Method for managing consumption of digital contents within a client domain and devices implementing this method
    81.
    发明申请
    Method for managing consumption of digital contents within a client domain and devices implementing this method 审中-公开
    用于管理客户端域内数字内容消费的方法和实现该方法的设备

    公开(公告)号:US20060294594A1

    公开(公告)日:2006-12-28

    申请号:US11336162

    申请日:2006-01-20

    Abstract: This invention relates to a method for managing consumption of digital contents of a provider in a client domain comprising a portable isolated device where the portable isolated device receives an isolated content, the result of a digital processing of the audio and/or video provider content, and an isolated license associated with the content and containing rights to use the isolated content and authorization information. Also, the portable isolated device manages the consumption of the content in devices of the domain in accordance with the associated rights that it has received, independently of the provider.

    Abstract translation: 本发明涉及一种用于管理客户端领域的提供商的数字内容的消费的方法,包括便携式隔离设备,其中便携式隔离设备接收隔离的内容,音频和/或视频提供商内容的数字处理的结果, 以及与内容相关联并包含使用孤立内容和授权信息的权限的隔离许可证。 此外,便携式隔离设备根据其已经接收的相关权限,独立于提供商来管理域中的设备中的内容的消耗。

    Secure authenticated channel
    83.
    发明申请
    Secure authenticated channel 有权
    安全认证通道

    公开(公告)号:US20060093138A1

    公开(公告)日:2006-05-04

    申请号:US10978162

    申请日:2004-10-29

    CPC classification number: H04L9/0844

    Abstract: A protocol (i.e. method) and corresponding apparatuses for calculating a session key. Two peers with knowledge of a common Diffie-Hellman permanent key, Kperm, and the identity and public key of the other peer. A first peer chooses a first ephemeral private key x and calculates the first corresponding ephemeral public key gx, which is sent to the second peer. The second peer calculates a second ephemeral public key gy in the same manner, and an ephemeral shared key Keph, hashes gy, Keph, Kperm, and its identity, and sends gy and the hash to the first peer. The first peer calculates Keph, verifies the hash, and hashes gx, Keph, Kperm, and its identity, and sends it to the second peer that verifies this hash. Thereafter, both peers obtain a session key by hashing Keph. The apparatuses may then use the session key to establish a secure authenticated channel (SAC).

    Abstract translation: 协议(即方法)和用于计算会话密钥的对应装置。 具有普通Diffie-Hellman永久密钥知识的两个对等体,以及另一个对等体的身份和公钥。 第一对等体选择第一临时私钥x并计算发送给第二对等体的第一对应临时公钥g x 。 第二对等体以相同的方式计算第二临时公钥g ,并且临时共享密钥K ,K < e<<>,<<<>及其身份,并将散列发送到第一对等体。 第一个对等体计算K< eph< / SUB>,验证散列,并且将H< x>,K>,<< 及其身份,并将其发送到验证此哈希的第二个对等体。 此后,两个对等体通过散列K 获得会话密钥。 然后,设备可以使用会话密钥来建立安全认证信道(SAC)。

    Device pairing
    84.
    发明申请
    Device pairing 有权
    设备配对

    公开(公告)号:US20060033840A1

    公开(公告)日:2006-02-16

    申请号:US11198584

    申请日:2005-08-05

    CPC classification number: H04N21/43615 H04N7/163 H04N21/44227 H04N21/4623

    Abstract: The invention relates to pairing a slave device with a master device, for example decoders in a conditional access system. There is provided a security module that stores a device state that indicates whether a decoder shall be a master or a slave decoder. There is also provided a method in a conditional access system of providing a device with a device state stored on a security module. It is detected that the security module is in connection with the device and the device state is transferred from the security module to the device. There is further provided a method of pairing a slave device with a master device. The slave device asks the master device to identify itself, the master device returns an identification, and if the slave device has not yet been paired with a master device, it checks the identity of the master device and, if the identity is verified pairs with the master device. There is also provided a first, slave, device for pairing with a second, master, device. The first device comprises an interface for sending an identification command to and receiving an identification message from the master device, and a processor for checking the identity of the second device and pairing the first device with the second device.

    Abstract translation: 本发明涉及从属设备与主设备的配对,例如条件接入系统中的解码器。 提供了一种安全模块,其存储指示解码器是主器件还是从器件解码器的器件状态。 还提供了一种在条件访问系统中为设备提供存储在安全模块上的设备状态的方法。 检测到安全模块与设备连接,并且设备状态从安全模块传送到设备。 还提供了一种将从设备与主设备配对的方法。 从设备要求主设备自己识别,主设备返回一个标识,如果从设备尚未与主设备配对,则它检查主设备的身份,并且如果身份被验证与 主设备。 还提供了用于与第二主设备配对的第一从设备。 第一设备包括用于向主设备发送识别命令并从主设备接收标识消息的接口,以及用于检查第二设备的身份并将第一设备与第二设备配对的处理器。

    Process for updating a revocation list of noncompliant keys appliances or modules in a secure system for broadcasting content
    85.
    发明申请
    Process for updating a revocation list of noncompliant keys appliances or modules in a secure system for broadcasting content 审中-公开
    用于更新用于广播内容的安全系统中的不符合密钥装置或模块的撤销列表的处理

    公开(公告)号:US20050021942A1

    公开(公告)日:2005-01-27

    申请号:US10499787

    申请日:2002-12-20

    Abstract: The process consists in receiving in a reception device a content from a content provider to which is attached a unique identifier of most recent revocation list, the revocation list containing identifiers of keys, of appliances or of modules regarded as noncompliant by a trusted third party. The revocation list identifier received is compared with a revocation list identifier stored in the reception device and, in case of difference between the identifiers: one downloads the most recent revocation list to the said reception device; or one awaits the reception of the most recent revocation list with a next content. The invention also relates to a process for presenting a content received according to the above process.

    Abstract translation: 该过程包括在接收设备中接收来自内容提供商的内容,附加有最近撤销列表的唯一标识符,撤销列表包含密钥的标识符,或被可信第三方认为不符合的模块的标识符。 所接收的撤销列表标识符与存储在接收装置中的撤销列表标识符进行比较,并且在标识符之间不同的情况下,一个将最近撤销列表下载到所述接收装置; 或者等待接收具有下一个内容的最新撤销列表。 本发明还涉及一种呈现根据上述过程接收到的内容的过程。

Patent Agency Ranking