Method and arrangement for enabling play-out of media
    1.
    发明授权
    Method and arrangement for enabling play-out of media 有权
    实现媒体播放的方法和布置

    公开(公告)号:US08738910B2

    公开(公告)日:2014-05-27

    申请号:US13514100

    申请日:2009-12-07

    IPC分类号: H04L9/32

    摘要: Methods and arrangements for enabling the use of a first device (300) for controlling transfer of media content from a content provider (306) to a second device (302). The first device has a pre-established security association with the communications network. When the network detects a request made by the first device for delivery of media content to the second device, key information is established which enables determination of one or more media keys for encryption of the media content. The network sends key information to the content provider and to the first device. The content provider then delivers media content encrypted by the media key(s) to the second device. Further, the first device forward the media key(s) over a local communication link to the second device for decryption of media content encrypted by the media key(s) when delivered by the content provider.

    摘要翻译: 允许使用第一设备(300)来控制媒体内容从内容提供商(306)传送到第二设备(302)的方法和装置。 第一个设备与通信网络有预先建立的安全关联。 当网络检测到由第一设备发送用于向第二设备传送媒体内容的请求时,建立了能够确定用于加密媒体内容的一个或多个媒体密钥的密钥信息。 网络向内容提供商和第一个设备发送密钥信息。 然后,内容提供商将由媒体密钥加密的媒体内容传送到第二设备。 此外,当由内容提供商递送时,第一设备通过本地通信链路将媒体密钥转发到第二设备以解密由媒体密钥加密的媒体内容。

    Method and Arrangement for Enabling Play-Out of Media
    2.
    发明申请
    Method and Arrangement for Enabling Play-Out of Media 有权
    实现媒体播放的方法和安排

    公开(公告)号:US20120246480A1

    公开(公告)日:2012-09-27

    申请号:US13514100

    申请日:2009-12-07

    IPC分类号: H04L9/32

    摘要: Methods and arrangements for enabling the use of a first device (300) for controlling transfer of media content from a content provider (306) to a second device (302). The first device has a pre-established security association with the communications network. When the network detects a request made by the first device for delivery of media content to the second device, key information is established which enables determination of one or more media keys for encryption of the media content. The network sends key information to the content provider and to the first device. The content provider then delivers media content encrypted by the media key(s) to the second device. Further, the first device forward the media key(s) over a local communication link to the second device for decryption of media content encrypted by the media key(s) when delivered by the content provider.

    摘要翻译: 允许使用第一设备(300)来控制媒体内容从内容提供商(306)传送到第二设备(302)的方法和装置。 第一个设备与通信网络有预先建立的安全关联。 当网络检测到由第一设备发送用于向第二设备传送媒体内容的请求时,建立了能够确定用于加密媒体内容的一个或多个媒体密钥的密钥信息。 网络向内容提供商和第一个设备发送密钥信息。 然后,内容提供商将由媒体密钥加密的媒体内容传送到第二设备。 此外,当由内容提供商递送时,第一设备通过本地通信链路将媒体密钥转发到第二设备以解密由媒体密钥加密的媒体内容。

    Method and apparatus for providing secure linking to a user identity in a digital rights management system
    3.
    发明授权
    Method and apparatus for providing secure linking to a user identity in a digital rights management system 有权
    用于在数字版权管理系统中提供与用户身份的安全链接的方法和装置

    公开(公告)号:US08234497B2

    公开(公告)日:2012-07-31

    申请号:US12738390

    申请日:2008-10-22

    IPC分类号: H04L29/06

    摘要: Disclosed is a DRM device and method for providing secure linking to a user identity. A first request is sent to a subscriber identity module. A message is received from the subscriber identity module via a secure authenticated channel. The message comprises at least a master key identifier, a random number, and a derived key. In response to the message, a second request is sent to a DRM server. The second request comprises at least a master key identifier, the device identifier, and a random number. Also disclosed is a DRM server and method for providing secure linking to a user identity. A first request is received from a DRM device. The first request comprises at least master key identifier, a device identifier, and a random number. The DRM device is authenticated. A second request for an application specific key is sent to a trusted key management server. The second request comprises at least a master key identifier. At least a key is received from the trusted key management server. A derived key is determined from the key received from the trusted key management server based at least on the device identifier and the random number. A challenge/response scheme is used to determine whether the derived key of the DRM server matches a derived key of the DRM device.

