-
公开(公告)号:US20080285429A1
公开(公告)日:2008-11-20
申请号:US10581134
申请日:2004-11-25
申请人: Johan Cornelis Talstra , Antonius Hermanus Maria Akkermans , Adrianus Johannes Maria Denissen , Nicolaas Lambert , Antonius Adriaan Maria Staring , Jan Harm De Boer
发明人: Johan Cornelis Talstra , Antonius Hermanus Maria Akkermans , Adrianus Johannes Maria Denissen , Nicolaas Lambert , Antonius Adriaan Maria Staring , Jan Harm De Boer
IPC分类号: G11B7/24
CPC分类号: G11B20/00695 , G11B7/007 , G11B20/00086 , G11B20/00094 , G11B20/0021 , G11B20/00594 , G11B20/00601 , G11B23/281 , G11B23/36
摘要: In order to create a record carrier having a side-channel which cannot be copied with a channel-bit recorder, the record carrier (1) has a modulated spiral. By modulating one or more of the spiral parameters, like the channel bit length or the track pitch, a side-channel is created. If a record carrier having such a side-channel is copied using a channel-bit recorder, the information present in the side-channel is lost. The number of bits to be stored in the modulated spiral can be selected as desired; also the way in which the bits are present can be selected; the bits can e.g. can be stored in different bands (A,B,C,D) present on the record carrier, in which band the spiral parameter modulated can be kept constant.
摘要翻译: 为了创建具有无法用通道位记录器复制的侧信道的记录载体,记录载体(1)具有调制螺旋。 通过调制一个或多个螺旋参数,如通道位长度或轨道间距,创建一个侧向通道。 如果使用频道位记录器复制具有这样的侧信道的记录载体,则侧信道中存在的信息丢失。 可以根据需要选择要存储在调制螺旋中的比特数; 也可以选择存在位的方式; 比特可以例如 可以存储在记录载体上存在的不同频带(A,B,C,D)中,其中螺旋参数调制的频带可以保持恒定。
-
公开(公告)号:US20080291801A1
公开(公告)日:2008-11-27
申请号:US12095136
申请日:2006-10-06
IPC分类号: G11B5/58
CPC分类号: G11B20/00086 , G06Q2220/10 , G11B20/00188 , G11B20/0021 , G11B20/00268 , G11B20/00326 , G11B20/00376 , G11B20/00384 , G11B20/00405 , G11B20/00528 , G11B20/00536 , G11B20/00579 , G11B20/00586 , G11B20/00594 , G11B20/00601 , G11B20/00876 , G11B20/00927
摘要: In summary, ROM marks (such as wobbles, lateral deviations in the spiral with lands and pits in an optical disc) are used on optical media to ensure consumer-grade copying devices cannot duplicate original media. An additional level of security is that the detection of the side channel information requires knowledge of a certain secret, which must be hidden well in authorized players. If the secret leaks, a professional pirate will be able to detect the ROM mark and duplicate the original medium with the side channel information intact. The present invention proposes that instead of a single ROM mark, many ROM marks are applied to a disc. Further, devices are divided into groups, and each group has the capability to only detect one mark from the group. This way, if a secret is obtained from a device, the disc can be duplicated, but only a limited number of devices will be able to use this disc. Creating a disc that can be played in any device requires the hacking of one device from every group.
摘要翻译: 总而言之,在光学介质上使用ROM标记(例如摆动,具有光栅的螺旋和螺旋的横向偏差),以确保消费级复印装置不能复制原始介质。 额外的安全级别是,检测侧信道信息需要知道某个秘密,这必须在授权的播放器中很好地隐藏。 如果秘密泄漏,专业海盗将能够检测到ROM标记,并复制原始媒体,侧边信息完整无缺。 本发明提出,代替单个ROM标记,将许多ROM标记应用于盘。 此外,设备被分成组,并且每个组具有仅从组中检测到一个标记的能力。 这样,如果从设备获得秘密,则可以复制光盘,但是只有有限数量的设备将能够使用该光盘。 创建可以在任何设备中播放的光盘需要从每个组中窃取一个设备。
-
公开(公告)号:US07454621B2
公开(公告)日:2008-11-18
申请号:US10257203
申请日:2002-02-01
申请人: Maurice Jerome Justin Jean-Baptiste Maes , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
发明人: Maurice Jerome Justin Jean-Baptiste Maes , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
CPC分类号: H04N21/4334 , G11B20/00086 , G11B20/00768 , G11B20/00884 , H04N5/913 , H04N21/4405 , H04N21/4408 , H04N21/4627 , H04N21/8355 , H04N21/8358 , H04N2005/91328 , H04N2005/91335
摘要: The invention relates to a method and an arrangement for recording an information signal with first copy protection information to a storage medium using recording means, the recording being performed according to first copy rules identified by the first copy protection information. The method comprises the steps of detecting said first copy protection information identifying said first copy rules, recording at least second copy protection information according to said detected first copy rules, said first and at least second copy protection information identifying a legality message to be interpreted by reading means, the at least second copy protection information changing within a predefined time interval after the change in said detected first copy rules according to an interpreting rule.
