CN100454320C - Key management method and apparatus for digital copyright management - Google Patents

Key management method and apparatus for digital copyright management Download PDF

Info

Publication number
CN100454320C
CN100454320C CNB2005101240639A CN200510124063A CN100454320C CN 100454320 C CN100454320 C CN 100454320C CN B2005101240639 A CNB2005101240639 A CN B2005101240639A CN 200510124063 A CN200510124063 A CN 200510124063A CN 100454320 C CN100454320 C CN 100454320C
Authority
CN
China
Prior art keywords
information
resource
key
update
update time
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2005101240639A
Other languages
Chinese (zh)
Other versions
CN1866266A (en
Inventor
周皓隽
石国欣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CNB2005101240639A priority Critical patent/CN100454320C/en
Publication of CN1866266A publication Critical patent/CN1866266A/en
Application granted granted Critical
Publication of CN100454320C publication Critical patent/CN100454320C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The present invention relates to a method and a device for managing cipher keys in the management of digital copyright, which mainly comprises the steps that firstly, authority objects and time renewing information of resources in the copyright objects are respectively arranged and preserved; then cipher keys of part of resources or all the resources contained in the copyright objects are renewed according to the set copyright objects and the time renewing information of the resources in the copyright objects. The present invention can renew cipher keys of a single resource under the copyright objects, and thus, the present invention can achieve the goal that a downloaded RO only comprises the cipher keys with request for renewal and relevant resources and does not comprise other resource information which does not need to be renewed; thus, the present invention has the advantages that network resources can be effectively saved and the speed for carrying out renewal treatments is enhanced.

