Movatterモバイル変換


[0]ホーム

URL:


US20200068175A1 - Method and apparatus for supporting multiple broadcasters independently using a single conditional access system - Google Patents

Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
Download PDF

Info

Publication number
US20200068175A1
US20200068175A1US16/670,957US201916670957AUS2020068175A1US 20200068175 A1US20200068175 A1US 20200068175A1US 201916670957 AUS201916670957 AUS 201916670957AUS 2020068175 A1US2020068175 A1US 2020068175A1
Authority
US
United States
Prior art keywords
service
pairing key
encrypted
encrypted version
information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Abandoned
Application number
US16/670,957
Inventor
Ronald P. Cocchi
Gregory J. Gagnon
Dennis R. Flaharty
Michael A. Gorman
Jacob T. Carson
Matthew A. Skubiszewski
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Rambus Inc
Original Assignee
Verimatrix France SAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from PCT/US2005/037197external-prioritypatent/WO2006044765A2/en
Application filed by Verimatrix France SASfiledCriticalVerimatrix France SAS
Priority to US16/670,957priorityCriticalpatent/US20200068175A1/en
Assigned to RAMBUS INC.reassignmentRAMBUS INC.ASSIGNMENT OF ASSIGNORS INTEREST (SEE DOCUMENT FOR DETAILS).Assignors: VERIMATRIX
Publication of US20200068175A1publicationCriticalpatent/US20200068175A1/en
Abandonedlegal-statusCriticalCurrent

Links

Images

Classifications

Definitions

Landscapes

Abstract

A method and apparatus for brokering the enablement of the communication of encrypted media programs from a plurality of independent broadcasters to a plurality of receivers is disclosed. The system makes use of a pairing key for each provided service, which is differently encrypted by a pairing server and by the broadcaster providing the service. The encrypted versions of the pairing key are decrypted in a first receiver module using information known to the pairing service but not the broadcaster and in a second receiver module using information known to the broadcaster. The pairing key is used to cryptographically bind the first and second receiver modules.

Description

Claims (20)

