CN100471314C - Method and system for providing digital broadcast to roaming users - Google Patents

Method and system for providing digital broadcast to roaming users Download PDF

Info

Publication number
CN100471314C
CN100471314C CNB2005101022672A CN200510102267A CN100471314C CN 100471314 C CN100471314 C CN 100471314C CN B2005101022672 A CNB2005101022672 A CN B2005101022672A CN 200510102267 A CN200510102267 A CN 200510102267A CN 100471314 C CN100471314 C CN 100471314C
Authority
CN
China
Prior art keywords
business cipher
cipher key
ownership place
user
digital broadcasting
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2005101022672A
Other languages
Chinese (zh)
Other versions
CN1859741A (en
Inventor
李智斌
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CNB2005101022672A priority Critical patent/CN100471314C/en
Publication of CN1859741A publication Critical patent/CN1859741A/en
Application granted granted Critical
Publication of CN100471314C publication Critical patent/CN100471314C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The present invention discloses providing digital broadcasting authentication method to roaming subscriber. It contains user through interacting network, through attributed area subscription administration pair of module user to make basic authentication, then to make roaming authentication and encryption key obtaining to visiting area subscription administration module. When user roams to other places in the country, user uses roam area service through encryption key. The present invention subscription administration module also supports service subscription information retransmission. The present invention also discloses digital broadcasting authentication system to roaming subscriber.