Description

Key management method in the digital copyright management and device
Technical field
The present invention relates to the digital copyright management technical field, relate in particular to key management method and device in a kind of digital copyright management process.
Background technology
Digital copyright management (DRM; Digital Rights Management) is a copyright protection technology at digital content; it can protect private data to avoid bootlegging and use provides a kind of control device effectively for the content provider, thereby prevents effectively by network and computing machine bootlegging, copy, transmission digital content.
The principle of DRM technology is to use technological means that digital product is controlled in each links such as distribution, transmission and uses, makes digital product to be used by the people who is authorized to.The concrete implementation of digital copyright management is: the publisher of digital content uploads to network after with encrypt digital content, the user is if use digital content, must be to rights issuer (RI, Rights lssuer) asks and obtains the permission object (RO of this digital content, Rights Object), in permission object, comprise relevant key, be used for decrypts digital content or obtain another key stream, if obtain key stream by relevant key, then can be used for decrypts digital content by the real key that comprises in the key stream, thereby obtain the rights of using of digital content.
In order to improve security, the key among the RO may need to upgrade in use for some time.For this reason, RI need be placed on update time next time among the RO, and for example, the program of a certain online television channel is all used secret key encryption, and the user must pay dues to subscribe to and could obtain corresponding RO, and the user can apply for the long time, as half a year.But this channel of jede Woche all can use new key to come ciphered program, so this channel need indicate the user to remove the key of more newly downloaded next week such as each Sunday.When arriving update time, terminal is initiated update inquiry information to RI, and RI receives after this message new key packet is contained among the new RO and issue terminal that terminal will be come consumption digital content in certain time in future with new RO.A RO can comprise a plurality of keys, and each key is respectively at different digital contents, and the different digital content is represented with different resource (asset) in RO.
As can be seen, in above-mentioned prior art scheme, permission object comprises an optional update time, after reaching this update time, terminal is automatic or notify the user, sends update inquiry information by user's control to RI, RI issues the user with new RO after receiving update request.Wherein, new RO comprises all efficient resources and the key among the old RO.
In the prior art data structure of RO as shown in Figure 1, a RO can comprise a plurality of resources among Fig. 1.A plurality of asset keys actual needs among RO update time may be different, and perhaps the key of most of resources does not need to upgrade among RO, and only has the key of a few resource to need to upgrade.Yet, according to present technical scheme, all cipher code renewal time among the same RO can only be represented by RO::time, if some keys need to upgrade, terminal must be downloaded a complete RO again, most of resources among this RO may be just the same with old RO, and this must waste the speed of Internet resources and renewal.
Summary of the invention
The purpose of this invention is to provide key management method and device in a kind of digital copyright management, thereby the key of the part resource that can comprise at permission object carries out key updating separately to be handled, save Internet resources effectively, and can improve the speed of corresponding key updating.
The objective of the invention is to be achieved through the following technical solutions:
The invention provides the key management method in a kind of digital copyright management, comprising:
A, be provided with and preserve information update time of permission object and wherein resource respectively, described update time, information was for being arranged in one or more resources, as the independent update time of described one or more resource counterpart keys;
B, corresponding key is upgraded processing according to information update time of permission object that is provided with and resource wherein, specifically comprise: user terminal regularly or at all permission objects of time check of setting reaches wherein information update time of resource correspondence, and judge whether to carry out key updating: if desired, then user terminal generates update inquiry information and sends to the entity that carries out key updating, is carrying the resource information that needs renewal in the described message; All resources that the entity that is used for carrying out key updating comprises permission object according to the message loaded information that receives or the key of part resource upgrade, and return to user terminal by the key behind the response message bearer update; User terminal carries out key updating according to the response message of receiving to be handled; Otherwise, do not carry out key updating and handle.
Described steps A comprises:
A1, only adopt data structure to preserve information update time of permission object respectively, and information update time of the resource that comprises of permission object;
Perhaps,
A2, in information update time that adopts data structure to preserve permission object respectively, and update time of the resource that comprises of permission object information the time, also adopt the update time table to preserve information update time of permission object and resource wherein respectively;
Perhaps,
A3, in information update time that adopts data structure to preserve permission object respectively, and the update time of the resource that comprises of permission object is information the time, information update time that also adopts update time table only to preserve permission object, and adopt information update time of each resource correspondence in the permission object that data structure preserves with the permission object index.
This method also comprises:
When update time of not preserving resource during information, then the key updating temporal information of this resource is information update time of permission object;
And/or,
When update time of not preserving permission object during information, the update time information of the cipher code renewal time information of corresponding each resource then for being provided with respectively at each resource;
And/or,
When preserving the update time of permission object and resource simultaneously, the information and information update time of permission object update time that is provided with respectively for each resource of the cipher code renewal time information of each resource then.
Described user terminal regularly or at all permission objects of time check of setting reaches wherein information update time of resource correspondence, and judges whether that the step that need carry out key updating comprises:
User terminal judges whether to carry out key updating by timing or at all permission objects of setting of time resolution, and specifically need to determine the more resource information of new key;
Perhaps, user terminal is searched by timing or in the time of setting and is shown update time to judge whether to carry out the key updating of the resource under the permission object, and determines the concrete more resource information of new key;
Perhaps, user terminal is by regularly or search the update time table in the time of setting and judge whether have the more resource of new key under the permission object, and when determining to exist, continues to resolve the definite resource information that need carry out key updating of corresponding permission object.
Described definite concrete more resource information of new key comprises:
All resource informations under the permission object or the part resource information under the permission object.
The field of described update inquiry information carrying comprises:
Rights object identifier field: be used to carry the permission object information that to carry out key updating;
The updating type field: carrying is used to represent whether this renewal is to carry out updated information at all resources of permission object;
The resource identification field: carrying is used to represent that this need carry out the resource information of key updating, and this field is effective when determining that according to the updating type field this is updated to when carrying out at the part resource.
The field of described update inquiry information carrying also comprises:
Send the user terminal of update inquiry information the device identifier field, be used to carry out the identifier field of the entity of key updating, and comprise certificate chain field and signature field alternatively.
All resources that the described entity that is used for carrying out key updating comprises permission object according to the message loaded information that receives or the key of part resource upgrade, and comprise by the step that the key behind the response message bearer update returns to user terminal:
After the entity that is used to carry out key updating receives described update inquiry information, described message is carried out validity checking, and after validity checking is passed through, all resources that permission object comprised according to loaded information in the message that receives or the key of part resource upgrade, and return to user terminal by the key behind the response message bearer update.
Resource and the preceding affiliated resource consistence or inconsistent of key of renewal under the key after the described renewal.
The present invention also provides the key management apparatus in a kind of digital copyright management, comprising:
Upgrade the management trigger module: be used for information update time of permission object of preserving and the resource correspondence that comprises thereof is managed, promptly regularly or at all permission objects of time check of setting reach wherein information update time of resource correspondence, and judge whether to carry out key updating, when when update time, information determined that needs carry out key updating and handle, then trigger update module, described update time, information was for being arranged in one or more resources, as the independent update time of described one or more resource counterpart keys;
