13

    申请号:US10419251

    申请日:2003-04-21

    IPC分类号: H04L9/00

    摘要: An authentication system is provided having a revocation list generation apparatus that constructs and stores a revocation list in a tree structure, the revocation list generation apparatus being used in combination with a revocation judgment apparatus. The authentication system improves upon conventional authentication systems because the memory capacity to store a Certificate Revocation List (CRL) in order to identify revoked certificates is reduced. The tree structure corresponds to public key certificate, which are identified by leaf identifies, and nodes from a leaf that corresponds to a revoked public key certificate.

    摘要翻译: 提供一种认证系统,具有构造并存储树形结构中的撤销列表的撤销列表生成装置,撤销列表生成装置与撤销判断装置结合使用。 认证系统改进了常规认证系统,因为减少了用于存储证书吊销列表(CRL)以识别撤销证书的存储容量。 树结构对应于由叶标识识别的公钥证书,以及对应于撤销的公钥证书的叶的节点。

    Recording/Reproduction Device And Content Protection System
    94.
    发明申请
    Recording/Reproduction Device And Content Protection System 审中-公开
    记录/再现设备和内容保护系统

    公开(公告)号:US20070283442A1

    公开(公告)日:2007-12-06

    申请号:US10587513

    申请日:2005-02-01

    IPC分类号: H04L9/00

    摘要: A recording/reproduction device 10 receives content broadcast from a content provision device 11. The recording/reproduction device 10 encrypts the received content using a device key, to generate first encrypted content. The recording/reproduction device 10 decrypts the first encrypted content to obtain the content, performs an image conversion on the obtained content to generate converted content, and encrypts the converted content using a medium key to generate second encrypted content. The recording/reproduction device 10 writes the second encrypted content, the medium key, and the device key to a portable medium 14. When the portable medium 14 is inserted in a mobile information terminal 15, the mobile information terminal 15 decrypts the second encrypted content using the medium key to obtain the converted content, and reproduces the converted content.

    摘要翻译: 记录/再现装置10从内容提供装置11接收内容广播。 记录/再现设备10使用设备密钥加密所接收的内容,以产生第一加密内容。 记录/再现设备10解密第一加密内容以获取内容,对所获得的内容执行图像转换以生成转换的内容,并且使用中密钥对转换的内容进行加密以生成第二加密内容。 记录/再现设备10将第二加密内容,媒体密钥和设备密钥写入便携式介质14。 当便携式媒体14被插入到移动信息终端15中时,移动信息终端15使用媒体密钥解密第二加密内容以获得转换的内容,并且再现转换的内容。

    Content distribution system
    95.
    发明申请
    Content distribution system 有权
    内容分发系统

    公开(公告)号:US20070256141A1

    公开(公告)日:2007-11-01

    申请号:US11790609

    申请日:2007-04-26

    IPC分类号: H04L9/32

    摘要: A content distribution system for transferring contents between transmission device and reception device. The transmission device includes: key obtaining unit that obtains, from reception device, public keys and public key identifiers; watermark embedding unit that embeds a different public key identifier, as electronic watermark, into each of contents that are identical in substance; an encryption unit that encrypts contents using public keys to generate encrypted contents; and transmission unit that transmits encrypted contents to reception device. The reception device includes: key storage unit storing public keys, public key identifiers, and a private key that makes a pair with one of the public keys; key transmission unit that transmits public keys and public key identifiers to the transmission device; content receiving unit that receives encrypted contents from transmission device; and decryption unit that obtains a content from the received encrypted contents, using the private key.

    摘要翻译: 一种用于在传输设备和接收设备之间传送内容的内容分发系统。 传输设备包括:密钥获取单元,从接收设备获取公钥和公开密钥标识符; 水印嵌入单元,将不同的公钥标识符作为电子水印嵌入到实质上相同的每个内容中; 加密单元,其使用公共密钥对内容进行加密以生成加密内容; 以及将加密内容发送到接收装置的发送单元。 接收装置包括:存储公共密钥的密钥存储单元,公开密钥标识符和与公钥之一成对的专用密钥; 密钥发送单元,向发送装置发送公开密钥和公开密钥标识符; 从发送装置接收加密内容的内容接收单元; 以及使用所述私钥从所接收的加密内容中获取内容的解密单元。