What is claimed is:
1. A method of brokering an enabling of communication of at least one encrypted service of a group of encrypted services from a plurality of data providers to a plurality of devices, the at least one encrypted service decryptable by a first device module securely communicating with a second device module according to a pairing key associated with a device of the plurality of devices, comprising:
transmitting a first service enabling request for a first service from a data provider of the plurality of data providers to a broker independent from the data provider, the first service enabling request comprising an identification of the device;
receiving a first encrypted version of the pairing key ES1[Kp] in the data provider from the broker, the first encrypted version of the pairing key ES1[Kp] decryptable by first information S1securely stored in the first device module of the device;
generating a second encrypted version of the pairing key ES2[Kp] in the data provider, the second encrypted version of the pairing key ES2[Kp] decryptable by second information S2securely stored in the second device module; and
transmitting the first encrypted version of the pairing key ES1[Kp] and the second encrypted version of the pairing key ES2[Kp] to the device;
wherein each service in the group is enabled by a different pairing key Kp.
2. The method ofclaim 1, wherein the first service is selected from a group consisting of:
a general broadcast service from the data provider, including access to a number of media channels as a baseline fee service;
particular data from the data provider; and
a particular set of data from the data provider.
3. The method ofclaim 2, wherein the service is encrypted according to a control word CW, and the method further comprising
decrypting the first encrypted version of the pairing key ES1[Kp] in the first device module;
decrypting the second encrypted version of the pairing key ES2[Kp] in the second device module;
decrypting an encrypted version of the control word E[CW] in the second device module;
re-encrypting the decrypted control word CW according to the decrypted second encrypted version of the pairing key;
providing the re-encrypted control word EKp[CW] from the second device module to the first device module; and
decrypting the re-encrypted control word EKp[CW] using the decrypted first encrypted version of the pairing key Kp.
4. The method ofclaim 1, further comprising the steps of:
transmitting a second service enabling request for a second service from the data providers to the broker, the second service enabling request comprising an identification of the device;
receiving a first encrypted version of a second pairing key ES1[Kp2] from the broker, the first encrypted version of the second pairing key ES1[Kp2] decryptable by the first information S1securely stored in the first device module of the device;
generating a second encrypted version of the second pairing key ES2[Kp2], the second encrypted version of the pairing key ES2[Kp2] decryptable by the second information S2securely stored in the second device module; and
transmitting the first encrypted version of the second pairing key ES1[Kp2] and the second encrypted version of the second pairing key ES1[Kp2] to the device;
wherein the second service is different than the first service.
5. The method ofclaim 4, wherein the data is encrypted according to a control word CW and the method further comprises the steps of:
decrypting the first encrypted version of the second pairing key ES1[Kp2] in the first device module;
decrypting the second encrypted version of the second pairing key ES1[Kp2] in the second device module;
decrypting an encrypted version of the control word E[CW] in the second device module;
re-encrypting the decrypted control word CW according to the decrypted second encrypted version of the second pairing key Kp2;
providing the re-encrypted control word
EKp2[CW]
from the second device module to the first device module; and
decrypting the re-encrypted control word EKP2[CW] using the decrypted first encrypted version of the second pairing key Kp2.
6. The method ofclaim 2, further comprising the steps of:
transmitting a second service enabling request for a second service from a second data provider of the plurality of data providers to the broker, the request comprising the identification of the device;
receiving a first encrypted version of a second pairing key ES1[Kp2] from the broker, the first encrypted version of the second pairing key ES1[Kp2] decryptable by the first information S1securely stored in the first device module of the device;
generating a second encrypted version of the second pairing key ES2[Kp2], the second encrypted version of the pairing key ES2[Kp2] decryptable by the second information S2securely stored in the second device module; and
transmitting the first encrypted version of the second pairing key ES1[Kp2] and the second encrypted version of the second pairing key ES1[Kp2] to the device;
wherein the second service is selected from the group consisting of:
a general broadcast service from the second data provider, including access to a number of media channels as a baseline fee service;
particular data from the second data provider, including an order ahead pay per view service and an impulse pay per view service; and
a particular set of data from the second data provider.
7. The method ofclaim 6, wherein the service is encrypted according to a control word CW, and the method further comprises the steps of:
decrypting the first encrypted version of the second pairing key ES1[Kp2] in the first device module;
decrypting the second encrypted version of the second pairing key ES2[Kp2] in the second device module;
decrypting the encrypted version of the control word E[CW] in the second device module;
re-encrypting the decrypted control word CW according to the decrypted second encrypted version of the second pairing key Kp2;
providing the re-encrypted control word
EKp2[CW]
from the second device module to the first device module; and
decrypting the re-encrypted control word
EKp2[CW]
using the decrypted first encrypted version of the second pairing key Kp2.
8. The method ofclaim 1, wherein the first service enabling request is transmitted in response to a service request, the service request transmitted from the device to the data provider.
9. The method ofclaim 1, wherein the first information S1and the second information S2is known to the broker and the data providers.
10. The method ofclaim 1, wherein the first information S1is known to the broker and unknown to the data provider, and wherein the second information S2is known to the data provider and unknown to the broker.
11. The method ofclaim 1, wherein:
the first information S1is a first secret unique to the device and stored in a first module of the device;
the second information S2is a second secret is securely stored in a second module of the device.
12. The method ofclaim 11, wherein the second module is a smart card removably coupleable to the first module.
13. The method ofclaim 11, wherein the second module is irremovably integrated with the device.
14. The method ofclaim 1, wherein the pairing key is generated by the data provider and transmitted to the broker.
15. The method ofclaim 1, wherein the pairing key is generated by the broker and transmitted to the data provider in response to the service enabling request.
16. A system for brokering the enabling of communication of at least one encrypted service of a group of encrypted services from a plurality of data providers to a plurality of devices, the at least one encrypted service decryptable by a first device module securely communicating with a second device module according to a pairing key Kpassociated with a device of the plurality of devices, the system comprising:
a broker, for providing a first encrypted version of the pairing key ES1[Kp] in response to a service enabling request for a service from a data provider of the plurality of data providers, the service request having an identification of the device; and
wherein the first encrypted version of the pairing key ES1[Kp] is decryptable by first information S1stored in the first device module and wherein the first device module receives the first encrypted version ES1[Kp] of the pairing key Kpand a second encrypted version of the pairing key ES2[Kp] from the data provider, the second encrypted version of the pairing key ES2[Kp] being generated by the data provider and decryptable by second information S2stored in the second device module;
wherein each service in the group is enabled by a different pairing key Kp.
17. The system ofclaim 16, wherein the service is selected from a group consisting of:
a general broadcast service from the data provider, including access to a number of media channels as a baseline fee service;
particular data from the data provider; and
a particular set of data from the data provider.
18. The system ofclaim 17, wherein the first information S1and the second information S2is known to the broker and the data provider.
19. The system ofclaim 17, wherein the first information S1is known to the broker and unknown to the data provider, and wherein the second information S2is known to the data provider and unknown to the broker.
20. The system ofclaim 17, wherein:
the first information S1is a first secret unique to the device and is securely stored in first module of the device; and
wherein the second information S2is a second secret securely stored in second module of the device.
US16/670,9572004-10-182019-10-31Method and apparatus for supporting multiple broadcasters independently using a single conditional access systemAbandonedUS20200068175A1 (en)