摘要翻译: 本发明涉及一种使用记录装置将具有第一复制保护信息的信息信号记录到存储介质的方法和装置,该记录是根据由第一拷贝保护信息识别的第一拷贝规则进行的。 该方法包括以下步骤:检测识别所述第一复制规则的所述第一复制保护信息,根据所述检测到的第一复制规则记录至少第二复制保护信息,所述第一和至少第二复制保护信息标识要被解释的合法性消息 所述至少第二复制保护信息在所述检测到的第一复制规则根据解释规则改变之后的预定时间间隔内改变。
-
公开(公告)号:US20100161972A1
公开(公告)日:2010-06-24
申请号:US11993262
申请日:2006-06-26
IPC分类号: H04L29/06
CPC分类号: H04L9/3247 , H04L9/0836 , H04L9/321 , H04L2209/601
摘要: The invention relates to a device (250) and a method for key block based authentication. In order to overcome the problems of known devices and method for authentication and to allow for an effective key block and/or application revocation wherein it is ensured that valid and new revocation information reaches said device and is used for authentication, a device (250) for a key block based authentication is proposed comprising authentication means (252) for authenticating between said device (250) having revocation information (254) and an application unit to be authenticated having a key block (AKB) by means of said revocation information (254) and said key block (AKB), and internal trigger means (256) for triggering a process of renewing of said revocation information (254).
摘要翻译: 本发明涉及一种用于基于密钥块的认证的设备(250)和方法。 为了克服已知设备的问题和用于认证的方法,并且允许有效的密钥块和/或应用撤销,其中确保有效和新的撤销信息到达所述设备并用于认证,设备(250) 提出了一种基于密钥块的认证,包括认证装置(252),用于通过所述撤销信息(254)在具有撤销信息的所述设备(250)和具有密钥块(AKB)的待认证的应用单元之间进行认证 )和所述密钥块(AKB)以及用于触发更新所述撤销信息的过程的内部触发装置(256)。
-
公开(公告)号:US20090276635A1
公开(公告)日:2009-11-05
申请号:US11721060
申请日:2005-12-07
申请人: Constant Paul Marie Jozef Baggen , Jaap Andre Haitsma , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
发明人: Constant Paul Marie Jozef Baggen , Jaap Andre Haitsma , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
CPC分类号: G11B20/00086 , G11B20/00094 , G11B20/00123 , G11B20/0021 , G11B20/00369 , G11B20/00557 , G11B20/00731 , G11B20/00797 , G11B20/0092
摘要: In order to efficiently prevent the save-and-restore attack on usage rights associated with digital work, these usage rights are protected by a hidden channel. In order to make it a difficult or expensive to manipulate the hidden channel, a device is proposed comprising: writing means (34) for writing on a record carrier (20) said digital work (DW) and attached usage right information (22) defining one or more conditions to be satisfied in order for the usage right to be exercised,—fingerprint extraction means (23) for deriving fingerprint data (24) from physically uncontrollable, changeable non-uniformities on said record carrier (20), and authentication means (25) for generating authentication data (26) from said fingerprint data (24) and said usage right information (22), said authentication data being provided for authenticating said usage right information, said writing means (34) being adapted for writing said authentication data (25) on said record carrier (20).
