Extended Data Signing
    1.
    发明申请
    Extended Data Signing 有权
    扩展数据签名

    公开(公告)号:US20090310789A1

    公开(公告)日:2009-12-17

    申请号:US12137513

    申请日:2008-06-11

    IPC分类号: H04L9/08

    摘要: Various embodiments enable so-called extended data to be added to a signed digital certificate without having a private key of a Certification Authority available. In at least some embodiments, a digital certificate can be issued and signed off line by the Certification Authority, and then later extended data can be added and signed using another key, whose public key was earlier embedded and signed in the certificate.

    摘要翻译: 各种实施例使得能够将所谓的扩展数据添加到签名的数字证书,而不必具有证书颁发机构的私钥。 在至少一些实施例中,数字证书可以由证书颁发机构发行和签出,然后可以使用其公钥较早嵌入并签入证书的其他密钥来添加和签名以后的扩展数据。

    Rights management system for streamed multimedia content
    2.
    发明授权
    Rights management system for streamed multimedia content 有权
    流媒体内容的权限管理系统

    公开(公告)号:US07693280B2

    公开(公告)日:2010-04-06

    申请号:US11112325

    申请日:2005-04-22

    IPC分类号: H04L9/00

    摘要: A sequence of content keys are shared between a receiver of pieces of digital content and a computing device upon which the content is to be rendered. The receiver encrypts each piece of content according to a corresponding content key in the sequence and forwards the encrypted content to the computing device and the computing device decrypts the encrypted content according to the corresponding content key. The receiver initially transmits to the computing device an initialization digital license with an initial content key (CK0) therein. Each of the receiver and the computing device derive a new content key (CKx) in the sequence from the initial content key (CK(0)) in the sequence on an as-needed basis and in a coordinated fashion. The initialization license is required only once for the sequence of content keys, and the receiver need not explicitly communicate (CKx) to the computing device for each piece of content.

    摘要翻译: 一系列内容密钥在数字内容片段的接收机和要在其上呈现内容的计算装置之间共享。 接收机根据序列中的对应的内容密钥加密每条内容,并将加密的内容转发到计算设备,并且计算设备根据相应的内容密钥解密加密的内容。 接收机最初向计算设备发送其中具有初始内容密钥(CK0)的初始化数字许可证。 接收器和计算装置中的每个接收器和计算装置根据需要的基础和以协调的方式从序列中的初始内容密钥(CK(0))中的序列中导出新的内容密钥(CKx)。 对于内容密钥的序列,初始化许可证仅需要一次,并且接收器不需要为每个内容显式地通信(CKx)到计算设备。

    Method and system for device registration within a digital rights management framework
    4.
    发明授权
    Method and system for device registration within a digital rights management framework 有权
    数字版权管理框架内设备注册的方法和系统

    公开(公告)号:US07620809B2

    公开(公告)日:2009-11-17

    申请号:US11107513

    申请日:2005-04-15

    IPC分类号: H04L9/00

    摘要: A method of registering network devices in a digital rights management system (DRMS) includes receiving a digital certificate transmitted by the network device requesting registration and verifying the validity of the certificate. The DRMS may then send cryptographic information to the applying network device. The network device may be authorized for registration via a user interface to the DRMS. The DRMS may conduct a proximity test to determine of the network device is proximate to the DRMS. If the certificate is validated, authorization is received, and the proximity test indicates that the network device is proximate to the DRMS, the network device may be registered. A registered network device is then authorized to play protected digital content.

    摘要翻译: 在数字版权管理系统(DRMS)中注册网络设备的方法包括:接收网络设备发送的数字证书,请求注册和验证证书的有效性。 然后,DRMS可以向应用网络设备发送加密信息。 可以通过用户界面向DRMS授权网络设备的注册。 DRMS可以进行接近度测试以确定网络设备接近DRMS。 如果证书被验证,则接收到授权,并且接近度测试指示网络设备接近DRMS,可以注册网络设备。 然后,注册的网络设备被授权播放受保护的数字内容。

    Proximity detection employed in connection with rights management system or the like
    5.
    发明授权
    Proximity detection employed in connection with rights management system or the like 有权
    与权利管理系统等有关的接近检测

    公开(公告)号:US07574747B2

    公开(公告)日:2009-08-11

    申请号:US11139951

    申请日:2005-05-27

    IPC分类号: H04L9/32

    CPC分类号: G06F21/10 G06F2221/2111

    摘要: A sink sends a registration request to a source and the source validates same, and the source sends a registration response including a secret to the sink. The source then sends a proximity message including a nonce to the sink and concurrently notes a start time. The sink employs the secret and the nonce to generate a proximity value and sends same to the sources. The source receives the proximity value and concurrently notes an end time, verifies the proximity value based on the secret and the nonce, calculates from the noted start and end times an elapsed time, compares the elapsed time to a predetermined threshold value, decides from the comparison whether the sink satisfies the proximity requirement, and registers the sink as being able to access content from such source if the sink satisfies the proximity requirement.

    摘要翻译: 一个宿发送一个注册请求到一个源,并且该源验证相同,并且该源向该宿发送一个包括秘密的注册响应。 然后,源向接收器发送包括随机数的接近消息,同时注释开始时间。 宿使用秘密和随机数生成邻近值,并将其发送到源。 源接收邻近值并且同时记录结束时间,基于秘密和随机数验证接近值,从所记录的开始和结束时间计算经过时间,将经过的时间与预定阈值进行比较,从 比较宿是否满足接近要求,并且如果宿满足接近要求,则将宿注册为能够从这样的源访问内容。