CN101447842A - Distributed digital rights management (DRM) system adopting 2-level framework - Google Patents

Distributed digital rights management (DRM) system adopting 2-level framework Download PDF

Info

Publication number
CN101447842A
CN101447842A CNA200810200683XA CN200810200683A CN101447842A CN 101447842 A CN101447842 A CN 101447842A CN A200810200683X A CNA200810200683X A CN A200810200683XA CN 200810200683 A CN200810200683 A CN 200810200683A CN 101447842 A CN101447842 A CN 101447842A
Authority
CN
China
Prior art keywords
content
service
authority
drm
key
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA200810200683XA
Other languages
Chinese (zh)
Inventor
黎文
黄胜明
李怀宇
张大钟
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Baishitong Network TV Technology Development Co Ltd
Original Assignee
Baishitong Network TV Technology Development Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Baishitong Network TV Technology Development Co Ltd filed Critical Baishitong Network TV Technology Development Co Ltd
Priority to CNA200810200683XA priority Critical patent/CN101447842A/en
Publication of CN101447842A publication Critical patent/CN101447842A/en
Pending legal-status Critical Current

Links

Images

Abstract

The invention relates to a distributed digital rights management (DRM) system adopting a 2-level framework, aiming at providing a DRM system which has 2-level framework with distributed authorization and service and supports large-scale content and numerous users. In the invention, intensive introduction, programming, encryption, authority definition, service definition of content are completed in the central level, then corresponding content key, authority and service definition are distributed to regional service nodes for distributed authorization and service. In the invention, flexible operation modes are fully supported, and the security of a database and the reliability of a system are ensured, so as to meet operation requirements of a carrier class. The system in the invention is especially applicable to the conditions that a large amount of content service, users and concurrent service existing in IPTV, internet video service and the like. The adoption of the 2-level distributed service can effectively distribute service and users to different nodes, thus reducing service pressure on each node and lowering requirements on system performance.