Description

A kind of method and system that digital broadcasting is provided to the roamer
Technical field
The present invention relates to the digital broadcasting field, particularly carry out the method and system of digital broadcasting to the roamer.
Background technology
The mobile digital broadcast business obtains the support of multiple network gradually along with networks development, multimedia broadcast/multi broadcast business (the MultimediaBroadCast/Multicast Service that on the GPRS network basis, defines as digital video broadcast system, 3GPP, MBMS) broadcasting and multicast service (the Broadcast and Multicast Services that on the cdma network basis, define of network, 3GPP2, BCMCS) network, the service provider can also can carry out point-to-point communication by exchange channels and user by broadcast channel to the users broadcasting program.Broadcast channel comprise the handheld terminal digital video broadcasting (Digital Video Broadcasting forHandheld, DVB-H), multiple broadcast/multicast systems such as MBMS, BCMCS.The professional present business of mobile digital broadcast provides method, can allow to carry out based on multiple different distributing network, also can be provided by different broadcast service providers.So, having a plurality of broadcasting service service providers on the same bearer network, same broadcasting service service provider also can provide broadcast service by multiple network simultaneously.
As the user who has signed mobile digital broadcast service roaming agreement, when roaming into different bearer networks or different service provider coverage, user's authentication and registration are the problems that at first will solve.
The mobile network of 2G and 3G supports user's roaming.With the gsm system is example, and its mobile management is all based on double-decker, and the upper strata is attaching position register HLR, and lower floor is VLR Visitor Location Register VLR, and each VLR administers a plurality of lane place.The VLR address at the current place of HLR recording user, the address, lane place at VLR recording user place.When travelling carriage moved to the new band of position, the VLR application location upgraded under this lane place immediately.This VLR may be identical with previous VLR, also may be a new VLR.Under a kind of situation in back, VLR sends application for registration to HLR, the VLR address at the current place of HLR recording user, and notify previous VLR to delete this user's record.When the user is in roaming state, as called flow process be: during call setup, at first cause search procedure, query requests is sent out to called HLR by mobile switching centre (MSC), HLR finds out the current place VLR of travelling carriage, and send out query requests to it, VLR will be called in this VLR compass of competency in more detail positional information tell HLR, HLR tells MSC with the gained positional information again.
Yet the prior mobile network authentication mode only provides the authentication for the user, the related service information that does not provide the user to sign.
Open mobile alliance OMA has defined end to end mechanism at Mobile Broadcast Services, clear and definite system architecture and the logic entity of Mobile Broadcast Services BCAST.
BCAST Service Application (BSA, broadcasting service is used) represents the BCAST service application, as: stream/video/audio or movie download.Have media coding, content protecting and interactive function.Provide the BCAST service attribute to BCAST distribution of services/adaptive entity (BSD/A) and the signatory management entity (BSM) of BCAST.Produce charge information, as: obtain user's charge information from BSM and content production entity (CC), can produce charge information and pass.
BCAST Service Distribution/Adaption (BSD/A, broadcasting service distribution/adaptive):
Be responsible for concentrating and transmitting the BCAST business; carry out adapting function; the BCAST business can be adapted with the distributing broadcasting system of lower floor; provide that file and stream distribution, business integration, protection, professional navigation generate and transmit, the transmission of notice and lower floor's distributing broadcasting system (Broadcast Distribution System, BDS) adaptive.Adapting function is relevant with the BDS of lower floor, different adaptive of different B DS.
BCAST Subscription Management (BSM, the signatory management of broadcasting user):
The signatory administration module in family is in charge of relevant information such as mobile broadcast user's signatory, payment, and BCAST is professional to be received, and uses the information of configuration, BCAST equipment control.Informing business protection management, content protecting management are provided, generate the support and the BDS distribution of services system interaction of professional navigation.Producing charge information uses to broadcasting service.
Terminal (terminal):
Subscriber equipment can receiving broadcast content and program support information (comprising: Electronic Service Guide, content protection information etc.); Subscriber equipment wants to support interactive channel, can no matter have do not have under the available service scenario can both with the direct communication of network.
According to the Mobile Broadcast Services architecture of OMA, in the Mobile Broadcast Services system, be by a logic entity for user's authentication functions: the user contracts, and (Subscription Management SM) realizes administration module.The signatory administration module of user is in charge of relevant information such as mobile broadcast user's signatory, payment, and these information comprise at least: user ID, Service service identifiers, user are at the signatory ordering content of a certain Service etc.SM can carry out mutual with broadcasting service distributing system and terminal is carried out communication, and terminal, user are managed.The broadcasting service that the user signs, packaged service, roaming agreement etc. all have corresponding record in SM.
Provide digital broadcast service to the user, the network operator at first will discern user and relevant user terminals, and the foundation of identification is exactly a user ID.Below severally all can think user ID (ID):
Network access identifier (NAI), its form is: user @ territory;
IP address or corresponding domain name;
Telephone number (as E.164) or Mobile Directory Number;
Specific device number (as the MSID among the 3GPP).
After finishing identification, will carry out authentication and mandate from the angle of business.According to Service service identifiers and user signatory ordering content at a certain Service, judge whether to the user provide a certain professional.
Because Mobile Broadcast Services can be carried out on multiple bearer network, is provided by a plurality of service provider SP of Mobile Broadcast Services that can provide, so the deployment of Mobile Broadcast Services also has multiple flexible way.On the same bearer network, can there be a plurality of different SP that different broadcast service is provided.Owing to involve service provider and network provider, with respect to the traditional business roaming, user's authentication and registration are complicated more in the broadcasting service roaming.Because each SP can use an independently SM, perhaps certain several SP uses same SM.SP can provide broadcast service to the heterogeneous networks of a plurality of Virtual network operators.This deployment way flexibly makes the Mobile Broadcast Services roaming have multiple roaming mode.Such as:
1. user A also uses the network of China Mobile from Guangzhou to Shenzhen, and the business that can use the unified broadcasting service SP of Guangdong the whole province to provide, the roaming type of user A are the roamings between the different regions;