    摘要翻译: 公开了一种用于提供对用户身份的安全链接的DRM设备和方法。 第一个请求被发送到订户身份模块。 通过安全认证的信道从订户身份模块接收到消息。 消息至少包括主密钥标识符,随机数和导出密钥。 响应该消息,向DRM服务器发送第二个请求。 第二请求至少包括主密钥标识符,设备标识符和随机数。 还公开了一种用于提供对用户身份的安全链接的DRM服务器和方法。 从DRM设备接收到第一请求。 第一请求至少包括主密钥标识符,设备标识符和随机数。 DRM设备被认证。 对应用程序特定密钥的第二个请求被发送到可信密钥管理服务器。 第二请求至少包括主密钥标识符。 至少从可信密钥管理服务器接收到密钥。 从至少基于设备标识符和随机数的从可信密钥管理服务器接收到的密钥来确定派生密钥。 挑战/响应方案用于确定DRM服务器的导出密钥是否与DRM设备的派生密钥相匹配。

    Usage Control of Digital Data Exchanged Between Terminals of a Telecommunications Network
    4.
    发明申请
    Usage Control of Digital Data Exchanged Between Terminals of a Telecommunications Network 审中-公开
    电信网络终端之间数字数据交换的使用控制

    公开(公告)号:US20130054965A1

    公开(公告)日:2013-02-28

    申请号:US13515914

    申请日:2009-12-23

    IPC分类号: H04L29/06

    摘要: The invention refers to a method of supporting a sending user device (14) to enforcing a usage control of digital content embedded in a content object, CO, wherein a rights object, RO, associated to the CO is required for using the digital content of the CO at a receiving user device (16), the method comprising generating at the sending user device (14) a encryption information for decrypting the encrypted digital content and inserting the decryption information into the RO, and sending the RO to a rights management server (12) to be forwarded to the receiving user device (16). The invention further refers to a corresponding method of receiving at a rights management server (12) a rights object generation request to be forwarded to the receiving user device (16), and to a corresponding user device server and a corresponding server.

    摘要翻译: 本发明涉及一种支持发送用户设备(14)来实施嵌入在内容对象CO中的数字内容的使用控制的方法,其中与CO相关联的权限对象RO需要用于使用数字内容 在接收用户设备(16)处的CO,所述方法包括在发送用户设备(14)处生成用于解密加密的数字内容并将解密信息插入到RO中的加密信息,并将RO发送到权限管理服务器 (12)被转发到接收用户设备(16)。 本发明还涉及在权限管理服务器(12)处接收要转发到接收用户设备(16)的权利对象生成请求以及对应的用户设备服务器和对应的服务器的对应方法。

    Apparatuses and methods for enabling a user to consume protected contents of a content provider
    7.
    发明授权
    Apparatuses and methods for enabling a user to consume protected contents of a content provider 有权
    用于使用户能够使用内容提供商的受保护内容的装置和方法

    公开(公告)号:US08806208B2

    公开(公告)日:2014-08-12

    申请号:US13577756

    申请日:2010-02-11

    IPC分类号: H04L29/06

    摘要: The embodiments of the present invention relate to apparatuses, in terms of a client device (110) and a server (120) and to methods in the client device (110) and in the server (120) respectively for enabling a user to consume content provided by a content provider. According to the method in the client device (120) the method comprises: assembling a request for rights for consuming a content and indicating in the request which content to consume; determining if an upgrade key, associated with the content, is present in the client device; including, in such a case, in the request, an identifier of the upgrade key that is associated with the content, sending the request to the content provider; receiving, a response comprising an encrypted rights object; decrypting the encrypted rights object and starting to use the rights object for consuming the content.

    摘要翻译: 本发明的实施例涉及关于客户端设备(110)和服务器(120)以及客户端设备(110)和服务器(120)中的方法的设备,以使用户能够消费内容 由内容提供商提供。 根据客户端装置(120)中的方法,该方法包括:组合消费内容的权利请求,并在请求中指示要消费的内容; 确定与所述内容相关联的升级密钥是否存在于所述客户端设备中; 在这种情况下,在该请求中包括与内容相关联的升级密钥的标识符,向内容提供者发送请求; 接收包括加密权限对象的响应; 解密加密的权限对象并开始使用权限对象来消费内容。

    Method and device for communicating digital content
    8.
    发明授权
    Method and device for communicating digital content 有权
    用于传送数字内容的方法和设备

    公开(公告)号:US09177112B2

    公开(公告)日:2015-11-03

    申请号:US13695476

    申请日:2011-05-11

    摘要: A method for establishing a secured communication channel, between a first processing component and a second processing component; the method comprising executing a digital rights management agent on a processing unit, the digital rights management agent being configured to enforce permissions associated with digital content based on a digital rights management protection mechanism; receiving, by the digital rights management agent at least a security data item, the security data item including a session key data item; verifying authenticity of the received session key data item by the digital rights management agent using said digital rights management protection mechanism; providing the verified session key data item by the digital rights management agent to at least the second processing component; establishing a secured communication channel between the first and second processing components using at least the provided session key data item.