Priority Applications (1)

Application NumberPriority DateFiling DateTitle
US16/670,957US20200068175A1 (en)2004-10-182019-10-31Method and apparatus for supporting multiple broadcasters independently using a single conditional access system

Applications Claiming Priority (8)

Application NumberPriority DateFiling DateTitle
US61966304P2004-10-182004-10-18
PCT/US2005/037197WO2006044765A2 (en)2004-10-182005-10-18Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US79527207A2007-07-132007-07-13
US13/541,492US9014375B2 (en)2004-10-182012-07-03Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US14/692,500US9712786B2 (en)2004-10-182015-04-21Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US201762446196P2017-01-132017-01-13
US15/652,082US10477151B2 (en)2004-10-182017-07-17Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US16/670,957US20200068175A1 (en)2004-10-182019-10-31Method and apparatus for supporting multiple broadcasters independently using a single conditional access system

Related Parent Applications (1)

Application NumberTitlePriority DateFiling Date
US15/652,082ContinuationUS10477151B2 (en)2004-10-182017-07-17Method and apparatus for supporting multiple broadcasters independently using a single conditional access system

Publications (1)

Publication NumberPublication Date
US20200068175A1true US20200068175A1 (en)2020-02-27

Family

ID=60159195

Family Applications (3)

Application NumberTitlePriority DateFiling Date
US15/652,082Expired - Fee RelatedUS10477151B2 (en)2004-10-182017-07-17Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US16/670,912AbandonedUS20200068174A1 (en)2004-10-182019-10-31Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US16/670,957AbandonedUS20200068175A1 (en)2004-10-182019-10-31Method and apparatus for supporting multiple broadcasters independently using a single conditional access system

Family Applications Before (2)

Application NumberTitlePriority DateFiling Date
US15/652,082Expired - Fee RelatedUS10477151B2 (en)2004-10-182017-07-17Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US16/670,912AbandonedUS20200068174A1 (en)2004-10-182019-10-31Method and apparatus for supporting multiple broadcasters independently using a single conditional access system

Country Status (1)

CountryLink
US (3)US10477151B2 (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US10348501B2 (en)*2015-07-102019-07-09Inside SecureMethod and apparatus for a blackbox programming system permitting downloadable applications and multiple security profiles providing hardware separation of services in hardware constrained devices
WO2021051002A1 (en)*2019-09-122021-03-18Intertrust Technologies CorporationDynamic broadcast content access management systems and methods
US12019778B1 (en)*2023-11-222024-06-25Verkada Inc.Systems and methods to perform end to end encryption

Citations (3)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US7409562B2 (en)*2001-09-212008-08-05The Directv Group, Inc.Method and apparatus for encrypting media programs for later purchase and viewing
US7565546B2 (en)*1999-03-302009-07-21Sony CorporationSystem, method and apparatus for secure digital content transmission
US7797552B2 (en)*2001-09-212010-09-14The Directv Group, Inc.Method and apparatus for controlling paired operation of a conditional access module and an integrated receiver and decoder