2. user B also uses the network of China Mobile from Beijing to Guangzhou, but the broadcasting service SP of Pekinese can not provide service to Guangzhou, and user B can only use Guangzhou spot broadcasting business, and the roaming of user B is that region roaming is closed with SP and roamed;
3. user C is from Beijing to Paris, the Virtual network operator difference, and the region difference, the Mobile Broadcast Services SP of use is also different, and user A is the roaming type of three kinds of mixing like this.
Because broadcasting service is broadcasting and multicast at some community user, so when the user roams, the broadcasting service that the user can't use ownership place to provide, the user can only be after passing through the SM authentication of ownership place, obtain corresponding visit ground service profile, broadcasting service is provided with using visit.When the user roams, if same SM is used in the network at user place and coverage, can directly obtain user-dependent CAMEL-Subscription-Information, for the user provides corresponding broadcasting service.When the network at place uses different SM with the coverage, need by visit ground SM to ownership place SM request customer service CAMEL-Subscription-Information.The broadcasting service roaming condition is more complicated more than traditional business, and the user is under the situation of roaming, and charge information is produced by visit ground SM, but to roam type with the user be relevant to charging policy.Existing roaming method for authenticating is simple, only supports direct interacting message between visit SM and the ownership SM, and can't support to visit between SM and the ownership SM does not have direct-connected situation.Do not judge user's roaming type in the authentication message, accurate charging information more can't be provided.And authentication modes such as use HLR also can't provide for the support of heterogeneous network broadcasting service roaming and detailed business information.Be that visit SM can't directly receive user's roaming authentication request especially, also just can't support above roaming authentication mode under the situation of the network (as the DVB-H network) that has only one-way channel at visited network.
Summary of the invention
The invention provides a kind ofly for the roamer provides the method for digital broadcast service business cipher key, is the problem that the digital broadcasting roamer provides business cipher key to solve insurmountable in the prior art.
A kind of method that provides the digital broadcasting key to the roamer comprises:
A1, terminal are sent visit ground digital broadcasting service secret key request message to Internet related network elements, and Internet related network elements is transmitted described business cipher key request message to the signatory administration module SM of ownership place; In the described business cipher key request message, comprise user ID and visit ground sign;
A2, ownership place SM are according to user ID corresponding service CAMEL-Subscription-Information, to business cipher key request message authentication; If authenticating result is successfully, ownership place SM obtains visit ground digital broadcasting service key information;
A3, ownership place SM send the business cipher key request response by Internet related network elements to terminal, and described business cipher key request response comprises business cipher key information.
The described method that provides the digital broadcasting key to the roamer in the steps A 1, is designated to described visit visit SP sign and/or visit SM sign.
Describedly provide the method for digital broadcasting key to the roamer, in the steps A 1, Internet related network elements is transmitted described business cipher key request message to Internet SM, and Internet SM transmits described business cipher key request message to ownership place SM then; And, in the described business cipher key request message, also comprise service identification.
Describedly provide the method for digital broadcasting key to the roamer, in the steps A 2, if authenticating result is failure, ownership place SM sends the business cipher key request response to terminal, and described business cipher key request response comprises authenticating result.
The described method that provides the digital broadcasting key to the roamer is characterized in that in the steps A 2, if authenticating result is failure, ownership place SM also comprises the failed authentication reason in the business cipher key request response that terminal is sent.
The described method that provides the digital broadcasting key to the roamer is characterized in that in the steps A 2, ownership place SM obtains visit ground digital broadcasting service key information and further comprises:
A21, ownership place SM are according to visit ground SM sign, and SM sends the business cipher key request message to visit ground;
A22, visit ground SM send the business cipher key request response by corresponding ownership place SM sign to ownership place SM, and described business cipher key request response comprises business cipher key information.
The described method that provides the digital broadcasting key to the roamer is characterized in that ownership place SM also comprises visit ground SM sign in the business cipher key request message that visit ground SM sends; Other SM is according to the ground of the visit in business cipher key request message SM sign, and the business cipher key request message that ownership place SM is sent is transmitted to visit ground SM.
Ownership place SM also comprises ownership place SM sign, belonging area network sign in the business cipher key request message that visit ground SM sends.
Describedly provide the method for digital broadcasting key to the roamer, visit ground SM judges that according to the belonging area network sign user roams type, further comprises the roaming type in the business cipher key request response that ownership place SM sends.
The described method that the digital broadcasting key is provided to the roamer, in the steps A 22, visit ground SM is before ownership place SM sends the business cipher key request response, also comprise visit ground SM to business cipher key request message authentication, and the business cipher key request response also comprises authenticating result, failed authentication reason.
The described method that the digital broadcasting key is provided to the roamer, visit ground SM is in the business cipher key request response that ownership place SM sends, also comprise ownership place SM sign, the business cipher key request response that other SM will visit ground SM transmission according to the sign of the ownership place SM in the business cipher key request response is transmitted to ownership place SM.
The described method that provides the digital broadcasting key to the roamer also comprises after the steps A 3:
A4, user confirm authenticating result, and send business cipher key request response confirmation message to ownership place SM.
Describedly provide the method for digital broadcasting key to the roamer, the described Internet is the ownership place Internet.
Describedly provide the method for digital broadcasting key to the roamer, described business cipher key information is that business cipher key or business cipher key obtain the address.