    摘要翻译: 一种用于在第一处理部件和第二处理部件之间建立安全通信信道的方法; 所述方法包括在处理单元上执行数字版权管理代理,所述数字版权管理代理被配置为基于数字版权管理保护机制来执行与数字内容相关联的许可; 由所述数字版权管理代理至少接收安全数据项,所述安全数据项包括会话密钥数据项; 使用所述数字版权管理保护机制,由所述数字版权管理代理验证所接收的会话密钥数据项的真实性; 由所述数字版权管理代理将验证的会话密钥数据项提供给至少所述第二处理组件; 使用至少提供的会话密钥数据项在第一和第二处理组件之间建立安全通信信道。

    Method and Device for Communicating Digital Content
    9.
    发明申请
    Method and Device for Communicating Digital Content 有权
    通信数字内容的方法和设备

    公开(公告)号:US20130047264A1

    公开(公告)日:2013-02-21

    申请号:US13695476

    申请日:2011-05-11

    IPC分类号: G06F21/24

    摘要: A method for establishing a secured communication channel, between a first processing component and a second processing component; the method comprising executing a digital rights management agent on a processing unit, the digital rights management agent being configured to enforce permissions associated with digital content based on a digital rights management protection mechanism; receiving, by the digital rights management agent at least a security data item, the security data item including a session key data item; verifying authenticity of the received session key data item by the digital rights management agent using said digital rights management protection mechanism; providing the verified session key data item by the digital rights management agent to at least the second processing component; establishing a secured communication channel between the first and second processing components using at least the provided session key data item.

    摘要翻译: 一种用于在第一处理部件和第二处理部件之间建立安全通信信道的方法; 所述方法包括在处理单元上执行数字版权管理代理,所述数字版权管理代理被配置为基于数字版权管理保护机制来执行与数字内容相关联的许可; 由所述数字版权管理代理至少接收安全数据项,所述安全数据项包括会话密钥数据项; 使用所述数字版权管理保护机制,由所述数字版权管理代理验证所接收的会话密钥数据项的真实性; 由所述数字版权管理代理将验证的会话密钥数据项提供给至少所述第二处理组件; 使用至少提供的会话密钥数据项在第一和第二处理组件之间建立安全通信信道。

    Apparatuses and Methods for Enabling a User to Consume Protected Contents of a Content Provider
    10.
    发明申请
    Apparatuses and Methods for Enabling a User to Consume Protected Contents of a Content Provider 有权
    允许用户使用内容提供商的受保护内容的设备和方法

    公开(公告)号:US20130054970A1

    公开(公告)日:2013-02-28

    申请号:US13577756

    申请日:2010-02-11

    IPC分类号: H04L9/32

    摘要: The embodiments of the present invention relate to apparatuses, in terms of a client device (110) and a server (120) and to methods in the client device (110) and in the server (120) respectively for enabling a user to consume content provided by a content provider. According to the method in the client device (120) the method comprises: assembling a request for rights for consuming a content and indicating in the request which content to consume; determining if an upgrade key, associated with the content, is present in the client device; including, in such a case, in the request, an identifier of the upgrade key that is associated with the content, sending the request to the content provider; receiving, a response comprising an encrypted rights object; decrypting the encrypted rights object and starting to use the rights object for consuming the content.

    摘要翻译: 本发明的实施例涉及关于客户端设备(110)和服务器(120)以及客户端设备(110)和服务器(120)中的方法的设备,以使用户能够消费内容 由内容提供商提供。 根据客户端装置(120)中的方法,该方法包括:组合消费内容的权利请求,并在请求中指示要消费的内容; 确定与所述内容相关联的升级密钥是否存在于所述客户端设备中; 在这种情况下,在该请求中包括与内容相关联的升级密钥的标识符,向内容提供者发送请求; 接收包括加密权限对象的响应; 解密加密的权限对象并开始使用权限对象来消费内容。