Description

Adopt the distributed digital rights management (DRM) system of 2 level frameworks
Technical field
The invention belongs to internet and field of interactive television, relate to digital copyright management (DRM, Digital RightsManagement), the content safety protection,, relate in particular to DRM system and its implementation of supporting Distributed Services.
Background technology
In recent years, the fast development of the Internet had effectively promoted digital commodities, such as the sale and the service of media content electronic editions such as books, paper, music and video.But digital commodities can be made the Internet become illegal use again, propagate the hotbed that the copyright media content is arranged by the characteristic of copy and distribution more easily under the situation of no any quality damage.Each company all prevents pirate technology in development.Digital copyright management (DRM) industry has caused the concern of people's height.
The scope that DRM uses is very wide.The download of CRBT, video and play the propagation restriction that various value-added services are waited until in protection on digital music from the Internet, the mobile phone.Digital copyright protection technology is exactly based on digital-scrambling techniques, in conjunction with a series of software and hardware technologies, realizes the protection to digital content, makes the bootlegging of within the scope of authority using and technically prevent digital content of the buyer of digital content in appointment.Digital content wherein comprises e-book, digital movie, digital music, picture, software etc.The major technique that DRM relates to comprises Digital ID technology, safety and encryption technology, memory technology, electronic transaction technology etc.
Traditional DRM is based on the single-point operation, adopts centralized deployment and service manner.Along with digital content, the particularly development of Internet video operation, and the sharp increase of userbase, this just requires DRM to support operation mode flexibly, particularly central authorities concentrate content introducing, making, encryption and authority definition, the operation mode of mandate of area distribution formula and service.
Summary of the invention
The objective of the invention is in the digital content services system, the DRM system of extensive, distributed 2 level frameworks of support is provided, this system finishes content at the central level and concentrates introducing, making, encryption, authority definition, service definition, and content corresponding key and authority and service definition be distributed to the regional service node, the regional service node carries out distributed authorization and service.
In the present invention, DRM system of central authorities and not responsible online authorization service, but mainly finish the correlation function that content is introduced, comprise making and encryption to content, with the relevant authority definition of each content, with the definition of miscellaneous service, and adopt the mode of safety that key, authority, business etc. are distributed to each regional service node.Simultaneously, central DRM system also finishes the authentication of each region D RM node, guarantees the legitimacy and the fail safe of region D RM node, and final purpose is the fail safe that guarantees content key and authority.
The major function of region D RM node comprises following: obtain content key, authority and the professional definition of central node distribution synchronously, and be deposited in the database; The introducing of local content, making, encryption, authority and professional definition; Carry out legitimacy and security credential to central DRM system, obtain token with central DRM system communication; User and ordering information management thereof; The installation of terminal and drm agent, registration and authentication; And the service request of terminal and drm agent authorized.
Therefore, in the present invention, the distributed DRM system of whole employing 2 level frameworks comprises following main subsystem: content that is used to concentrate introduces, encrypt make, the management of the definition of the generation of key, content rights, professional definition, key and authority and issue and to the central DRM system of edge entity authentication; Finish user, terminal, service order management for one group, and the Area Node DRM system of authorization service is provided for the user in real time; Some decodings of finishing service authorization request and authorization message, and according to authorization message enabling decryption of encrypted content and the terminal and the drm agent of correct content service are provided for the user; One encrypted content is stored the system of distribution and service; One produces user profile, the content service of ordering information and the OSS of service.
Central DRM system among the present invention is made up of following major function and module: a content is introduced and the authority definition subsystem, finishes the relevant authority definition of content, and content is imported in the system; Key and rights management, substantial key of administrative institute and authority, and along with the issue of content key and authority are issued to Area Node DRM by the mode of encrypting; Content-encrypt to the content-encrypt of drawing-in system, and passes to the management of secret key and Rights Management System with key, encrypted content is distributed to content stores, distribution and service system so that the user is carried out content service simultaneously; The CP management, the authority of management CP, CP can carry out the typing of content related data by this system, such as content rights, authorizes time window etc.; The service definition and the issue of content are finished in service management, comprise the packing of content, the definition of product, the order authority of product, life cycle etc.; The authentication to fringe node is finished at the entity authentication center.
Area Node DRM system among the present invention is made up of following major function and module: authorization center, according to user's authority, user's request content and professional authority definition are authorized DRM Client, and after authorization message encrypted, pass to terminal and drm agent; The management of key/authority/user and ordering information, the key of organize content and authority, the content key that transmits and the authority of synchronous central DRM system also is kept in the database managing user information and ordering information; User and service order management interface receive and simultaneous user's information from external system, and user's purchase order information, and are saved in the database;