The described method that the digital broadcasting key is provided to the roamer, in the steps A 2, ownership place SM further comprises before obtaining visit ground digital broadcasting service key information: ownership place SM sends visit ground service identification message to terminal, and described visit ground service identification message comprises all visit ground service identifications that this user has the right to receive; After the user selects service identification, return visit ground service identification acknowledge message to ownership place SM; Ownership place SM obtains the corresponding business key information according to user's selection.
Terminal is used to ask the digital broadcast service with receiving digital broadcast service application service device;
Visit ground SM, ownership place SM are used for mutual negotiation, and determine whether to provide business cipher key to roaming terminal;
Internet related network elements and Internet SM are used for transfer message between terminal and ownership place SM.
The invention has the beneficial effects as follows:
The present invention will belong to SM and visit SM couples together, and makes ownership SM also can carry out authentication to the user when the user roams, and makes the user use the services of roaming of signing.And the present invention can be used to comprise that the user roams between different SP; The roaming of user between heterogeneous networks; The various ways of the roamer roaming of user between different regions; Especially, be the radio network of one-way channel to the roaming place, method of the present invention also can allow the user to obtain the services of roaming key information of roaming place in advance by mutual radio network.
Description of drawings
Accompanying drawing 1 is a schematic network structure of the present invention;
Accompanying drawing 2 obtains the flow chart of visit ground key by the Internet for user among the present invention;
Accompanying drawing 3 is the schematic network structure of heterogeneous network for ownership place among the present invention with visit ground.
Embodiment
Core concept of the present invention is, when the digital broadcasting user roams, gets in touch by the Internet and the SM foundation of visit ground, obtains the digital broadcasting key on visit ground.
The present invention is applicable to especially that also visit ground is the situation of one-way channel broadcast system (as the DVB-H network).Because in the one-way channel broadcast system, do not need the user is carried out authentication.The user comes the broadcasting service that receives is decrypted by the key of storing in the terminal, the use broadcasting service.So when the user roaming place is the broadcast system network that has only one-way channel, the user needs to obtain in advance the business cipher key on visit ground.The user obtains visit ground key, can have the multiple modes such as broadcast group broadcast network, business hall, the Internet of interactive system to obtain by other.Obtain by the Internet in the mode of business cipher key, the user can obtain by the ownership place mobile broadcast Internet, also can apply for visiting the key on ground by other the mobile broadcast Internet.Even user ascription area is a unidirectional broadcast network like this, the user also can obtain key by other mobile broadcast Internets.
The network structure that the user obtains visit ground key by the Internet as shown in Figure 1, user's visited network is unidirectional broadcast distribution network, the broadcast distribution network of ownership place can be the unidirectional or Internet.If ownership place is the Internet, the user can be directly by after ownership SM authentication, and SM sends request to visit ground, by the interacting message between ownership SM and the visit SM, obtains the key information on visit ground.If ownership place is a unilateral network, the user need be by other interactive broadcast systems, and the Internet SM by relevant in this system carries out subscription authentication to ownership place SM, to return to Internet SM from the key information that visit ground SM obtains by ownership place SM, be notified to the user then.
The flow process that the user obtains visit ground key by the Internet as shown in Figure 2,
At first suppose the terminal basic authentication by the Internet of living in, then the Mobile Broadcast Services service (Mobile Broadcast Services on visit ground is a unilateral network) on the terminal visit ground that will go by Internet application.The user can be known the Mobile Broadcast Services information on visit ground information or visit ground by other modes such as the Internet, short message services.The process description of terminal acquisition visit ground key is as follows:
201, terminal sends visit ground broadcasting service authority request message to network, comprises in this service authority request message that user ID and user want the visit ground Mobile Broadcast Services information of applying for; This user will apply for visit ground Mobile Broadcast Services information, can if the user does not point out specifically to serve service in the request, then be the request for all user's available services of visit ground at the request of a certain concrete service Service in the broadcasting service;
The information that this request can comprise is as shown in table 1:
Title Attribute Number Explanation
User ID Subscriber ID Parameter 1 The ID that adopts during the signatory broadcasting service of user can be a Mobile Subscriber International ISDN Number, the username and password that uses in the time of also can being signatory this business of user.
Service identification Service ID Parameter O..N User oneself finds, wants a certain broadcasting service of the visited network that uses.Service ID can adopt the type of URI, by this URI, can obtain the relevant information of Service, as charge information, belongs to which SP etc.Broadcast service information can be the broadcasting service request to visit ground, perhaps at the request of a certain concrete service in the broadcasting service
Visit SP mark Parameter 1 The user wants the professional visit SP that provides that asks to identify.
Know
Visit SM sign VisitSMID Parameter 1 The sign of user visiting SM is convenient to belong to SM and is returned corresponding information to correct SM.The sign of SM need be globally unique.
Table 1
Wherein, visit SP sign and visit SM sign can have only one, or the two has.Service identification is optionally, if service identification is empty, represents that then the user asks to visit all available services on ground.
202, Internet related network elements is received the service authority request message of terminal, according to user ID the service authority request message is sent to Internet SM;
203, Internet SM is according to the user ID in this message, and the ownership SM of analysis user identifies, and the service authority request message is sent to user's ownership SM; Ownership SM receives user visiting ground service authority request message, according to self the storage with this user ID corresponding service CAMEL-Subscription-Information, the user is carried out authentication, and judging whether the user is validated user, whether can use services of roaming, whether need to visit SM further provides authentication information; For validated user, can use services of roaming, need visit SM that authentication information further is provided; Continued for 204 steps; Otherwise, carried out for 206 steps;
204, ownership SM sends the customer service authentication request message to visit SM, and the address of visit ground SM can be determined according to the visit ground SM sign that terminal is sent, also can determine according to visit ground SP sign; This message can also comprise following information on the basis of table 1:
Title Attribute Number Explanation