摘要翻译: 为了有效地防止与数字作品相关的使用权的保存和恢复攻击,这些使用权利被隐藏的信道保护。 为了使操作隐藏通道变得困难或昂贵,提出了一种设备,包括:写入装置(34),用于在记录载体(20)上写入所述数字作业(DW)和附加的使用权信息(22),其定义 为了使用权被行使而要满足的一个或多个条件, - 指纹提取装置(23),用于从所述记录载体(20)上的物理上不可控制的,可变的非均匀性导出指纹数据(24);以及认证装置 (25),用于从所述指纹数据(24)和所述使用权信息(22)生成认证数据(26),所述认证数据被提供用于认证所述使用权信息,所述写入装置(34)适于写入所述认证 所述记录载体(20)上的数据(25)。
-
公开(公告)号:US07403618B2
公开(公告)日:2008-07-22
申请号:US10024739
申请日:2001-12-19
CPC分类号: H04N21/4181 , H04N7/1675 , H04N21/26606 , H04N21/26613 , H04N21/4622 , H04N21/4782
摘要: A transmitter provides receivers conditional access to data transmitted via a network. A content encryptor is used to encrypt the data under control of a same authorization key before it is transmitted to all receivers. The transmitter has a storage with a plurality of device keys. A further encryptor is used for producing a key block with a plurality of entries, where each entry is associated with a respective one of the device keys. At least some of the entries contain a representation of the authorization key encrypted with the associated device key. The transmitter transmits the same key block to all receivers.The receiver has a subset of the device keys. A first decryptor is used to retrieve the authorization key by decrypting at least one entry of the key block that is associated with one of the device keys of the receiver. A second decryptor is used for decrypting the data under control of the authorization key.
摘要翻译: 发射机提供接收机对通过网络传输的数据的条件访问。 内容加密器用于在相同授权密钥的控制下将数据加密到所有接收者之前。 发射机具有具有多个设备密钥的存储器。 另一加密器用于产生具有多个条目的密钥块,其中每个条目与相应的一个设备密钥相关联。 至少一些条目包含用关联的设备密钥加密的授权密钥的表示。 发射机向所有接收机发送相同的密钥块。 接收机具有设备密钥的子集。 第一解密器用于通过解密与接收器的设备密钥之一相关联的密钥块的至少一个条目来检索授权密钥。 第二解密器用于在授权密钥的控制下解密数据。
-
公开(公告)号:US07310819B2
公开(公告)日:2007-12-18
申请号:US10240913
申请日:2002-02-01
申请人: Maurice Jerome Justin Jean-Baptiste Maes , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
发明人: Maurice Jerome Justin Jean-Baptiste Maes , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
CPC分类号: H04N21/4334 , G11B20/00086 , G11B20/00768 , G11B20/00884 , H04N5/913 , H04N21/4405 , H04N21/4408 , H04N21/4627 , H04N21/8355 , H04N21/8358 , H04N2005/91328 , H04N2005/91335
摘要: A method and device if or recording an information signal with first copy protection information to a storage medium includes recording according to first copy rules identified by the first copy protection information. The first copy protection information identifying the first copy rules is detected, and at least second copy protection information is recorded according to the detected first copy rules. The first and second copy protection information identify a legality message to be interpreted by reader. Screening information is recorded in a safe way on the storage medium to identify that the first copy protection message has been read.
摘要翻译: 如果或者将具有第一复制保护信息的信息信号记录到存储介质的方法和装置包括根据由第一复制保护信息标识的第一复制规则的记录。 检测识别第一复制规则的第一复制保护信息,并且根据检测到的第一复制规则记录至少第二复制保护信息。 第一和第二复制保护信息标识要由读者解释的合法性消息。 筛选信息以安全的方式记录在存储介质上以识别第一拷贝保护消息已被读取。
-
公开(公告)号:US20080205254A1
公开(公告)日:2008-08-28
申请号:US10581119
申请日:2004-11-25
申请人: Johan Cornelis Talstra , Antonius Adriaan Maria Staring , Paulus Gijsbertus Petrus Weijenbergh , Jakob Gerrit Nijboer , Maurice Jerome Justin Jean-Baptiste Maes , Johannes Hendrikus Maria Spruit , Johannes Josephus Leonardus Maria Van Vlerken , Robert Albertus Brondijk
发明人: Johan Cornelis Talstra , Antonius Adriaan Maria Staring , Paulus Gijsbertus Petrus Weijenbergh , Jakob Gerrit Nijboer , Maurice Jerome Justin Jean-Baptiste Maes , Johannes Hendrikus Maria Spruit , Johannes Josephus Leonardus Maria Van Vlerken , Robert Albertus Brondijk
CPC分类号: G11B20/00086 , G11B7/007 , G11B20/00304 , G11B27/3027
摘要: The invention relates to a record carrier having a data zone (7) and an initial zone (25) and comprising a main channel storing content and a side channel storing address information and data relevant for making recordings. It further relates to methods and devices for protecting content stored on a record carrier and for reading out protected content. To provide a record carrier with content protection information (20, 22, 24, 26, 28) stored on it, which can be used with legacy devices without causing confusion, which can substantially be produced without extra production steps and which can be easily read by common devices, it is proposed to store said content protection information (20, 22, 26, 28) for protection of said content in said side channel in said data zone (7).