Family Cites Families (46)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US5870474A (en)1995-12-041999-02-09Scientific-Atlanta, Inc.Method and apparatus for providing conditional access in connection-oriented, interactive networks with a multiplicity of service providers
CA1238427A (en)1984-12-181988-06-21Jonathan OseasCode protection using cryptography
US5940504A (en)1991-07-011999-08-17Infologic Software, Inc.Licensing management system and method in which datagrams including an address of a licensee and indicative of use of a licensed product are sent from the licensee's site
US6611607B1 (en)1993-11-182003-08-26Digimarc CorporationIntegrating digital watermarks in multimedia content
US5790663A (en)1996-03-281998-08-04Advanced Micro Devices, Inc.Method and apparatus for software access to a microprocessor serial number
CA2319538C (en)1998-02-202016-09-06Digital Video Express L.P.Information access control system and method
US7809138B2 (en)1999-03-162010-10-05Intertrust Technologies CorporationMethods and apparatus for persistent control and protection of content
US6738905B1 (en)1998-04-152004-05-18Digital Video Express, L.P.Conditional access via secure logging with simplified key management
US6243468B1 (en)1998-04-292001-06-05Microsoft CorporationSoftware anti-piracy system that adapts to hardware upgrades
US6240401B1 (en)1998-06-052001-05-29Digital Video Express, L.P.System and method for movie transaction processing
US6285774B1 (en)1998-06-082001-09-04Digital Video Express, L.P.System and methodology for tracing to a source of unauthorized copying of prerecorded proprietary material, such as movies
US6438235B2 (en)1998-08-052002-08-20Hewlett-Packard CompanyMedia content protection utilizing public key cryptography
DE69834396T2 (en)1998-09-012007-02-22Irdeto Access B.V. Secure data signal transmission system
US7162642B2 (en)1999-01-062007-01-09Digital Video Express, L.P.Digital content distribution system and method
US6681212B1 (en)1999-04-232004-01-20Nianning ZengInternet-based automated system and a method for software copyright protection and sales
US6697948B1 (en)1999-05-052004-02-24Michael O. RabinMethods and apparatus for protecting information
US6957344B1 (en)1999-07-092005-10-18Digital Video Express, L.P.Manufacturing trusted devices
US20020067914A1 (en)2000-01-052002-06-06Schumann Robert WilhelmContent packet distribution system
AU2001267055A1 (en)2000-06-272002-01-08Microsoft CorporationSystem and method for providing an individualized secure repository
WO2002013032A1 (en)2000-08-032002-02-14Itech Group, Inc.Method and system for controlling content to a user
US6931545B1 (en)2000-08-282005-08-16Contentguard Holdings, Inc.Systems and methods for integrity certification and verification of content consumption environments
US7174512B2 (en)2000-12-012007-02-06Thomson Licensing S.A.Portal for a communications system
US20040039704A1 (en)2001-01-172004-02-26Contentguard Holdings, Inc.System and method for supplying and managing usage rights of users and suppliers of items
US7206765B2 (en)2001-01-172007-04-17Contentguard Holdings, Inc.System and method for supplying and managing usage rights based on rules
US7181015B2 (en)2001-07-312007-02-20Mcafee, Inc.Method and apparatus for cryptographic key establishment using an identity based symmetric keying technique
US20030046568A1 (en)2001-09-062003-03-06Riddick Christopher J.Media protection system and method and hardware decryption module used therein
US7376233B2 (en)2002-01-022008-05-20Sony CorporationVideo slice and active region based multiple partial encryption
US7328345B2 (en)2002-01-292008-02-05Widevine Technologies, Inc.Method and system for end to end securing of content for video on demand
US20040010717A1 (en)2002-01-292004-01-15Intertainer Asia Pte Ltd.Apparatus and method for preventing digital media piracy
US7305555B2 (en)2002-03-272007-12-04General Instrument CorporationSmart card mating protocol
US7231664B2 (en)2002-09-042007-06-12Secure Computing CorporationSystem and method for transmitting and receiving secure data in a virtual private group
US7007170B2 (en)2003-03-182006-02-28Widevine Technologies, Inc.System, method, and apparatus for securely providing content viewable on a secure device
US7356143B2 (en)2003-03-182008-04-08Widevine Technologies, IncSystem, method, and apparatus for securely providing content viewable on a secure device
US8041957B2 (en)2003-04-082011-10-18Qualcomm IncorporatedAssociating software with hardware using cryptography
CN101241735B (en)2003-07-072012-07-18罗威所罗生股份有限公司Method for replaying encrypted video and audio content
US7369677B2 (en)2005-04-262008-05-06Verance CorporationSystem reactions to the detection of embedded watermarks in a digital host content
US7599494B2 (en)2004-01-162009-10-06The Directv Group, Inc.Distribution of video content using a trusted network key for sharing content
US7580523B2 (en)2004-01-162009-08-25The Directv Group, Inc.Distribution of video content using client to host pairing of integrated receivers/decoders
US7548624B2 (en)2004-01-162009-06-16The Directv Group, Inc.Distribution of broadcast content for remote decryption and viewing
EP1728374B1 (en)2004-02-032009-10-28SanDisk Secure Content Solutions, Inc.Protection of digital data content
US7870385B2 (en)2004-02-032011-01-11Music Public Broadcasting, Inc.Method and system for controlling presentation of computer readable media on a media storage device
US7536355B2 (en)2004-06-102009-05-19Lsi CorporationContent security system for screening applications
US7684409B2 (en)2004-06-102010-03-23The Directv Group, Inc.Efficient message delivery in a multi-channel uni-directional communications system
US7295681B2 (en)2005-01-272007-11-13Sarnoff CorporationMethod and apparatus for providing improved workflow for digital watermarking
WO2013131065A1 (en)2012-03-022013-09-06Syphermedia International, Inc.Blackbox security provider programming system permitting multiple customer use and in field conditional access switching
US10348501B2 (en)2015-07-102019-07-09Inside SecureMethod and apparatus for a blackbox programming system permitting downloadable applications and multiple security profiles providing hardware separation of services in hardware constrained devices