Ownership SM sign HomeSMID Parameter 1 The sign of the broadcasting service SM of user attaching, whether the SM of being convenient to receive message judges whether it is corresponding SM, need forwards.The sign of SM need be globally unique.
Network identity NetID Parameter 1 User visiting network of network sign is abideed by the network identity method
205, visit SM is according to belonging to user ID and the home network type that SM sends, the user is further roamed authentication, judge user's roaming type, send the user to ownership SM and roam authenticating result, comprising user's authenticating result, roaming type, the operable services of roaming Service of user etc.Can comprise following information:
Parameter Attribute Number Explanation
Authenticating result Authentication Result Parameter 1 Subscription authentication success or failure can be adopted the BOOL variable, 1 success, 0 failure.
Roaming type Roaming Type Parameter 1 The user roams type: internetwork roaming, region roaming, SP internetwork roaming.Comprise subparameter:, show that there is multiple roaming form in the user if NetRoaming LocRoaming NPRoaming SPRoaming exists more than a subparameter simultaneously.
Internetwork roaming NetRoaming Subparameter 1 Internetwork roaming under the different types of structure network can adopt BOOL, 1 internetwork roaming, 0 no internetwork roaming.
Region roaming LocRoaming Subparameter 1 Roaming parameter in region can adopt BOOL, and 1 exists the region roaming, 0 no region roaming.
The internetwork roaming NPRoaming of Virtual network operator Subparameter 1 The internetwork roaming of heterogeneous networks operator can adopt BOOL, the roaming between 1 heterogeneous networks operator, and 0 invariably with the roaming between Virtual network operator
SP roams SPRoaming Subparameter 1 Roam between the SP, can adopt BOOL, 1 exists the SP roaming, 0 no SP roaming.
Failed authentication reason Fail Reason Parameter 1 The subscription authentication failure cause comprises subparameter: SubFail, SProamingFail, ServiceFail can allow above subparameter to exist simultaneously, show multiple failed authentication combination.
Failed authentication explanation SubFail Subparameter 1 Subscriber failed authentication explanation illustrates detailed failure information, as: the user is expired, expense deficiency etc., user are not signed mobile broadcast roaming agreement etc.
SP roaming failed authentication SProamingFail Subparameter 1 The user does not sign the roaming agreement of the SP of request.
Service authentication failure ServiceFail Subparameter 1..N The mixed type parameter, showing to provide this professional roaming service to the user.Comprise: the explanation of the sign FailInfo failure of ServiceID business, as: do not sign this service roaming agreement; This business does not provide roaming service etc.
The available service sign Parameter O..N The service that the user can enjoy under roaming condition.
Service ID
Ownership SM sign VisitSMID Parameter 1 Bring the sign of user visiting SM in the request message.The sign of SM need be globally unique.
The information of the further authentication of ownership SM storage visit SM includes but not limited to confirm available service identification on visit ground;
206, ownership SM returns to service authentication response message the SM of the user place Internet; Service authentication response message comprises authenticating result, illustrates mainly whether the user is the Mobile Broadcast Services validated user, whether authentication success, can also list the user in the roaming place operable business; If failed authentication can also comprise the failed authentication reason in this message;
207, the SM of the Internet sends to Internet related network elements with the service authentication response message of receiving;
208, Internet related network elements sends to terminal with users broadcasting service authentication response message;
209, terminal represents to the subscription authentication result, and the prompting user confirms authenticating result; Terminal sends the Authentication Response confirmation to Internet related network elements, and comprising user ID with confirm the result, the user can confirm only to obtain the copyright key of a certain or a few the Service of visited network; So can comprise following information in user's the affirmation information:
Title Attribute Number Explanation
Confirm parameter Parameter 1 Whether the user receives visit ground roaming authenticating result really; Can be the BOOL variable, 1 confirms that 0 denies
ServiceID Parameter 0..N If the user has passed through the roaming authentication and confirmed the roaming authenticating result, the user can be at a certain or a few roaming Service request key informations.
If the user is by the roaming authentication and confirmed the roaming result, but does not wherein comprise business information, can think that the user need obtain to pass through in the request of front all business cipher key information of authentication.
210, Internet related network elements sends to the Authentication Response confirmation of receiving the relevant SM of this network;
211, the SM of the Internet sends to user's confirmation user's ownership SM; If the subscription authentication success, and confirm, step 212 continued; If the subscription authentication success, the user denies that then flow process finishes; If the subscription authentication failure, SM receives user's affirmation result, and flow process finishes;
212, ownership SM sends the business cipher key request message to visit SM, and the Mobile Broadcast Services sign comprising user ID and user's request can also comprise ownership place SM sign, so that visit SM is according to ownership place SM sign return messages; The business cipher key request message can also comprise visit ground SM sign, because the business cipher key request message can be transmitted by other SM, the purpose of forwarding is determined by visit ground SM sign.
213, visit SM is according to the business information of user ID and user request etc., for this user obtains key, visit SM obtains the mode of key to be decided according to the key obtain manner of visited network, can be copyright issue center (Right Issue by digital copyright management DRM, RI) generate key, also can generate key etc. by the built-in RI of SM; Visit SM sends to ownership SM with the business cipher key information of obtaining by the business cipher key request response; Business cipher key information is decided according to the situation of visited network, can be key or key obtain address etc.;
214, ownership SM sends to the business cipher key information of receiving the SM that transmits message;
215, the SM of the Internet sends business cipher key information to relevant network element device;
216, network element device sends to user terminal with the business cipher key relevant information;
217, user terminal is received the message that network element sends over, and sends the affirmation information that the user receives association key to network element equipment; Terminal can be received the user key relevant information to user prompt, and the prompting user confirms by hand;
218, the network related network elements sends to the relevant SM of the Internet with the relevant information that the user acknowledges receipt of key;
219, Internet SM relevant information that the user is acknowledged receipt of key sends to user's ownership SM.
In the above flow process, if the user by the Internet of ownership place, can directly send request to ownership place SM, then Internet SM has not wherein just needed, and some steps in the last flow process can merge.As: 202,203 steps can merge, and network element directly sends the broadcasting service authentication application to ownership SM.