Update module: be arranged in the user terminal, be used for generating update inquiry information, initiate corresponding key updating and handle, carrying the resource information that needs renewal in the described message according to the triggering of upgrading the management trigger module; Behind the key after receiving the renewal that the entity that carries out key updating returns, key to corresponding resource upgrades, information update time of the resource correspondence of also being responsible for upgrading permission object simultaneously and comprising, the described entity that carries out key updating is used for all resources of permission object being comprised according to the message loaded information that receives or the key of part resource upgrades, and returns to user terminal by the key behind the response message bearer update.
Described device also comprises:
Terminal interface module, the update module that is used for user terminal be used to carry out communicating by letter of inter-entity that key updating handles.
Described device is arranged in the subscriber terminal equipment.
As seen from the above technical solution provided by the invention, the present invention by separately for resource increases optional update time of information, thereby permission is upgraded processing at the key of the single resource under the permission object.Therefore, among the present invention, can be so that the RO that downloads only comprises key and the related resource that request is upgraded, and do not comprise the resource information that does not need to upgrade processing at other, therefore, the present invention can effectively save download bandwidth, promptly saves Internet resources, and then improves the speed of upgrading processing.
Description of drawings
Fig. 1 is the data structure synoptic diagram of permission object of the prior art;
Fig. 2 is the data structure synoptic diagram of permission object provided by the invention;
The process synoptic diagram of Fig. 3 for carrying out key updating among the present invention;
Fig. 4 is the structural representation of device provided by the invention.
Embodiment
In the DRM technology, in order to improve security, the key among the RO needs to upgrade in use for some time.That is to say terminal will be appreciated that when obtain new key to the RI application.For this reason, RI need comprise the update time indicating terminal and remove to download new RO after the time expires when issuing RO in RO.
The present invention unlike the prior art be: RI not only can set unified update time at whole RO, also can set independent update time simultaneously at a certain asset keys among the RO, thereby make terminal can select only to ask to upgrade certain asset keys among the RO, and do not need to upgrade other asset keys that need not upgrade among the RO, with conserve network resources and raising renewal speed.
Mainly be to come indicating terminal new key more at a time among the present invention by add the update time parameter at permission object.Can be placed on the RO one-level described update time and indicate the whole RO of renewal, also can be placed on to indicate in one or more resource of RO and upgrade certain asset keys.
Among the present invention, the concrete respective handling process that adopts comprises:
At first, after arriving update time, the type that the terminal inspection is upgraded also generates corresponding update request updating message, asks more new key by return path to RI.Comprise parameter in this request message and indicate concrete updating type, and at certain asset keys more under the news, comprise parameter and specifically note the pairing resource of current key;
Secondly, after RI receives update inquiry information, check the legitimacy of message, after definite described message is legal, then RI judges that according to the parameter of indication updating type in the message upgrading is at whole RO or at certain asset keys among the RO, generates corresponding new RO then and issues terminal; If upgrading is at certain asset keys, then this new RO only comprises the key after the renewal and the resource of correspondence, does not comprise other keys and resource among the former RO.
In the present invention, terminal when start and under open state, need to check at set intervals Ro or update time table, to have determined whether that key needs to upgrade, when needs upgrade, then carry out above-mentioned corresponding processing and handle to finish corresponding key updating.
The present invention can adopt different concrete technical schemes to realize based on above-mentioned thought respectively in specific implementation process, will be that the present invention will be described for example with two kinds of concrete implementations below.
It is as follows to the invention provides the technical scheme that can adopt in first kind of specific implementation process:
Having adopted a kind of new data structure as shown in Figure 2 in the method, specifically is adding optional update time of time in Asset (resource), and the key that is used to refer to single resource upgrades.Among Fig. 2, RO::time (RO update time) and Asset::time (update time of the resource under the RO) are optional.Arbitrary resource can not comprise update time, represents that the key of this resource does not need to upgrade this moment, is perhaps upgraded by the unified indication of RO::time.Equally, a RO also can not comprise RO::time, represents that this RO does not need to upgrade or independently go renewal by each resource this moment.