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US7565546B2 (en)*1999-03-302009-07-21Sony CorporationSystem, method and apparatus for secure digital content transmission
US7409562B2 (en)*2001-09-212008-08-05The Directv Group, Inc.Method and apparatus for encrypting media programs for later purchase and viewing
US7797552B2 (en)*2001-09-212010-09-14The Directv Group, Inc.Method and apparatus for controlling paired operation of a conditional access module and an integrated receiver and decoder

Also Published As

Publication numberPublication date
US10477151B2 (en)2019-11-12
US20170318263A1 (en)2017-11-02
US20200068174A1 (en)2020-02-27

Similar Documents

PublicationPublication DateTitle
US9712786B2 (en)Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
KR100641218B1 (en) Restriction Broadcasting System and Method for Terrestrial Digital Multimedia Broadcasting
KR100629413B1 (en) Smart card and receiver used for receiver of encrypted broadcast signal
US6055314A (en)System and method for secure purchase and delivery of video content programs
US7035827B2 (en)Content receiving apparatus and method, storage medium, and server
US7970138B2 (en)Method and apparatus for supporting broadcast efficiency and security enhancements
US7706534B2 (en)Pay per minute for DVB-H services
EP2066127B1 (en)A method, apparatus and system to manage access to program content
WO1999053689A1 (en)Conditional access via secure logging with simplified key management
JP2001519629A (en) Method and apparatus for transmitting an encrypted data stream
JP2008547312A (en) Multimedia access device registration system and method
US20090031360A1 (en)Method and system for enabling a service using a welcome video
US20200068175A1 (en)Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
CN1550100A (en)CA system for broadcasting DTV using multiple keys for different service providers and service areas
JP2007501556A (en) Copy protection application in digital broadcasting system
CN101742249A (en) A Realization Method of Trusted Two-way Network Digital TV System
WO2019018431A1 (en)Method and apparatus for supporting multiple broadcasters independently using a single conditional access system
US20060059506A1 (en)Conditional access system for digital television content based on prepayment and optimisation of the bandwidth of the channel broadcasting said content
EP4049149B1 (en)Multimedia content secure access
WO2009075535A2 (en)Prepaid broadcasting receiver and subscriber management system and method thereof in digital multimedia broadcasting service
JPH10508457A (en) Deferred billing, broadcasting, electronic document delivery system and method
KR101240659B1 (en)Cas system and method for digital broadcating receiver

Legal Events

DateCodeTitleDescription
STPPInformation on status: patent application and granting procedure in general

Free format text:DOCKETED NEW CASE - READY FOR EXAMINATION

ASAssignment

Owner name:RAMBUS INC., CALIFORNIA

Free format text:ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNOR:VERIMATRIX;REEL/FRAME:051262/0413

Effective date:20191113

STPPInformation on status: patent application and granting procedure in general

Free format text:NON FINAL ACTION MAILED

STPPInformation on status: patent application and granting procedure in general

Free format text:RESPONSE TO NON-FINAL OFFICE ACTION ENTERED AND FORWARDED TO EXAMINER

STPPInformation on status: patent application and granting procedure in general

Free format text:NOTICE OF ALLOWANCE MAILED -- APPLICATION RECEIVED IN OFFICE OF PUBLICATIONS

STCBInformation on status: application discontinuation

Free format text:ABANDONED -- FAILURE TO PAY ISSUE FEE


[8]ページ先頭

©2009-2025 Movatter.jp