Client is installed and authentication, finishes client and authenticates with the installation of DRM system communication and later on each start for the first time;
Business management system is finished business and product that the central DRM of reception system issues, and with professional some right expressions relevant with product; Relevant information is deposited in the database so that authorize; Simultaneously the business management system of region D RM node also can directly be carried out the definition, management, issue of professional and product etc.;
Entity authentication carries out entity authentication to central DRM, the fail safe of communicating by letter between support area node DRM system and the central DRM system.
In the present invention, adopt the distributed content and the authority of the distributed DRM system of 2 level frameworks to introduce management method, wherein major function comprises: content and authority thereof in the whole DRM system, both can introduce from central DRM system, and also can introduce from region D RM node; The key of the content that DRM system of central authorities introduces and authority are described, and give synchronously among the key/authority/user and ordering information safety database in the region D RM node by the mode of encrypting; The content that region D RM node is introduced, its key and authority are described and will directly be entered in key/authority/user and the ordering information safety database;
In the present invention, adopt the distributed service introducing method of the distributed DRM system of 2 level frameworks: business, product and authority thereof in the whole DRM system, both can introduce from central DRM system, also can introduce from region D RM node; The business that DRM system of central authorities introduces, product and authority are described, and the business management system of giving region D RM node synchronously by the mode of SOAP+XML is again by in business management system storage key/authority/user and the ordering information safety database; Business and product that region D RM system introduces are directly stored into its definition and authority description in key/authority/user and the ordering information safety database by business management system.
In the present invention, adopt the distributed authorization method of servicing of the distributed DRM system of 2 level frameworks: all users and ordering information thereof all are synchronized to region D RM node by external system, and store in key/authority/user and the ordering information safety database; To user's service authorization, finish by the authorization center of edge DRM node; A plurality of fringe nodes can independently carry out the service authorization service simultaneously to belonging to the user of administration separately.
In the present invention, adopt the content key of distributed DRM system of 2 level frameworks and the encryption synchronisation method of right expression information, wherein key step comprises: adopt the mechanism of Kerberos, the authentication module of fringe node carries out authentication to the authentication center of central DRM; Fringe node obtains the token with central DRM system communication by after authenticating; Content key that DRM system of central authorities produces and right expression information are given Area Node DRM system after encrypting by token synchronously; After the Area Node DRM system decrypts, content key and right expression information are deposited in the safety database.
In the present invention, adopt the concentrated mode network organizing dispositions method that adds distribution of employing two level frameworks of the distributed DRM system of 2 level frameworks, its main method is: central DRM system deployment is at Centroid, for concentrating the mode of disposing, comprise the CP management system, central business management system, central content is introduced and the authority definition system, the central content encryption system, central key and Rights Management System, modules such as central node authentication center; Region D RM node is deployed in the system edges node near user side as far as possible, adopt distributed deployment way, comprise the area business management system, client is installed and Verification System, the area contents encryption system, key/authority/user and ordering information management system, authorization center, the Area Node Verification System, modules such as user and ordering management system; Region D RM node both can adopt physically and to have distributed, also can adopt distribute in logic and physical centralization in the mode of Centroid;
The present invention has solved the DRM Service Operation mode requirement when having a plurality of Area Node effectively, and content is mainly concentrated in central DRM system and introduced, and Area Node adopts distributed deployment and service.OSS is given region D RM system synchronously with user profile and ordering information, and to the drm agent mandate, client can correctly solve encrypted content according to authorization message to Area Node in conjunction with the authority of user's ordering information and content.Certainly, Area Node is also supported the introducing of content, makes whole DRM system can support operation mode more flexibly.
The present invention is specially adapted to IPTV, there are a large amount of content services in internet video service etc., the situation of large-scale consumer amount and big concurrent service, by 2 grades of Distributed Services, can effectively the user be assigned on the different nodes with service, alleviated the service pressure of each node, reduced requirement systematic function.
Description of drawings
Fig. 1 adopts the distributed DRM system schematic of 2 level frameworks for the embodiment of the invention.
Fig. 2 is the distributed DRM networking model of an embodiment of the invention schematic diagram.
Fig. 3 is DRM/Dispatcher in the mode of soap protocol+XML instruction document initiatively to the content distributed flow chart of DRM.
Embodiment
The present invention is further illustrated below in conjunction with accompanying drawing.
1. general frame
In the framework of Fig. 1, the distributed DRM system that adopts 2 level frameworks is mainly by central DRM system, Area Node DRM system, and terminal and drm agent, and business operation support system, Content Management, distribution, storage and service set of systems become.Terminal and drm agent authenticate, ask and obtain mandate to Area Node DRM system, and utilize authorization message that the encrypted content that obtains is carried out program and obtains final service.