Setting based on above-mentioned new data structure, a kind of technical implementation way that the present invention can adopt is: terminal device need be checked all RO at set intervals, determine wherein whether to have key to need to upgrade, each inspection all needs to resolve RO and extracts corresponding information, promptly obtains RO::time and Asset::time information among the RO.Terminal also can be in some specific times, and for example, whether when terminal device is started shooting at every turn, checking needs more new key.
Based on data structure shown in Figure 2, the present invention can also adopt another technical scheme to realize the present invention, and corresponding implementation is specially: terminal like this, just can avoid each inspection all to need to resolve all RO at local maintenance a update time of table.The index RO_ref that should comprise update time and indication place RO in described updating form at least for example, can adopt the identifier of RO or the terminal inner index index as RO; Also can comprise the index Asset_ref of certain resource among the indication RO in the described updating form, for example, can adopt the identifier of resource or the index of resource in RO index as resource.
For example, in the invention process process, can adopt update time table as shown in table 1:
Table 1
Refresh_time (update time) RO_ref (permission object) Asset_ref (resource)
2005112015:00 RO1_ID RO1_Asset1_ID
2005112020:00 RO1_ID RO1_Asset2_ID
20051121 RO2_ID -
2005112207:30 RO3_ID -
In table 1, if corresponding Asset_ref is arranged a certain update time, then this time renewal is the renewal at single asset keys; Otherwise then this time renewal is the renewal at whole RO.
Also can not comprise the Asset_ref item in described update time in the table, and only comprise the RO_ref item.In this case, when needs more during new key, then terminal finds corresponding RO by RO_ref, resolve then this RO and according to this update time the position (promptly be RO::time or Asset::time this update time) in RO judge the type of renewal, promptly determine it is the update time of permission object, or the update time of the resource under the permission object.
Among the present invention, after terminal is received an effective new RO, need to check whether this RO has comprised information update time, if, then add one or more tuples in the table in update time, information update time of this RO correspondence is inserted in table update time.
And among the present invention, when a RO lost efficacy or be deleted, terminal need be checked table update time, and the relevant information about this RO in the table is deleted.
Equally, among the present invention, when a RO upgrades successfully or when wherein certain asset keys was upgraded successfully, terminal can be with the relevant tuple deletion of this renewal.If upgrade failure, then should point out the user, attempt again upgrading or stopping this time upgrading by user's decision.If the user stops upgrading, then also this can be upgraded relevant tuple deletion.
In a word, by checking RO or checking table update time, terminal can judge corresponding whether have key to need to upgrade constantly among the present invention.When key need upgrade, then terminal was initiated update request or prompting user from trend RI, obtaining to initiate update request to RI after the user agrees, waited for authority supplier's response message then.
Among the present invention, the concrete processing procedure of corresponding key updating comprises as shown in Figure 3:
Step 31: after arriving update time, terminal generates update inquiry information automatically or the prompting user needs to upgrade, and confirms that the user back generates update inquiry information;
In step 31, terminal is checked corresponding update time of residing position in permission object, can judge that type of this time upgrading belongs to the renewal of whole RO or only at the wherein renewal of certain asset keys.If whether terminal is shown management update service time, also can be according to having corresponding Asset_ref to judge the type of this time upgrading.Should comprise in the update inquiry information that parameter identifies current RO, also should increase optional parameter simultaneously, identify certain resource among the RO, as Asset_ID.If update inquiry information is at whole RO, then can not be with this parameter or this parameter of mark invalid; Otherwise, then must in update inquiry information, give this parameter suitable value.
Wherein, described request message format is as shown in table 2:
Table 2
Parameter (parameter) Mandatory (compulsory)/Optional (optionally)
Device ID (device identifier) M
RI ID (rights issuer identifier) M
RO ID (rights object identifier) M
Refresh Type (updating type) M
Asset ID (resource identifier) O
Certificate Chain (certificate chain) M
Signature (signature) O
Wherein,
Refresh Type: value equals 0, represents that this renewal is the renewal at whole RO, and value equals 1, represents that this renewal is the renewal at certain asset keys among the RO;
Asset ID: when Refresh Type=O, this parameter can not have; When Refresh Type=1, the resource at this required more new key place of this parametric representation.