For validated user, can use services of roaming, according to the user property setting, if the user does not need to confirm authenticating result, the user in 206 to 211 in then above flow process step confirms that the process of authenticating result can save, ownership SM can be according to the information in user's the visit ground broadcasting service authority application, directly execution in step 212.
After the user obtained visiting the relevant information of ground broadcasting service cryptographic key, the user can visit ground when the user roams into by the business cipher key on this information acquisition visit ground, and the user can use the Mobile Broadcast Services on visit ground.If the user does not obtain the relevant information of key, the user can't obtain visiting the key of ground broadcasting service, and the user can't use Mobile Broadcast Services on visit ground.
After the user successfully obtained visit ground key, ownership place SM can charge for the user accordingly according to service roaming type and cipher key related information etc.When the user finishes roaming, ownership place SM can learn that the user returns ownership place by network or user's active request, and the relevant roaming information of the user who stores among the deletion ownership place SM stops relevant the charging.
Under above situation, mobile broadcast SM will support the forwarding of subscription authentication message and the forwarding of business cipher key relevant information.
Below in conjunction with accompanying drawing, be elaborated for embodiment, in the present embodiment, the user visiting network is the broadcast system that has only one-way channel, and user's ownership place and visit ground are heterogeneous network.Those skilled in the art can know, to the broadcast system of interactive channel, and ownership place and visit ground is the situation of homogeneous network, and method of the present invention is suitable equally.
In the present embodiment, broadcasting service subscription authentication network structure as shown in Figure 3, the user uses the MBMS network at ownership place, ownership SM is connected with GGSN (GGSN).Visit ground is the BCMCS network, use the DVB-H One-to-All Broadcast, in the DVB-H network, the logical functional entity that carries out the service broadcast distribution is Mux (multichannel router) and DVB-T conveyer, visit SM can be connected with the distribution logic entity, and visit SM provide the key information that unidirectional DVB-H service-user is signatory and generation needs.User terminal can be supported MBMS and two kinds of network receiving broadcast services of BCMCS (being that user terminal can be supported WCDMA network or CDMA 2000 networks).Perhaps the user uses different terminals at heterogeneous networks, but adopts same user ID to use Mobile Broadcast Services.The user at first will be by the basic authentication of two kinds of networks.User's mode by basic authentication under heterogeneous network can be number translated or other modes.
Present embodiment is described the user asks visit ground when ownership place key, like this, when the user roams into visit ground, just can use the digital broadcast service on visit ground.
Supposing user A, is Beijing GPRS user, and its phone number is 13912345678, and this user uses phone number to open the corresponding mobile broadcasting service, uses the MBMS of China Mobile business at ownership place.And the MBMS network is not disposed in Tibet, visit ground, by the DVB-H network use Mobile Broadcast Services of China Mobile.User A is in Beijing, and by the Mobile Broadcast Services roaming of MBMS network requests Xinjiang SP1, the business of operable this SP has S1, S2, and the user obtains the key K 1 of S1.Ownership place Beijing SM is designated SM1234, network identity N1, and different SM is used in Tibet, visit ground, and it is designated SM2222, network identity N2.
The services of roaming of terminal A request SP1, the flow process of obtaining the key K 1 of S1 is:
301, terminal A identifies SP1 to the broadcasting service roaming authority request message that the RNS RNS of Beijing GPRS network sends the SP1 in Tibet, visit ground comprising broadcasting service user ID 13912345678, Xinjiang SP;
302, RNS receives the request of terminal, according to user ID request is sent to SGSN (ServingGPRS Supporting Node, Serving GPRS Support Node), SGSN sends to GGSN with authority request message, and GGSN sends to authority request message and network identity N1 the SM1234 of user attaching;
303, ownership SM receives user visiting ground broadcasting service authority request message, according to user ID the user is carried out authentication, judges that user ID 13912345678 is validated users, in the term of validity, can open the roaming in Tibet; Ownership SM sends the service roaming authentication request to visit SM (Tibet SM2222), further roams authentication, comprises in the message that user ID, user ask the roaming service, network identity N1 of SP1 etc.;
304, belong to SM asks SP1 according to the user roaming service, judgement can allow this user to use the services of roaming of this SP, according to user attaching network ID: N1, the network in judgement and Tibet belongs to same operator, administration region difference, draw the user and roam type, following information is returned to visit SM1234;
Authentication?Result?1
RoamingType(NetRoami1ng?1,LocRoaming?1,NPRoaming?0,SPRoaming?1)
Service?ID:S1,S2
HomeSMID:SM1234
305, ownership SM sends the user right request response to GGSN, comprises the authentication success, and the user can ask the S1/S2 business cipher key of SP1;
304, GGSN sends to terminal A by SGSN, RNS with the user right request response;
305, the terminal notifying user confirms the subscription authentication result, the key that the prompting user can ask S1/S2, and whether the inquiry user needs to continue to obtain key; The user confirms authenticating result, and sends the key that the authentication acknowledge message requires to continue to obtain S1;
306, terminal sends to RNS with the authentication acknowledge message, and RNS returns to ownership SM1234 by SGSN, GGSN with the authentication acknowledge message;
307, ownership SM sends the key solicitation message of professional S1 to the SM2222 in Tibet, visit ground, and message comprises user ID 13912345678, service identification S1;
308, visit ground SM2222 obtains the key K 1 of user's needs to the RI of corresponding D RM according to user ID and S1; Visit ground SM2222 sends key application response message to ownership place SM1234, comprises key K 1 and relevant information in the message;
309, the ownership place SM1234 key application response message that will include key K 1 and relevant information sends to GGSN;
310, GGSN sends to terminal by SGSN, RNS with key application response message;
311, terminal sends key application response confirmation message to network, confirms to obtain key; Acknowledge message returns to ownership SM1234 by RNS, SGSN and GGSN.The terminal notifying user has obtained the key of S1.
User A has obtained the key of the Mobile Broadcast Services S1 in Tibet on terminal A, like this, when he roams into Tibet, when wanting to use Mobile Broadcast Services, can decipher corresponding S1 business by the K1 key.
Obviously, those skilled in the art can carry out various changes and modification to the present invention and not break away from the spirit and scope of the present invention.Like this, if of the present invention these are revised and modification belongs within the scope of claim of the present invention and equivalent technologies thereof, then the present invention also is intended to comprise these changes and modification interior.

