Access control and key management system for streaming media
    3.
    发明授权
    Access control and key management system for streaming media 有权
    流媒体访问控制和密钥管理系统

    公开(公告)号:US08255989B2

    公开(公告)日:2012-08-28

    申请号:US10170951

    申请日:2002-06-12

    IPC分类号: G06F7/04

    摘要: A session rights object and authorization data are used for defining a consumer's access right to a media content stream. The access rights are determined at a caching server remotely located from the consumer rather than locally at the end user site. In a first aspect, in a computing network having a content provider, a key distribution center, a caching server and a client, a method for controlling client access to a real-time data stream from the caching server, is disclosed. The method includes receiving, by the client, a session rights object from a content provider, the session rights object defining access rules for accessing the real-time data stream; receiving, by the client, authorization data from the key distribution center, the authorization data defining the client's access rights to the real-time data stream; forwarding to the caching server the session rights object and the authorization data; comparing, by the caching server, the session rights object with the authorization data to determine client authorization; and if the client is authorized, streaming, by the caching server, the real-time data stream to the client.

    摘要翻译: 会话权限对象和授权数据用于定义消费者对媒体内容流的访问权限。 访问权限在远程位于消费者的缓存服务器上确定,而不是在最终用户站点本地。 在第一方面,在具有内容提供商,密钥分配中心,高速缓存服务器和客户端的计算网络中,公开了一种用于控制来自高速缓存服务器的客户端对实时数据流的访问的方法。 该方法包括从客户端接收来自内容提供商的会话权限对象,会话权限对象定义用于访问实时数据流的访问规则; 由客户端从密钥分配中心接收授权数据,定义客户端对实时数据流的访问权限; 转发到缓存服务器会话权限对象和授权数据; 通过缓存服务器比较会话权限对象与授权数据,以确定客户端授权; 并且如果客户端被授权,则通过缓存服务器流式传输到客户端的实时数据流。

    TEMPORARY REGISTRATION OF DEVICES
    4.
    发明申请
    TEMPORARY REGISTRATION OF DEVICES 有权
    设备临时注册

    公开(公告)号:US20110161660A1

    公开(公告)日:2011-06-30

    申请号:US12648768

    申请日:2009-12-29

    摘要: In a method of temporarily registering a second device with a first device, in which the first device includes a temporary registration mode, the temporary registration mode in the first device is activated, a temporary registration operation in the first device is initiated from the second device, a determination as to whether the second device is authorized to register with the first device is made, and the second device is temporarily registered with the first device in response to a determination that the second device is authorized to register with the first device, in which the temporary registration requires that at least one of the second device and the first device delete information required for the temporary registration following at least one of a determination of a network connection between the first device and the second device and a powering off of at least one of the first device and the second device.

    摘要翻译: 在第一设备暂时注册第二设备的方法中,其中第一设备包括临时注册模式,激活第一设备中的临时注册模式,从第二设备启动第一设备中的临时注册操作 进行关于第二设备是否被授权向第一设备注册的确定,并且响应于第二设备被授权向第一设备注册的确定,第二设备被临时登记到第一设备, 所述暂时注册要求所述第二设备和所述第一设备中的至少一个删除在所述第一设备和所述第二设备之间的网络连接的确定中的至少一个之后临时注册所需的信息,以及至少 第一个设备和第二个设备之一。

    Separation of copy protection rules
    5.
    发明授权
    Separation of copy protection rules 有权
    分离复制保护规则

    公开(公告)号:US07551738B2

    公开(公告)日:2009-06-23

    申请号:US10933011

    申请日:2004-09-02

    IPC分类号: H04N7/167

    摘要: A copyright protection method and apparatus employ a first protection scheme within a single authorized domain, in which all interfaces are protected with digital rights management system, and employ a second protection scheme for use in inter-domain file transfers. The method and apparatus employ a third protection scheme for external outputs not protected by a digital rights management system.

    摘要翻译: 版权保护方法和装置在单个授权域内采用第一保护方案,其中所有接口都被数字版权管理系统保护,并采用第二保护方案用于域间文件传输。 该方法和装置采用不受数字版权管理系统保护的外部输出的第三保护方案。

    Association of security parameters for a collection of related streaming protocols
    6.
    发明授权
    Association of security parameters for a collection of related streaming protocols 有权
    关联的相关流媒体协议集合的安全参数

    公开(公告)号:US07356687B2

    公开(公告)日:2008-04-08

    申请号:US10153445

    申请日:2002-05-21

    IPC分类号: H04L9/00 G06F9/00

    摘要: In a client-server system employing protocols such as RTP (real-time protocol), RTCP (real-time control protocol) and RTSP (real-time streaming protocol) for communicating real-time data stream, a method for using the same security parameters to secure by encryption and/or authentication, communication of the real-time data stream. The method includes establishing two or more security parameters for securing communications during the streaming session; establishing a session identifier associated with the security parameters; transmitting, from client to server, an RTSP message for requesting the real-time data stream, the RTSP message being secured with the security parameters; establishing a streaming session for streaming an RTP message containing the real-time data, the RTP message being secured with the security parameters; transmitting, from client to server, an RTCP protocol message containing statistics relating to the streaming session, the RTCP message being secured with the security parameters, and exchanging any one or more additional RTSP, RTP and RTCP messages in any order, each message being secured with the security parameters which are identifiable with the session identifier.