In the present invention, the encryption of content is produced on central DRM system, is distributed to Content Management, distribution, storage and service system behind the content-encrypt, and the user is given in final service.And content key and right expression generate and management in center system, and adopt the mode of encrypting to give each Area Node DRM system synchronously.Area Node DRM system adopts distributed deployment and is user's service.
2. central DRM system
DRM system of central authorities content is introduced and authority definition, key and rights management, content-encrypt, CP (contentprovide: content affiliate) management, subsystem and modules such as service management and entity authentication center.DRM system of central authorities mainly finishes the introducing and the authority definition of content, the encryption of content, and the management of key and authority.Content supplier is by the CP management system, and the content that needs are encrypted or encrypted uploads in the DRM system, and the authority of definition content.If content is then encrypted by content encryption system, and is produced corresponding key less than encrypting.The key of content and authority finally are saved in the key and rights database that adopts security mechanism.Business management system is finished with the relevant service definition of content, comprises the packing of content, service time window, the definition of Service Privileges etc.
3. Area Node DRM system
Area Node DRM comprises authorization center, key/authority/user and ordering information management, and user and service order management interface, client is installed and authentication, subsystem and modules such as business management system and entity authentication.The business of user profile and order thereof by outside other the mode of OSS by interface, is given region D RM system in real time synchronously.Terminal and drm agent need be installed for the first time with DRM system communication the time, with the legitimacy of checking and assurance terminal and drm agent.When terminal powers on each time later on, terminal and drm agent need arrive the DRM Area Node and authenticate, with token (token, a kind of mark that signifies authority that transmits between data station in the local area network (LAN) that obtains intercommunication, start to control to make and use), guarantee the fail safe of intercommunication.Authorization center is mainly finished when user's requested service and content, according to user's information and the business of having ordered thereof, authorizes.And after authorization message encrypted, pass to terminal and drm agent.Certainly, in Area Node, also can introduce content and business is defined, and the key of the content introduced of Area Node and authority also can upwards be synchronized in the central DRM system.
4. the encryption synchronisation method of content key and right expression information
Area Node DRM system and central DRM system all authenticate to the identity authorization system of central authorities, obtain the token of mutual communication.In the present invention, to the authentication of central DRM system and Area Node DRM system, adopt the authentication mechanism of Kerberos.Content key that DRM system of central authorities produces and right expression information are given Area Node DRM system after encrypting by token synchronously, after the Area Node DRM system decrypts, content key and right expression information are deposited in the safety database.
5. content and service management interface
Content distribution and service management interface adopt the mode of soap protocol+XML instruction document.Wherein, soap message is and the irrelevant universal information of concrete command content, only is used to express command request.And concrete order and parameter utilize independently XML document to describe.Adopt and specifically instruct irrelevant general soap message to help instructing expansion to reach the general reliable news pass through mechanism of realization in asynchronous environment.
As shown in Figure 3, DRM/Dispatcher is initiatively content distributed to DRM in the mode of soap protocol+XML instruction document, and DRM obtains XML according to the file URL in the soap message and resolves and carry out.
6. user and ordering information interface
Among the present invention, we provide business integration open interface between and outside other the OSS.The third party system need realize the logic control of being correlated with, and is connected with communication that the DRM system sets up safety, finishes the Message Processing that DRM is correlated with.The DRM server returns corresponding result according to the message request of third party system.Interface adopts the mode of TCP/IP Socket+XML.Main Message Processing comprises: the increasing/delete, user's mandate etc. of user and set-top box.Main interface comprises:
Create user: AddSubscriber and shut down user: SuspendSubscriber
Excited users: ReactiveSubscriber deletes user: RemoveSubscriber
Add terminal: AddClient terminal failure: DeactiveClient
Activated terminals: ReactiveClient deletes terminal: DeleteClient
Terminal and user binding: Bonding terminal and user separate and tie up: CancelBonding
Service order: OrderService order business cancellation: CancelService
7. networking model
As shown in Figure 2, networking model of the present invention adopts distributed two level framework network-building methods.The DRM of central authorities system deployment is unified operation and management in operation centre by the center.Region D RM system deployment is at Area Node, in real time for the user provides DRM authorization service, and carries out interface with the OSS of external service system, obtains relevant user and service order information.Region D RM system both can the physical distribution formula be deployed in Area Node, can adopt again in logic to distribute and the physically concentrated central node that is deployed in.
The above-mentioned description to embodiment is can understand and apply the invention for ease of those skilled in the art.The person skilled in the art obviously can easily make various modifications to these embodiment, and needn't pass through performing creative labour being applied in the General Principle of this explanation among other embodiment.Therefore, the invention is not restricted to the embodiment here, those skilled in the art should be within protection scope of the present invention for improvement and modification that the present invention makes according to announcement of the present invention.