Step 32: terminal is issued corresponding authority supplier RI, the entity that promptly is used to carry out key updating with update inquiry information;
After step 33:RI receives message, need check message, comprise terminal is carried out authentication, check message integrity, check message format, whether whether correct check message (as the identifier of RO etc.) whether effectively, checking needs to charge, and the words of Ji Feiing will be done corresponding billing operation or the like if desired.If not by above-mentioned inspection, RI can ignore this message and finish this session or the response message of return label for failing, and can comprise parameter in this message corresponding failure cause is described.If by above-mentioned inspection, then RI returns new RO according to request message;
In step 33, RI analysis request message, and, judge the type that request is upgraded as the Refresh the type field in the step 31 according to correlation parameter:
If it is updating type is the renewal to whole RO, then consistent with the prior art scheme;
If updating type is the renewal to certain asset keys among the RO, only need comprise the pairing resource of key and this key after the renewal among the then new RO;
Resource may be consistent with the affiliated resource of former key under the key after the renewal, for example, in real time communication, the corresponding same video flowing of key, the still different time periods are used different keys; Key after the renewal also may belong to different resources, and for example, the user subscribes to news, and the news content of every day is with different secret key encryptions, and the user will see that new news must go more new key.
Step 34: authority supplier RI returns response message and/or new RO gives terminal;
Step 35: terminal monitoring responds, and upgrades processing according to response message;
If receive the response message of failure, then notify the user, as the literal of display update on display screen failure etc. by corresponding means;
If receive the response message of success, new RO is installed in this locality then; Can obtain a new permission object by response message, new RO and old RO are present on the terminal before the deadline simultaneously, according to existing phase standard criterion, the time in office can determine specifically use which RO, so the present invention does not describe in detail it.
The present invention also provides a kind of terminal device of the present invention that is used to realize, as shown in Figure 4, for realizing the present invention, on this terminal device, need to increase renewal management trigger module and update module, be used to manage and trigger update event and handle the relevant message of renewal, wherein:
(1) upgrades the management trigger module
Be in charge of update event, as the maintenance update timetable or comprise the data structure of information update time, to trigger relevant renewal treatment scheme; After definite a certain update event is triggered, upgrade the management trigger module with the update notifications module, simultaneously corresponding information is passed to update module and be used to generate update inquiry information, to start corresponding key updating treatment scheme.
(2) update module
Be responsible for according to upgrading the information generation update inquiry information that the management trigger module is sent, monitor and handle renewal response message etc., be specially: when update module is received the update request of upgrading the triggering of management trigger module, obtain corresponding information from upgrading the management trigger module, as relevant permission object and resource information, generating corresponding update inquiry information, and this message is passed to authority supplier RI by terminal interface module;
When update module is received the response message that authority supplier RI transmits, and be responsible for resolving this message:
If upgrade failure, then call corresponding user interface and notify the user to upgrade failure;
If upgrade successfully, new RO then is installed, and, revises content corresponding by upgrading the management trigger module with corresponding success message update notifications management trigger module.
(3) terminal interface module
Simultaneously, also need to provide the relevant terminal interface module for realizing the present invention, this module is responsible for communicating by letter of terminal and outside, be specially with the entity that is used to carry out key updating between communicate by letter.
In sum, the present invention by separately for resource increases optional update time of parameter, thereby permission is upgraded at single asset keys.In this case, key and related resource that the RO of the required download request of including only is upgraded, and do not comprise other incoherent resources, and therefore can effectively save download bandwidth, improve renewal speed.
The above; only for the preferable embodiment of the present invention, but protection scope of the present invention is not limited thereto, and anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; the variation that can expect easily or replacement all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection domain of claim.

