Method and apparatus for providing conditional access in connection-oriented interactive networks with a multiplicity of service providers
    1.
    发明授权
    Method and apparatus for providing conditional access in connection-oriented interactive networks with a multiplicity of service providers 有权
    用于在与多个服务提供商的面向连接的交互式网络中提供条件访问的方法和装置

    公开(公告)号:US06424714B1

    公开(公告)日:2002-07-23

    申请号:US09135615

    申请日:1998-08-18

    IPC分类号: H04N7167

    摘要: A control system provides secure transmission of programs, including at least one of video, audio, and data, between a service provider and a customer's set top unit over a digital network. Program bearing data packets are received in a first network protocol over a first data link and removed from the first network protocol. Packets representing a particular program requested by a customer having a set top unit are selected. Conditional access is provided to the selected program. In particular, program bearing packets are encrypted according to a first encryption algorithm using a first key, which is then encrypted according to a second encryption algorithm using a second key. The first keys are transported in packets to the customer's set top units along with the program packets. A public key cryptographic technique encrypts the second key such that the public key used in the encryption corresponds to the private key of the customer's set top unit. After the conditional access layers have been added, the packets are encapsulated and output in a second network protocol destined for the set top unit.

    摘要翻译: 控制系统通过数字网络在服务提供商和客户机顶单元之间提供程序的安全传输,包括视频,音频和数据中的至少一个。 通过第一数据链路在第一网络协议中接收节目承载数据分组,并从第一网络协议中移除。 选择代表由具有机顶单元的客户请求的特定程序的分组。 条件访问被提供给所选程序。 特别地,使用第一密钥根据第一加密算法来加密程序承载分组,该第一密钥然后使用第二密钥根据第二加密算法进行加密。 第一个密钥与数据包一起传输到客户机顶单元。 公钥加密技术对第二密钥进行加密,使得加密中使用的公钥对应于客户机顶单元的私钥。 在添加条件访问层之后,数据包被封装并输出到用于机顶单元的第二网络协议中。

    Partial Dual-Encryption Using Program Map Tables
    5.
    发明申请
    Partial Dual-Encryption Using Program Map Tables 有权
    使用程序映射表进行部分双加密

    公开(公告)号:US20090147954A1

    公开(公告)日:2009-06-11

    申请号:US12352712

    申请日:2009-01-13

    IPC分类号: H04N7/167 H04L9/00

    摘要: Systems and method for partial encryption are disclosed. One example method comprises: creating a program association table to include a first program number which identifies a program encrypted in accordance with a first encryption scheme, and a second program number which identifies the same program encrypted in accordance with a second encryption scheme; and creating a program map table for the same program to include first audio and video identifiers associated with the first encryption scheme and second audio and video identifiers associated with the second encryption scheme.

    摘要翻译: 公开了用于部分加密的系统和方法。 一个示例性方法包括:创建程序关联表以包括标识根据第一加密方案加密的程序的第一程序号和标识根据第二加密方案加密的相同程序的第二程序号; 以及创建用于相同程序的程序映射表,以包括与第一加密方案相关联的第一音频和视频标识符以及与第二加密方案相关联的第二音频和视频标识符。

    Method and apparatus for uniquely encrypting a plurality of services at
a transmission site
    10.
    发明授权
    Method and apparatus for uniquely encrypting a plurality of services at a transmission site 失效
    用于在传输站点唯一加密多个服务的方法和装置

    公开(公告)号:US5381481A

    公开(公告)日:1995-01-10

    申请号:US101974

    申请日:1993-08-04

    摘要: Methods and apparatus are described for uniquely encrypting a plurality services at a transmission site and for decrypting selected services at a reception site while reducing the amount of encryption related information that must be transmitted to the reception site for decryption purposes. A unique spreading function is generated at the transmission site for each service to be transmitted. A random quantity is then transmitted, and the random quantity is convolved with each spreading function to produce a unique encryption seed for each service. At least a portion of each service is then encrypted using the unique encryption seeds produced for each service. Only the random quantity is transmitted to the reception site along with the encrypted portions of each service. None of the unique encryption seeds are transmitted. At the reception site, the unique spreading functions generated at the transmission site for each service are regenerated. A selected service is then decrypted by (i) convolving the received random quantity with the regenerated spreading function associated with the selected service to reproduce the unique encryption seed used to encrypt the received encrypted portion of the selected service at the transmission site, and (ii) decrypting the received encrypted portion of the selected service using the reproduced encryption seed. By transmitting only the random quantity, and then reproducing the encryption seeds at the reception site, the amount of encryption related information transmitted to the reception site is greatly reduced.

    摘要翻译: 描述了用于在传输站点处唯一地加密多个服务并且在接收站点解密所选择的服务的方法和装置,同时减少必须发送到接收站点的用于解密的加密相关信息的量。 在传输站点生成要传输的每个服务的唯一扩展功能。 然后发送随机数,随机数量与每个扩展函数进行卷积,以产生每个服务的唯一加密种子。 然后,使用为每个服务生成的唯一加密种子来加密每个服务的至少一部分。 只有随机数量与每个服务的加密部分一起被发送到接收站点。 没有一个唯一的加密种子被传输。 在接收站点,在每个业务的传输站点生成的独特的扩展功能被重新生成。 然后通过以下步骤来解密所选择的服务:(i)使用与所选择的服务相关联的再生扩展功能卷积所接收的随机数,以再现用于加密在传输站点处所选服务的接收的加密部分的唯一加密种子, )使用所再现的加密种子解密所选服务的接收的加密部分。 通过仅发送随机数,然后在接收站点再现加密种子,大大减少了发送到接收站点的加密相关信息量。