Claims (23)

1. method that provides the digital broadcasting key to the roamer is characterized in that described method comprises:
A1, terminal are sent visit ground digital broadcasting service secret key request message to Internet related network elements, and Internet related network elements is transmitted described business cipher key request message to the signatory administration module SM of ownership place; In the described business cipher key request message, comprise user ID and visit ground sign;
A2, ownership place SM are according to user ID corresponding service CAMEL-Subscription-Information, to business cipher key request message authentication; If authenticating result is successfully, ownership place SM obtains visit ground digital broadcasting service key information;
A3, ownership place SM send the business cipher key request response by Internet related network elements to terminal, and described business cipher key request response comprises business cipher key information.
2. as claimed in claim 1ly provide the method for digital broadcasting key, it is characterized in that, in the steps A 1, be designated to described visit the visit SP of content supplier sign and/or visit SM sign to the roamer.
3. the method that the digital broadcasting key is provided to the roamer as claimed in claim 2, it is characterized in that, in the steps A 1, Internet related network elements is transmitted described business cipher key request message to Internet SM, and Internet SM transmits described business cipher key request message to ownership place SM then; And, in the described business cipher key request message, also comprise service identification.
4. the method that the digital broadcasting key is provided to the roamer as claimed in claim 3, it is characterized in that, in the steps A 2, if authenticating result is failure, ownership place SM sends the business cipher key request response to terminal, and described business cipher key request response comprises authenticating result.
5. the method that provides the digital broadcasting key to the roamer as claimed in claim 4 is characterized in that in the steps A 2, if authenticating result is failure, ownership place SM also comprises the failed authentication reason in the business cipher key request response that terminal is sent.
6. the method that provides the digital broadcasting key to the roamer as claimed in claim 2 is characterized in that in the steps A 2, ownership place SM obtains visit ground digital broadcasting service key information and further comprises:
A21, ownership place SM are according to visit ground SM sign, and SM sends the business cipher key request message to visit ground;
A22, visit ground SM send the business cipher key request response by corresponding ownership place SM sign to ownership place SM, and described business cipher key request response comprises business cipher key information.
7. the method that provides the digital broadcasting key to the roamer as claimed in claim 6 is characterized in that ownership place SM also comprises visit ground SM sign in the business cipher key request message that visit ground SM sends.
8. as claimed in claim 7ly provide the method for digital broadcasting key to the roamer, it is characterized in that other SM is according to the ground of the visit in business cipher key request message SM sign, the business cipher key request message that ownership place SM is sent is transmitted to visit ground SM.
9. the method that provides the digital broadcasting key to the roamer as claimed in claim 6 is characterized in that ownership place SM also comprises ownership place SM sign in the business cipher key request message that visit ground SM sends.
10. the method that provides the digital broadcasting key to the roamer as claimed in claim 6 is characterized in that ownership place SM also comprises the belonging area network sign in the business cipher key request message that visit ground SM sends.
11. the method that the digital broadcasting key is provided to the roamer as claimed in claim 10, it is characterized in that, visit ground SM judges that according to the belonging area network sign user roams type, further comprises the roaming type in the business cipher key request response that ownership place SM sends.
12. the method that the digital broadcasting key is provided to the roamer as claimed in claim 6, it is characterized in that, in the steps A 22, visit ground SM is before ownership place SM sends the business cipher key request response, also comprise visit ground SM to business cipher key request message authentication, and the business cipher key request response also comprises authenticating result.
13. the method that provides the digital broadcasting key to the roamer as claimed in claim 12 is characterized in that if authenticating result is failure, then the business cipher key request response also comprises the failed authentication reason.
14. the method that the digital broadcasting key is provided to the roamer as claimed in claim 13, it is characterized in that, further comprise before the steps A 3: ownership place SM judges the authenticating result in the business cipher key request response, if success, execution in step A3, and the business cipher key request response in the steps A 3 further comprises authenticating result; If failure, then ownership place SM also comprises authenticating result in the business cipher key request response that terminal is sent.
15. the method that the digital broadcasting key is provided to the roamer as claimed in claim 14, it is characterized in that, if before the steps A 3, ownership place SM judges that the authenticating result in the business cipher key request response is failure, and then ownership place SM also comprises the failed authentication reason in the business cipher key request response that terminal is sent.
16. the method that provides the digital broadcasting key to the roamer as claimed in claim 6 is characterized in that visit ground SM also comprises ownership place SM sign in the business cipher key request response that ownership place SM sends.
17. the method that the digital broadcasting key is provided to the roamer as claimed in claim 16, it is characterized in that the business cipher key request response that other SM will visit ground SM transmission according to the sign of the ownership place SM in the business cipher key request response is transmitted to ownership place SM.
18. the method that provides the digital broadcasting key to the roamer as claimed in claim 6 is characterized in that visit ground SM also comprises service profile in the business cipher key request response that ownership place SM sends; Ownership place SM is kept at this locality with service profile.
19. the method that provides the digital broadcasting key to the roamer as claimed in claim 1 is characterized in that steps A 3 also comprises afterwards:
A4, user confirm authenticating result, and send business cipher key request response confirmation message to ownership place SM.
20. the method that provides the digital broadcasting key to the roamer as claimed in claim 1 is characterized in that the described Internet is the ownership place Internet.
21. the method that provides the digital broadcasting key to the roamer as claimed in claim 1 is characterized in that described business cipher key information is that business cipher key or business cipher key obtain the address.
22. the method that the digital broadcasting key is provided to the roamer as claimed in claim 1, it is characterized in that, in the steps A 2, ownership place SM further comprises before obtaining visit ground digital broadcasting service key information: ownership place SM sends visit ground service identification message to terminal, and described visit ground service identification message comprises all visit ground service identifications that this user has the right to receive; After the user selects service identification, return visit ground service identification acknowledge message to ownership place SM; Ownership place SM obtains the corresponding business key information according to user's selection.
23. a system that provides the digital broadcasting key to the roamer comprises:
Terminal is used for sending visit ground digital broadcasting service secret key request message to Internet related network elements, in the described business cipher key request message, comprises user ID and visit ground sign;
Ownership place SM is used to receive the business cipher key request message that Internet related network elements is transmitted, and described business cipher key request message is carried out authentication; If authenticating result is successfully, then to obtain visit ground digital broadcasting service key information, and send the business cipher key request response to terminal, described business cipher key request response comprises business cipher key information;
Internet related network elements is used for transmitting described secret key request message and key request response message between terminal and ownership place SM.
CNB2005101022672A 2005-12-07 2005-12-07 Method and system for providing digital broadcast to roaming users Expired - Fee Related CN100471314C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2005101022672A CN100471314C (en) 2005-12-07 2005-12-07 Method and system for providing digital broadcast to roaming users