    摘要翻译: 在采用诸如RTP(实时协议),RTCP(实时控制协议)和用于传送实时数据流的RTSP(实时流传输协议)等协议的客户端 - 服务器系统中,使用相同安全性的方法 通过加密和/或认证来保护的参数,实时数据流的通信。 该方法包括建立用于在流媒体会话期间保护通信的两个或多个安全参数; 建立与所述安全参数相关联的会话标识符; 从客户端向服务器发送用于请求实时数据流的RTSP消息,该RTSP消息由安全参数保护; 建立用于流式传输包含所述实时数据的RTP消息的流传输会话,所述RTP消息由所述安全参数保护; 从客户端向服务器发送包含与流传输会话有关的统计信息的RTCP协议消息,RTCP消息由安全参数保护,并以任何顺序交换任何一个或多个附加的RTSP,RTP和RTCP消息,每个消息被保护 具有可由会话标识符识别的安全参数。

    Method and apparatus for transferring protected content between digital rights management systems
    7.
    发明申请
    Method and apparatus for transferring protected content between digital rights management systems 审中-公开
    在数字版权管理系统之间传送受保护内容的方法和装置

    公开(公告)号:US20060282391A1

    公开(公告)日:2006-12-14

    申请号:US11358612

    申请日:2006-02-21

    IPC分类号: H04L9/00

    摘要: Method and apparatus for transferring protected content between digital rights management systems is described. One aspect of the invention relates to importing content from an upstream digital rights management (DRM) system into a device in a downstream DRM system. Data is received that associates at least one device in the downstream DRM system with a rights issuer module (RIM). Authenticity of the data is verified as originating from an entity in a trust hierarchy of the device. If the data is authentic and the device is one of the at least one device associated with the RIM, a ciphertext version of the content and a corresponding content license is accepted from the RIM.

    摘要翻译: 描述了在数字版权管理系统之间传送受保护内容的方法和装置。 本发明的一个方面涉及将内容从上游数字版权管理(DRM)系统导入下游DRM系统中的设备。 接收将下游DRM系统中的至少一个设备与权限发布者模块(RIM)相关联的数据。 数据的真实性被验证为来自设备的信任层次结构中的实体。 如果数据是真实的,并且设备是与RIM相关联的至少一个设备之一,则从RIM接受内容的密文版本和对应的内容许可证。

    Method and Apparatus for Composing a Digital Rights Management License Format
    8.
    发明申请
    Method and Apparatus for Composing a Digital Rights Management License Format 审中-公开
    构建数字版权管理许可证格式的方法和装置

    公开(公告)号:US20080270311A1

    公开(公告)日:2008-10-30

    申请号:US11843312

    申请日:2007-08-22

    IPC分类号: G06Q10/00

    CPC分类号: G06F21/10 G06Q10/06

    摘要: A process composes a content license for a set of content. The content license has a static portion and a dynamic portion. Further, the process inserts a master key into the static portion. In addition, the process inserts a plurality of content rule sets of values into the dynamic portion and composes a unique content encryption key for each segment of content associated with one of the content rule sets of values as each of the content rule sets of values is sequentially received during recording of the content. The unique content encryption key is based on the master key and at least a subset of the content rule set of values for a corresponding segment of the content. The unique content encryption key is utilized for encryption of each segment of the content to generate a plurality of encrypted content segments for storage on the storage medium.

    摘要翻译: 一个进程组成一组内容的内容许可证。 内容许可证具有静态部分和动态部分。 此外,该过程将主密钥插入静态部分。 此外,该过程将多个内容规则集值集合插入到动态部分中,并且对于与内容规则集值之一相关联的每个内容段,构成唯一内容加密密钥,因为每个内容规则集值是 在记录内容期间顺序地接收。 唯一内容加密密钥基于主密钥以及内容的相应段的内容规则集合的集合的至少一个子集。 独特的内容加密密钥用于加密内容的每个段,以生成用于存储在存储介质上的多个加密的内容段。

    Method and apparatus for providing broadcast trigger messages
    10.
    发明申请
    Method and apparatus for providing broadcast trigger messages 审中-公开
    提供广播触发消息的方法和装置

    公开(公告)号:US20070162399A1

    公开(公告)日:2007-07-12

    申请号:US11316236

    申请日:2005-12-22

    IPC分类号: G06Q99/00

    摘要: The present invention discloses an apparatus and method for obtaining rights management data for broadcast or multicast content. In one embodiment, a broadcast trigger message is obtained from a broadcast source. At least one content license identifier from said broadcast trigger message is obtained. Afterwards, at least one content license file associated with said at least one content license identifier is requested. Notably, the broadcast trigger message is shared by all endpoint devices while the content license file is uniquely adapted for the requesting endpoint device.

    摘要翻译: 本发明公开了一种用于获取广播或组播内容的权限管理数据的装置和方法。 在一个实施例中,从广播源获得广播触发消息。 获得来自所述广播触发消息的至少一个内容许可标识符。 之后,请求与所述至少一个内容许可标识符相关联的至少一个内容许可证文件。 值得注意的是,广播触发消息由所有端点设备共享,而内容许可证文件被唯一地适用于请求端点设备。