Claims (12)

1, the key management method in a kind of digital copyright management is characterized in that, comprising:
A, be provided with and preserve information update time of permission object and wherein resource respectively, described update time, information was for being arranged in one or more resources, as the independent update time of described one or more resource counterpart keys;
B, user terminal regularly or at all permission objects of time check of setting reach wherein information update time of resource correspondence, and judge whether to carry out key updating: if desired, then user terminal generates update inquiry information and sends to the entity that carries out key updating, is carrying the resource information that needs renewal in the described message; All resources that the entity that is used for carrying out key updating comprises permission object according to the message loaded information that receives or the key of part resource upgrade, and return to user terminal by the key behind the response message bearer update; User terminal carries out key updating according to the response message of receiving to be handled; Otherwise, do not carry out key updating and handle.
2, the key management method in the digital copyright management according to claim 1 is characterized in that, described steps A comprises:
A1, only adopt data structure to preserve information update time of permission object respectively, and information update time of the resource that comprises of permission object;
Perhaps,
A2, in information update time that adopts data structure to preserve permission object respectively, and update time of the resource that comprises of permission object information the time, also adopt the update time table to preserve information update time of permission object and resource wherein respectively;
Perhaps,
A3, in information update time that adopts data structure to preserve permission object respectively, and the update time of the resource that comprises of permission object is information the time, information update time that also adopts update time table only to preserve permission object, and adopt information update time of each resource correspondence in the permission object that data structure preserves with the permission object index.
3, the key management method in the digital copyright management according to claim 2 is characterized in that, this method also comprises:
When update time of not preserving resource during information, then the key updating temporal information of this resource is information update time of permission object;
And/or,
When update time of not preserving permission object during information, the update time information of the cipher code renewal time information of corresponding each resource then for being provided with respectively at each resource;
And/or,
When preserving the update time of permission object and resource simultaneously, information update time that is provided with respectively for each resource of the cipher code renewal time information of each resource then.
4, the key management method in the digital copyright management according to claim 1, it is characterized in that, described user terminal regularly or at all permission objects of time check of setting reaches wherein information update time of resource correspondence, and judges whether that the step that need carry out key updating comprises:
User terminal judges whether to carry out key updating by timing or at all permission objects of setting of time resolution, and specifically need to determine the more resource information of new key;
Perhaps, user terminal is searched by timing or in the time of setting and is shown update time to judge whether to carry out the key updating of the resource under the permission object, and determines the concrete more resource information of new key;
Perhaps, user terminal is by regularly or search the update time table in the time of setting and judge whether have the more resource of new key under the permission object, and when determining to exist, continues to resolve the definite resource information that need carry out key updating of corresponding permission object.
5, the key management method in the digital copyright management according to claim 4 is characterized in that, described definite concrete more resource information of new key comprises:
All resource informations under the permission object or the part resource information under the permission object.
6, the key management method in the digital copyright management according to claim 1 is characterized in that, the field of described update inquiry information carrying comprises:
Rights object identifier field: be used to carry the permission object information that to carry out key updating;
The updating type field: carrying is used to represent whether this renewal is to carry out updated information at all resources of permission object;
The resource identification field: carrying is used to represent that this need carry out the resource information of key updating, and this field is effective when determining that according to the updating type field this is updated to when carrying out at the part resource.
7, the key management method in the digital copyright management according to claim 6 is characterized in that, the field of described update inquiry information carrying also comprises:
Send the user terminal of update inquiry information the device identifier field, be used to carry out the identifier field of the entity of key updating;
Perhaps,
Send the user terminal of update inquiry information the device identifier field, be used to carry out the identifier field of the entity of key updating and certificate chain field and signature field.
8, the key management method in the digital copyright management according to claim 1, it is characterized in that, all resources that the described entity that is used for carrying out key updating comprises permission object according to the message loaded information that receives or the key of part resource upgrade, and also comprise by the step that the key behind the response message bearer update returns to user terminal:
After the entity that is used to carry out key updating receives described update inquiry information, described message is carried out validity checking, and after validity checking is passed through, all resources that permission object comprised according to loaded information in the message that receives or the key of part resource upgrade, and return to user terminal by the key behind the response message bearer update.
9, the key management method in the digital copyright management according to claim 1 is characterized in that, resource and the preceding affiliated resource consistence or inconsistent of key of renewal under the key after the described renewal.
10, the key management apparatus in a kind of digital copyright management is characterized in that, comprising:
Upgrade the management trigger module: be used for information update time of permission object of preserving and the resource correspondence that comprises thereof is managed, promptly regularly or at all permission objects of time check of setting reach wherein information update time of resource correspondence, and judge whether to carry out key updating, when when update time, information determined that needs carry out key updating and handle, then trigger update module, described update time, information was for being arranged in one or more resources, as the independent update time of described one or more resource counterpart keys;
Update module: be arranged in the user terminal, be used for generating update inquiry information, initiate corresponding key updating and handle, carrying the resource information that needs renewal in the described message according to the triggering of upgrading the management trigger module; Behind the key after receiving the renewal that the entity that carries out key updating returns, key to corresponding resource upgrades, information update time of the resource correspondence of also being responsible for upgrading permission object simultaneously and comprising, the described entity that carries out key updating is used for all resources of permission object being comprised according to the message loaded information that receives or the key of part resource upgrades, and returns to user terminal by the key behind the response message bearer update.
11, the key management apparatus in the digital copyright management according to claim 10 is characterized in that, described device also comprises:
Terminal interface module, the update module that is used for user terminal be used to carry out communicating by letter of inter-entity that key updating handles.
12, according to the key management apparatus in claim 10 or the 11 described digital copyright managements, it is characterized in that described device is arranged in the subscriber terminal equipment.
CNB2005101240639A 2005-11-28 2005-11-28 Key management method and apparatus for digital copyright management Expired - Fee Related CN100454320C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2005101240639A CN100454320C (en) 2005-11-28 2005-11-28 Key management method and apparatus for digital copyright management

