System and method for securing content keys delivered in manifest files

    公开(公告)号:US11228427B2

    公开(公告)日:2022-01-18

    申请号:US14618598

    申请日:2015-02-10

    申请人: Ericsson AB

    IPC分类号: H04L9/08 H04L9/14

    摘要: A method and a user device are disclosed for securing streaming content decryption. The method includes receiving at the user device a manifest for requested content, the manifest providing a Content Encryption Key (CEK) that is encrypted using a first public Key Encryption Key (KEK), a corresponding first private KEK being stored in secure storage on the user device; decrypting, inside a secure processing zone on the user device, the CEK using the first private KEK to create a decrypted content key; decrypting, inside the secure processing zone, requested content using the decrypted content key to form decrypted content; and providing the decrypted content to a decoder on the mobile user device.

    DRM plugins
    2.
    发明授权

    公开(公告)号:US10929513B2

    公开(公告)日:2021-02-23

    申请号:US16817036

    申请日:2020-03-12

    申请人: Ericsson AB

    发明人: Alan Rouse

    IPC分类号: G06F21/10

    摘要: Presented is a television and methods for decrypting digital data, which is encrypted using one of a plurality of different encryption techniques. A television can receive a digital content stream from a service provider. The digital stream includes the digital content, a decryption module, and metadata. A television can further extract the decryption module as instructed by the metadata from the digital content stream. A television can further decrypt the digital content with the extracted decryption module and a decryption key.

    Controlling delivery of video programs using user defined identifiers for video receiver devices

    公开(公告)号:US10728484B2

    公开(公告)日:2020-07-28

    申请号:US14050034

    申请日:2013-10-09

    申请人: ERICSSON AB

    摘要: A method of controlling delivery of video programs from video distribution equipment to video receiver devices includes receiving messages at the video distribution equipment from a mobile terminal operated by a user. The messages contain user defined identifiers that are associated with equipment identifiers of different ones of the video receiver devices. The user defined identifiers are stored associated with the equipment identifiers in a subscriber account. Delivery of video programs from the video distribution equipment to the video receiver devices is controlled in response to commands received from the mobile terminal which request delivery of identified video programs to identified ones of the user defined identifiers. Related video distribution equipment and mobile terminals are disclosed.

    Media client device authentication using hardware root of trust

    公开(公告)号:US10395012B2

    公开(公告)日:2019-08-27

    申请号:US15925482

    申请日:2018-03-19

    申请人: ERICSSON AB

    摘要: A client device for media playback includes a user-installable media client application which implements the client-side of a digital rights management (DRM) system. The client device employs secure boot and verifies the user-installed application. The application is hardened against reverse engineering, and it utilizes a special API provided by the client device to tie into the secure boot, bridging the gap between the secure boot and the client-side of the DRM system contained within the application.

    DRM plugins
    8.
    发明授权

    公开(公告)号:US10169550B2

    公开(公告)日:2019-01-01

    申请号:US15650862

    申请日:2017-07-15

    申请人: Ericsson AB

    发明人: Alan Rouse

    IPC分类号: G06F21/10

    摘要: Presented is a system and methods for receiving metadata, a decryption module and encrypted content from a cable headend, decrypting the encrypted content with the decryption module and presenting the decrypted content to a user. The client device can receive, load and execute any decryption module compatible with the system framework allowing flexibility in the choice or changing of client device manufacturer and/or Digital Rights Management system vendor.

    Techniques for routing and forwarding between multiple virtual routers implemented by a single device

    公开(公告)号:US10116556B2

    公开(公告)日:2018-10-30

    申请号:US14985133

    申请日:2015-12-30

    申请人: Ericsson AB

    发明人: Naiming Shen

    摘要: Techniques for routing and forwarding between multiple virtual routers implemented by a single device are described. A second virtual router is configured to learn routes from a first virtual router. A first route is inserted into a first routing table of the first virtual router, which includes a next hop corresponding to a physical network interface of the device leading to an external destination. The first route is distributed to a second virtual router to be installed in a second routing table as a second route, responsive to the second virtual router begin configured to learn routes from the first virtual router. Responsive to receiving a packet, the packet is forwarded according to a forwarding table entry corresponding to the second route of the second routing table to send the packet using the physical network interface to the external destination.