摘要翻译: 本发明涉及一种具有数据区(7)和初始区(25)的记录载体,包括存储内容的主信道和存储地址信息的边信道以及与记录有关的数据。 它还涉及用于保护存储在记录载体上的内容并用于读出受保护内容的方法和装置。 为了向记录载体提供存储在其上的内容保护信息(20,22,24,26,28),其可以与传统设备一起使用而不引起混淆,其可以在没有额外的生产步骤的情况下实质地产生并且可以容易地读取 通过通用装置,建议存储用于保护所述数据区(7)中的所述侧信道中的所述内容的所述内容保护信息(20,22,26,28)。
-
9.
公开(公告)号:US08689346B2
公开(公告)日:2014-04-01
申请号:US11569974
申请日:2005-05-30
申请人: Maurice Jerome Justin Jean-Baptiste Maes , Boris Skoric , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
发明人: Maurice Jerome Justin Jean-Baptiste Maes , Boris Skoric , Antonius Adriaan Maria Staring , Johan Cornelis Talstra
IPC分类号: H04L29/06
CPC分类号: G06F21/105 , G06F21/10 , G06F21/33 , G06F21/44 , G06F2221/0764 , G06F2221/0771 , G06F2221/2129 , G06F2221/2137 , H04L63/0823 , H04L63/0853
摘要: An authentication system and method is presented for authenticating a first party to a second party, where an operation is performed on condition that the authentication succeeds. The authentication method verifies whether the first party is authenticated. If the first party is not authenticated, then it is determined if the first party qualifies for a sub-authorization. The sub-authorization depends on a value of a grace-counter associated with a number of times that first parties have been qualified for the sub-authorization. If the first party qualifies for the sub-authorization, the operation is performed and the grace counter is decremented. If the first party is authenticated, then the grace counter is set to a predetermined number.
摘要翻译: 提出了认证系统和方法,用于认证第二方的第一方,其中在认证成功的条件下执行操作。 验证方法验证第一方是否被认证。 如果第一方未认证,则确定第一方是否符合子授权。 子授权取决于与第一方对子授权合格的次数相关联的宽限计数器的值。 如果第一方符合子授权的要求,则执行操作,并减少宽限计数器。 如果第一方被认证,则宽限度计数器被设置为预定数量。
-
公开(公告)号:US20080189794A1
公开(公告)日:2008-08-07
申请号:US11814010
申请日:2006-01-13
IPC分类号: G06F21/00
CPC分类号: G11B20/00086 , G06F21/10 , G06F2221/2103 , H04L9/3273 , H04L63/0428 , H04L63/06 , H04L2209/603 , H04L2209/605 , H04L2463/101
摘要: The present invention relates to a digital rights management system (40) for controlling access rights to copy protected content comprising an application unit (1, 21, 41) and a drive unit (3, 23, 43), to an application unit (1, 21, 41), to a drive unit (3, 23, 43) and to a corresponding digital rights management method. In order to allow an increased security in the management of digital rights, wherein in particular a “filter-driver”-hack is made impossible or is at least substantially complicated and a reliable confirmation about a command given in respect of digital rights and its execution, a digital rights management system (40) is proposed wherein said application unit (1, 21, 41) comprises a key storage unit (45) for storing a bus key (KB), a request generation unit (47) for generating a request (7, 27) to be carried out by said drive unit including a message regarding said access rights and a challenge (RX), a communication unit (51) for transmitting said request (7, 27) and for receiving a response (13, 33) to said request (7, 27) from said drive unit (3, 23, 43), a response verification unit (49) for verifying a link between said request (7, 27) and said response (13, 33) by decoding said response (13, 33) using said bus key (KB) and by checking for the presence of an indication of said challenge (RX) in said response (13, 33) and said drive unit (3, 23, 43) comprises a key storage unit (55) for storing a bus key (KB), a communication unit (51) for receiving a request (7, 27) including a message regarding said access rights and a challenge (RX) from said application unit (1, 21, 41) and for transmitting a response (13, 33) to said request (1, 21, 41), a request processing unit (57) for verifying said request (7, 27) and processing said message, a response generation unit (59) for generating said response (13, 33) including an indication of said challenge (RX) and a reply to said message, wherein said indication of said challenge (RX) and said reply are cryptographically linked by means of said bus key (KB) and wherein indication of said challenge (RX) in said response (13, 33) indicates that said request has been carried out.
-
-
-
-
-
-
-
-
-