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2005101240639A CN100454320C (en) 2005-11-28 2005-11-28 Key management method and apparatus for digital copyright management

Publications (2)

Publication Number Publication Date
CN1866266A CN1866266A (en) 2006-11-22
CN100454320C true CN100454320C (en) 2009-01-21

Family

ID=37425284

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005101240639A Expired - Fee Related CN100454320C (en) 2005-11-28 2005-11-28 Key management method and apparatus for digital copyright management

Country Status (1)

Country Link
CN (1) CN100454320C (en)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101383815B (en) * 2007-09-04 2012-12-12 华为技术有限公司 Method, device and system for migrate permission
CN101459508B (en) * 2007-12-12 2013-04-03 上海爱信诺航芯电子科技有限公司 Content ciphered key exchange method for digital copyright management system
CN102184367B (en) * 2011-06-07 2012-12-26 吉林大学 Method and system for destroying electronic documents regularly
CN103856596B (en) * 2012-11-28 2016-05-25 腾讯科技(深圳)有限公司 A kind of call method, device and terminal
CN115049356B (en) * 2022-05-23 2023-09-29 中国人民解放军火箭军工程大学 Collaborative operation concurrency conflict control method based on object ownership dynamic allocation and aging limitation

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030187801A1 (en) * 2002-03-26 2003-10-02 Microsoft Corporation Content revocation and license modification in a digital rights management (DRM) system on a computing device
CN1450751A (en) * 2002-04-09 2003-10-22 华为技术有限公司 Method for distributing key of multi-casting business
CN1494252A (en) * 2002-10-31 2004-05-05 华为技术有限公司 Encryption communication method and device
CN1655497A (en) * 2004-02-09 2005-08-17 华为技术有限公司 Method for realizing multimedia broadcasting / multicasting service key dispensing

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030187801A1 (en) * 2002-03-26 2003-10-02 Microsoft Corporation Content revocation and license modification in a digital rights management (DRM) system on a computing device
CN1450751A (en) * 2002-04-09 2003-10-22 华为技术有限公司 Method for distributing key of multi-casting business
CN1494252A (en) * 2002-10-31 2004-05-05 华为技术有限公司 Encryption communication method and device
CN1655497A (en) * 2004-02-09 2005-08-17 华为技术有限公司 Method for realizing multimedia broadcasting / multicasting service key dispensing

Also Published As

Publication number Publication date
CN1866266A (en) 2006-11-22

Similar Documents

Publication Publication Date Title
EP1529371B1 (en) Monitoring of digital content provided from a content provider over a network
US9548859B2 (en) Ticket-based implementation of content leasing
US7451202B2 (en) Information management system having a common management server for establishing secure communication among groups formed out of a plurality of terminals
US20130167253A1 (en) Method and apparatus for providing cloud-based digital rights management service and system thereof
KR101601976B1 (en) System and method for managing digital rights management content
CN101373500B (en) Method for managing electric document use right
CN101951420A (en) The method and apparatus of management domain
US20120272334A1 (en) Method and apparatus for processing rights object
CN101005699A (en) Method and system for managing terminal open platform power information
CN100454320C (en) Key management method and apparatus for digital copyright management
CN101286994A (en) Digital literary property management method, server and system for content sharing within multiple devices
US20100014677A1 (en) Group subordinate terminal, group managing terminal, server, key updating system, and key updating method therefor
KR20080016264A (en) Apparatus and method for managing right of contents in mobile communication system
CN101291221A (en) Privacy protecting method for identity of customer, and communication system, device
CN105099683A (en) Account distribution method and device
KR20090089673A (en) System and method for withdrawaling rights object of the digital contents
CN101057447B (en) Method and device for re-dispatching specifically coded access objects from a server to a mobile terminal device
CN105100030B (en) Access control method, system and device
CN101133410B (en) Contents rights protecting method
JP2004234591A (en) Update system, disclosure server, terminal, license issuing server, and program
CN101459507B (en) Cipher key management system in digital copyright management and method therefor
JP2009094592A (en) Communication system
KR102508524B1 (en) Encryption Key Management Method in Data Subscription System
CN105991635A (en) Method and device for ensuring security and consistency of CDN (content delivery network) content access
CN100483435C (en) Method and system for replacing copyright object in digital copyright management system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20090121

Termination date: 20161128

CF01 Termination of patent right due to non-payment of annual fee