Claims (10)

1, a kind of system for numeral copyright management is characterized in that: adopt the distributed DRM system of 2 level frameworks,
This system finishes content at the central level and concentrates introducing, making, encryption, authority definition, service definition, and content corresponding key and authority and service definition are distributed to the regional service node, and the regional service node carries out distributed authorization and service.
2, system for numeral copyright management as claimed in claim 1 is characterized in that: comprise following subsystem:
Content of being used to concentrate introduces, encrypt make, the management of the definition of the generation of key, content rights, professional definition, key and authority and issue and to the central DRM system of edge entity authentication;
Finish user, terminal, service order management for one group, and the Area Node DRM system of authorization service is provided for the user in real time;
Some decodings of finishing service authorization request and authorization message, and according to authorization message enabling decryption of encrypted content and the terminal and the drm agent of correct content service are provided for the user;
One encrypted content is stored the system of distribution and service;
One produces user profile, the content service of ordering information and the OSS of service;
In whole system for numeral copyright management, adopt distributed content and authority introducing method;
In whole system for numeral copyright management, adopt the distributed authorization method of servicing;
In whole system for numeral copyright management, content key and right expression information adopt the encryption synchronisation method to carry out synchronously;
Whole system for numeral copyright management adopts the concentrated mode network organizing dispositions method that adds distribution of two level frameworks.
3, system for numeral copyright management as claimed in claim 2 is characterized in that: described central DRM system comprises following functional module:
A content is introduced and the authority definition subsystem, finishes the relevant authority definition of content, and content is imported in the system;
Key and rights management, substantial key of administrative institute and authority, and along with the issue of content key and authority are issued to Area Node DRM by the mode of encrypting;
Content-encrypt to the content-encrypt of drawing-in system, and passes to the management of secret key and Rights Management System with key, encrypted content is distributed to content stores, distribution and service system so that the user is carried out content service simultaneously;
The CP management, the authority of management CP, CP can carry out the typing of content related data by this system;
The service definition and the issue of content are finished in service management, comprise the packing of content, the definition of product, the order authority of product, life cycle;
The authentication to fringe node is finished at the entity authentication center.
4, system for numeral copyright management as claimed in claim 2 is characterized in that: described Area Node DRM system comprises following functional module:
Authorization center, according to user's authority, user's request content and professional authority definition are authorized DRM Client, and after authorization message encrypted, pass to terminal and drm agent;
The management of key/authority/user and ordering information, the key of organize content and authority, the content key that transmits and the authority of synchronous central DRM system also is kept in the database managing user information and ordering information;
User and service order management interface receive and simultaneous user's information from external system, and user's purchase order information, and are saved in the database;
Client is installed and authentication, finishes client and authenticates with the installation of DRM system communication and later on each start for the first time;
Business management system is finished business and product that the central DRM of reception system issues, and with professional some right expressions relevant with product; Relevant information is deposited in the database so that authorize; The business management system of region D RM node also can directly be carried out definition, management, the issue of professional and product simultaneously;
Entity authentication carries out entity authentication to central DRM, the fail safe of communicating by letter between support area node DRM system and the central DRM system.
5, the distributed content of the described system for numeral copyright management of claim 2 and authority introducing method is characterized in that: comprising:
Content and authority thereof in the whole DRM system both can be introduced from central DRM system, also can introduce from region D RM node;
The key of the content that DRM system of central authorities introduces and authority are described, and give synchronously among the key/authority/user and ordering information safety database in the region D RM node by the mode of encrypting;
The content that region D RM node is introduced, its key and authority are described and will directly be entered in key/authority/user and the ordering information safety database.
6, the distributed service introducing method of the described system for numeral copyright management of claim 2 is characterized in that:
Business, product and authority thereof in the whole DRM system both can be introduced from central DRM system, also can introduce from region D RM node;
The business that DRM system of central authorities introduces, product and authority are described, and the business management system of giving region D RM node synchronously by the mode of SOAP+XML is again by in business management system storage key/authority/user and the ordering information safety database;
Business and product that region D RM system introduces are directly stored into its definition and authority description in key/authority/user and the ordering information safety database by business management system.
7, the distributed authorization method of servicing of the described system for numeral copyright management of claim 2 is characterized in that:
All users and ordering information thereof all are synchronized to region D RM node by external system, and store in key/authority/user and the ordering information safety database;
To user's service authorization, finish by the authorization center of edge DRM node;
A plurality of fringe nodes can independently carry out the service authorization service simultaneously to belonging to the user of administration separately.
8, the encryption synchronisation method of the content key of the described system for numeral copyright management of claim 2 and right expression information is characterized in that: comprising:
Adopt the mechanism of Kerberos, the authentication module of fringe node carries out authentication to the authentication center of central DRM;
Fringe node obtains the token with central DRM system communication by after authenticating;
Content key that DRM system of central authorities produces and right expression information are given Area Node DRM system after encrypting by token synchronously;
After the Area Node DRM system decrypts, content key and right expression information are deposited in the safety database.
9, the concentrated mode network organizing dispositions method that adds distribution of employing two level frameworks of the described system for numeral copyright management of claim 2 is characterized in that:
The DRM of central authorities system deployment for concentrating the mode of disposing, comprises the CP management system at Centroid, central authorities' business management system, central content is introduced and the authority definition system, the central content encryption system, central key and Rights Management System, modules such as central node authentication center;
Region D RM node is deployed in the system edges node near user side as far as possible, adopt distributed deployment way, comprise the area business management system, client is installed and Verification System, the area contents encryption system, key/authority/user and ordering information management system, authorization center, the Area Node Verification System, modules such as user and ordering management system;
Region D RM node both can adopt physically and to have distributed, also can adopt distribute in logic and physical centralization in the mode of Centroid;
DRM system of central authorities and region D RM node are formed the concentrated mode network organizing dispositions method that adds distribution of two-stage framework.
10, the application of arbitrary described system for numeral copyright management and method among the claim 1-9 is characterized in that: use it for exist a large amount of content services and or the large-scale consumer amount and or the situation of big concurrent service, comprise IPTV, internet video service.
CNA200810200683XA 2008-09-27 2008-09-27 Distributed digital rights management (DRM) system adopting 2-level framework Pending CN101447842A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNA200810200683XA CN101447842A (en) 2008-09-27 2008-09-27 Distributed digital rights management (DRM) system adopting 2-level framework