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2005101022672A CN100471314C (en) 2005-12-07 2005-12-07 Method and system for providing digital broadcast to roaming users

Publications (2)

Publication Number Publication Date
CN1859741A CN1859741A (en) 2006-11-08
CN100471314C true CN100471314C (en) 2009-03-18

Family

ID=37298591

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005101022672A Expired - Fee Related CN100471314C (en) 2005-12-07 2005-12-07 Method and system for providing digital broadcast to roaming users

Country Status (1)

Country Link
CN (1) CN100471314C (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101267294B (en) * 2007-03-14 2012-05-09 中国移动通信集团公司 Secret key distribution method
CN101499867B (en) * 2008-02-02 2010-12-08 中兴通讯股份有限公司 Method for ciphering multimedia broadcast content
CN101262335B (en) * 2008-04-23 2011-10-26 中兴通讯股份有限公司 Method and system for secret key distribution in mobile phone TV service
CN102045639B (en) * 2009-10-10 2015-06-10 中兴通讯股份有限公司 Order relation authentication method, system and receiving system of mobile multimedia broadcasting condition
CN102131194B (en) * 2010-01-12 2014-12-10 中国移动通信集团公司 Method, device and system for acquiring service key and service platform equipment
CN101917671B (en) * 2010-08-06 2014-07-16 中兴通讯股份有限公司 Method for managing authentication parameters and terminal

Also Published As

Publication number Publication date
CN1859741A (en) 2006-11-08

Similar Documents

Publication Publication Date Title
US8112080B2 (en) Broadcast/multicast service system and method providing inter-network roaming
EP2285143B1 (en) Roaming service methods and systems in a mobile broadcasting system
US7995510B2 (en) Method for implementing broadcast/multicast area management in a wireless communication system
KR100677509B1 (en) Broadcast service system and methof for supporting roaming between networks
KR100834654B1 (en) Method and apparatus for transmitting and receiving electronic service guide for roaming user in digital broadcasting system
EP1774718B1 (en) Broadcast/multicast service system and method providing inter-network roaming
US7420941B2 (en) Mobile communication system and mobile station
US7801510B2 (en) Authentication method in a mobile broadcast system and system thereof
US20070022200A1 (en) Communication Session Server
CN100471314C (en) Method and system for providing digital broadcast to roaming users
CN100525499C (en) Authentifying method and system for providing digital broadcast to roaming users
EP1809052B1 (en) Method and system for user roaming and service roaming in a digital broadcasting system
CN101160786B (en) Method, system and apparatus for relating the information associated with user in NASS
CN100433684C (en) Method, system and application server for providing broadcast multicast service
EP2090128B1 (en) Broadcast roaming
EP1909463B1 (en) Method and apparatuses for roaming service in a mobile broadcasting system
KR20080017243A (en) Method and apparatus for delivering and receiving service over interaction channel in digital broadcasting system
Chiao Advances in mobility management of DVB-H mobile TV systems
KR20080017245A (en) Method and apparatus for delivering and receiving service over interaction channel in digital broadcasting system
KR20090004430A (en) Method and apparatus for transmitting and receiving electronic service guide for roaming user in digital broadcasting system
KR20100057720A (en) Apparatus and method for cooperation between home dm server and roaming dm server

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20090318

Termination date: 20141207

EXPY Termination of patent right or utility model