    Copyright protection data processing system and reproduction device
    97.
    发明授权
    Copyright protection data processing system and reproduction device 有权
    版权保护数据处理系统和再现设备

    公开(公告)号:US08171566B2

    公开(公告)日:2012-05-01

    申请号:US12514343

    申请日:2008-02-22

    IPC分类号: G06F7/04 G06F17/30 H04N7/16

    摘要: If playback devices are prohibited from playing back contents recorded in R media, there occurs a problem that it takes more time to manufacture commercial ROM media. Conversely, if playback devices are permitted to play back contents recorded in R media, there occurs a problem that copyrights might be infringed. In view of these, the aim of the present invention is to provide a content protection data processing system and a playback device capable of determine whether to permit playback of a content recorded in a recording medium, based on a medium type of the recording medium and a signature type of a signature attached to a program. This enables both the protection of the copyright of the content and the efficient manufacturing of commercial ROM media.

    摘要翻译: 如果播放设备被禁止播放记录在R媒体中的内容,则出现制造商业ROM媒体需要更多时间的问题。 相反,如果播放设备被允许播放记录在R媒体中的内容,则会出现可能侵犯版权的问题。 鉴于这些,本发明的目的是提供一种内容保护数据处理系统和回放装置,其能够基于介质类型的记录介质确定是否允许记录在记录介质中的内容的回放,以及 附加到程序的签名签名类型。 这既能保护内容的版权,又能实现商业ROM媒体的有效制造。

    COPYRIGHT PROTECTION SYSTEM, REPRODUCTION APPARATUS AND METHOD
    98.
    发明申请
    COPYRIGHT PROTECTION SYSTEM, REPRODUCTION APPARATUS AND METHOD 审中-公开
    版权保护系统,复制装置和方法

    公开(公告)号:US20100122079A1

    公开(公告)日:2010-05-13

    申请号:US12446503

    申请日:2008-09-09

    IPC分类号: H04L9/32 H04L29/06

    摘要: The object of the present invention is to provide a reproduction apparatus that is capable of preventing personal information of users from being transmitted to an external apparatus that is under management of a malicious person.The reproduction apparatus uses a revocation list and a valid-content list in combination in order to prevent transmission of personal information of users. It is possible to prevent transmission of personal information by revoking certificates to be revoked because of being exposed or hacked at a certain timing, by listing them in the revocation list. Meanwhile, it is possible to allow use of contents that have been manufactured before the exposure, by listing them in the valid-content list. Accordingly, it is possible to realize both the security and the user convenience at the same time.

    摘要翻译: 本发明的目的是提供一种能够防止用户的个人信息被传送到恶意管理者的外部设备的再现装置。 再现装置组合使用撤销列表和有效内容列表,以防止用户的个人信息的传输。 可以通过将它们放在撤销列表中,通过撤销由于在某个时间被暴露或被黑客而被吊销的证书来防止个人信息的传播。 同时,可以通过将它们列入有效内容列表中来允许使用在曝光之前制造的内容。 因此,可以同时实现安全性和用户便利性。

    Encrypted-content recording medium, playback apparatus, and playback method
    100.
    发明申请
    Encrypted-content recording medium, playback apparatus, and playback method 有权
    加密内容记录介质,播放装置和播放方法

    公开(公告)号:US20050203853A1

    公开(公告)日:2005-09-15

    申请号:US10796972

    申请日:2004-03-11

    IPC分类号: H04L9/00

    摘要: An encrypted content playback apparatus and a playback method suitable for content playback from a medium in which both content that is subject to conventional copy protection and content to which DRAM is applied exists, and a recording medium on which data used in the playback apparatus and the playback method is stored are disclosed. The medium stores information indicating, for each content, whether the content is content subject to conventional copy protection or content to which DRAM is applied. Based on this information, a playback apparatus determines the key to use to decrypt the content.

    摘要翻译: 存在适用于内容再现的加密内容再现装置和播放方法,其中存在有常规复制保护的内容和应用于DRAM的内容的媒体存在的内容重放装置和重放装置中使用的数据的记录介质 公开了存储播放方法。 介质存储针对每个内容指示内容是否符合常规复制保护的内容或应用于DRAM的内容的信息。 基于该信息,重放装置确定用于解密内容的密钥。