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNA200810200683XA CN101447842A (en) 2008-09-27 2008-09-27 Distributed digital rights management (DRM) system adopting 2-level framework

Publications (1)

Publication Number Publication Date
CN101447842A true CN101447842A (en) 2009-06-03

Family

ID=40743270

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA200810200683XA Pending CN101447842A (en) 2008-09-27 2008-09-27 Distributed digital rights management (DRM) system adopting 2-level framework

Country Status (1)

Country Link
CN (1) CN101447842A (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103078858A (en) * 2012-12-31 2013-05-01 上海同岩土木工程科技有限公司 Web service and signature certificate-based software trial authorization method
WO2014180369A1 (en) * 2013-11-14 2014-11-13 中兴通讯股份有限公司 Method and device for processing data of iptv based on distributed database
CN105141418A (en) * 2014-05-26 2015-12-09 中国移动通信集团公司 Certificate authentication method and system
CN106604070A (en) * 2016-11-24 2017-04-26 中国传媒大学 Distributed secret key management system and secret key management method for streaming media in cloud environment
CN108431819A (en) * 2015-12-03 2018-08-21 奥卡交互有限公司 Client is protected to access the method and system of the service of the DRM agent of video player
CN109474840A (en) * 2017-09-07 2019-03-15 玲珑视界科技(北京)有限公司 The multicast channel method for scrambling and system that encryption double mode coexists inside and outside a kind of
CN112328704A (en) * 2020-11-03 2021-02-05 成都中科大旗软件股份有限公司 Method, system, computer equipment and storage medium for realizing multi-data source combined query
CN112637637A (en) * 2020-12-15 2021-04-09 上海文广科技(集团)有限公司 Operation system and method for rural digital movies
CN113381871A (en) * 2020-03-10 2021-09-10 中国电信股份有限公司 Mobile edge service arrangement method, arrangement device and mobile edge computing system
US11575508B2 (en) 2021-06-02 2023-02-07 International Business Machines Corporation Unified HSM and key management service

Cited By (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103078858A (en) * 2012-12-31 2013-05-01 上海同岩土木工程科技有限公司 Web service and signature certificate-based software trial authorization method
CN103078858B (en) * 2012-12-31 2015-08-26 上海同岩土木工程科技有限公司 Based on the soft ware authorization trial method of web services and signing certificate
WO2014180369A1 (en) * 2013-11-14 2014-11-13 中兴通讯股份有限公司 Method and device for processing data of iptv based on distributed database
CN104636405A (en) * 2013-11-14 2015-05-20 中兴通讯股份有限公司 IPTV data processing method and device based on distributed database
CN105141418A (en) * 2014-05-26 2015-12-09 中国移动通信集团公司 Certificate authentication method and system
CN108431819B (en) * 2015-12-03 2021-06-08 奥卡交互有限公司 Method and system for protecting client access to service of DRM agent of video player
CN108431819A (en) * 2015-12-03 2018-08-21 奥卡交互有限公司 Client is protected to access the method and system of the service of the DRM agent of video player
CN106604070B (en) * 2016-11-24 2019-10-29 中国传媒大学 The distributed key management system and key management method of Streaming Media under cloud environment
CN106604070A (en) * 2016-11-24 2017-04-26 中国传媒大学 Distributed secret key management system and secret key management method for streaming media in cloud environment
CN109474840A (en) * 2017-09-07 2019-03-15 玲珑视界科技(北京)有限公司 The multicast channel method for scrambling and system that encryption double mode coexists inside and outside a kind of
CN109474840B (en) * 2017-09-07 2020-11-27 玲珑视界科技(北京)有限公司 Multicast channel scrambling method and system for coexistence of internal and external encryption modes
CN113381871A (en) * 2020-03-10 2021-09-10 中国电信股份有限公司 Mobile edge service arrangement method, arrangement device and mobile edge computing system
CN113381871B (en) * 2020-03-10 2023-04-07 中国电信股份有限公司 Mobile edge service arrangement method, arrangement device and mobile edge computing system
CN112328704A (en) * 2020-11-03 2021-02-05 成都中科大旗软件股份有限公司 Method, system, computer equipment and storage medium for realizing multi-data source combined query
CN112328704B (en) * 2020-11-03 2024-02-23 成都中科大旗软件股份有限公司 Method, system, computer device and storage medium for implementing multiple data source joint inquiry
CN112637637A (en) * 2020-12-15 2021-04-09 上海文广科技(集团)有限公司 Operation system and method for rural digital movies
CN112637637B (en) * 2020-12-15 2024-01-09 上海文广科技(集团)有限公司 Operation system and method for rural digital cinema
US11575508B2 (en) 2021-06-02 2023-02-07 International Business Machines Corporation Unified HSM and key management service

Similar Documents

Publication Publication Date Title
CN101447842A (en) Distributed digital rights management (DRM) system adopting 2-level framework
CN101527633B (en) Method for intelligent key devices to obtain digital certificates
JP5346025B2 (en) Security signature method, security authentication method, and IPTV system
Taban et al. Towards a secure and interoperable DRM architecture
US8898469B2 (en) Software feature authorization through delegated agents
KR101530809B1 (en) Dynamic platform reconfiguration by multi-tenant service providers
US9003190B2 (en) Method and apparatus for providing a key certificate in a tamperproof manner
CN100502307C (en) Integrated user safety management method and device
CN101546366B (en) Digital copyright management system and management method
EP2018019B1 (en) Rights Object Acquisition Method and System
US20100154041A1 (en) Transforming claim based identities to credential based identities
US20130268755A1 (en) Cross-provider cross-certification content protection
KR101452708B1 (en) CE device management server, method for issuing DRM key using CE device management server, and computer readable medium
WO2007019760A1 (en) A method and a system for a mobile terminal joining in a domain and obtaining a rights object
KR20200044117A (en) Digital certificate management method and device
CN103516524A (en) Security authentication method and system
CN102811210B (en) Information card authenticating method and system based on WS protocol
JP2007206961A (en) Authentication system and authentication information transfer method in the same system and security device
CN102752308A (en) Network-based digital certificate comprehensive service providing system and implementation method thereof
WO2023174350A1 (en) Identity authentication method, apparatus and device, and storage medium
CN101296245B (en) Login method and system of service server
CN101860521B (en) Authentication treatment method and system
CN102882882B (en) A kind of user resources authorization method
CN103001775A (en) Enterprise service bus (ESB) based system and method for safety management
Serrão et al. Bringing DRM interoperability to digital content rendering applications

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20090603