CN100518280C - Video encrypting/deciphering device and encrypting/deciphering method - Google Patents

Video encrypting/deciphering device and encrypting/deciphering method Download PDF

Info

Publication number
CN100518280C
CN100518280C CNB2006100781586A CN200610078158A CN100518280C CN 100518280 C CN100518280 C CN 100518280C CN B2006100781586 A CNB2006100781586 A CN B2006100781586A CN 200610078158 A CN200610078158 A CN 200610078158A CN 100518280 C CN100518280 C CN 100518280C
Authority
CN
China
Prior art keywords
module
data
video
control module
encrypting
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2006100781586A
Other languages
Chinese (zh)
Other versions
CN101064813A (en
Inventor
黄铁军
邹远志
高文
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Institute of Computing Technology of CAS
Original Assignee
Institute of Computing Technology of CAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Institute of Computing Technology of CAS filed Critical Institute of Computing Technology of CAS
Priority to CNB2006100781586A priority Critical patent/CN100518280C/en
Publication of CN101064813A publication Critical patent/CN101064813A/en
Application granted granted Critical
Publication of CN100518280C publication Critical patent/CN100518280C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention relates to a video encrypting device that comprises control module, content picking up module, encrypting module and revivification module. It also includes a video encrypting method, based on right description to ensure operation parameter, based on operation parameter to pick up encrypted data from video sequence, encrypting data picked up, placing encrypted data to position of picking and output. The invention relates to a video deciphering device which includes control module, content picking up module, deciphering module and revivification module. And a video deciphering method, based on right description to ensure operation parameter, based on operation parameter to pick up encrypted data from video sequence, deciphering data encrypted, placing deciphered data to position of picking and output. The invention fits for MPEG-2, H. 264 and AVS video condensation standard, using part or entire time and space structure of encrypting video sequence to support multiple safety mode, and fits for symmetrical secret key encryption arithmetic, and there is no affection for original coding performance and condensation performance.

Description

Video encrypting/deciphering device and encipher-decipher method
Technical field
The present invention relates to video encrypting/deciphering device and encipher-decipher method, especially a kind of video content ciphering and deciphering device and encipher-decipher method that is applied to digital copyright management.
Background technology
The development of Internet, Intranet and radio network technique, the popularizing of various terminal equipments, as: mobile device and high definition display device have promoted the fast development of multimedia application technology.It is convenient that these technology make establishment, processing, distribution and experience multimedia digital content on the one hand, and the protection problem to the medium copyrighted digital content is also extremely urgent on the other hand.Except protecting these interests aspect policy and the law, technical digital copyright management (DRM) technology also is necessary.Digital video is an important application of multimedia service, and the digital video copyright technology comprises technology such as content-encrypt, digital video watermarking and key management.The encryption of digital video content can prevent disabled user's visit, and after the digital video content deciphering of encryption, encryption technology no longer provides protection to it; Watermark is a kind ofly to be embedded in original video and to produce the signal of digital watermarking video, and digital watermark technology can provide protection for the content after the deciphering; Key management mainly solves the generation of key, the secure exchange and the problems such as preservation, key inefficacy, key transfer and checking of key.In the digital copyright technology; although content-encrypt and key management technology comparative maturity for digital watermark technology; (user can utilize analogy method record high definition program in the simulation black hole; be converted into number format then; a large amount of unfetteredly the issue and copy) existence makes copyright protection become very difficult.So the digital video content encryption technology remains the effective means of protection content of multimedia.
Traditional CA technology (conditional access technology) comes with some shortcomings: lack interoperability, as: the set-top box between the different content supplier can not realize exchanging visits and ask; Transmission problem, based on Cable broadcast transmitted environment, this transmission environment is a kind of reliable environment, need not to consider the Rate Control of encrypted video; Network isomerism problem, the transport packet format difference of heterogeneous networks, the CA transmission means that load is encrypted based on bag can cause at heterogeneous network node place and need again decrypted packet to pack then and encrypt, and need know decruption key at the node place like this, so can bring safety problem; Safety problem, in the face of all users adopt the same program of identical secret key encryption, in case a user's set-top box is broken through by the hacker, can cause this program out of control whole users, though can add the function of some digital watermarkings on the user side playout software, because whole client computer control all in the assailant grasps, can not guarantee that the digital watermarking function is not bypassed, and only need content distributed key after the success attack, do not comprise Any user information.For corresponding everyone key of same program, can bring the computation complexity problem, as: 100 user applies the service of same high definition program, then need to encrypt same program respectively with 100 keys respectively, need a large amount of computational resource of cost, so need a fast encrypt method, handle this type of problem.
Along with the development of wireless network, Internet, broadband technology and video coding technique etc., some new characteristics have appearred in the digital video content protection:
(1) uses variation
As: except that traditional broadcast service, also have application such as the download of high definition program, IPTV, streaming media service and video file safe storage.These requirements of using content-encrypt may have nothing in common with each other.For example: allow nonregistered user to watch the program of image quality decrease; Up-to-date program is worth big than expired program, but nonregistered user can not watch fully, and the key space of content-encrypt is big.Along with popularizing of hand-held video devices, the individual video file needs safety to preserve, and this computational load that requires cryptographic operation to bring can be stood by people.In addition, there is heterogeneous network environment at present, as: radio network, Internet and wireless network etc., there are the following problems in traditional TS (transport stream) encryption: the IP transmission package of encryption is converted to broadcast transmission need experience deciphering, assembling, packing and encryption again, and this will cause safety problem.So it is necessary needing an encryption method that has nothing to do with transport layer.
(2) interoperability issue of digital publishing rights system
It is inevitably that various system for numeral copyright management appear in the future market, if lack interoperability between these systems, increases the operation cost of content operator on the one hand, influences the terminal use on the other hand and selects different content operator easily.This claimed video content and concrete application and specific cryptographic algorithm are irrelevant, and the content-encrypt form can flexible configuration and description in the DRM system.
(3) appearance of new video coding standard
The appearance of new video coding standard requires the video content cryptographic operation to consider the characteristics of these codings, and satisfies different application.AVS and H.264 superior compression performance are former standards, can't compare with H.261/2 waiting as MPEG1/2, MPEG-4, these mainly have benefited from prediction in the Intra piece, multi-frame prediction, 1/4 pixel motion is estimated and adaptive entropy coding The Application of Technology such as (CAVLC and CABAC).H.264 middle in addition NAL (network adaptation layer) and Error-Resilience technology provide the technology preparation for video transmission under the network environment.The raising of these coding efficiencies is a cost to sacrifice computation complexity.Satisfy under the prerequisite of different application demand, do not sacrifice the compression performance of coded video sequence, guarantee that simultaneously the video content cryptographic operation no longer consumes too much computational resource.For example: CABAC computation complexity height H.264, when adopting the encryption method in existing selection territory, except needs carry out reverse entropy coding and extraction content-encrypt, also need to carry out again the CABAC entropy coding, it should be noted that the computation complexity of encrypting whole H.264 coded file is well below the computation complexity of entropy coding H.264CABAC.So existing video compression standard that is not suitable for the CABAC entropy coding based on the selection encryption method of key.
(4) variation of content safety pattern
The fail safe of digital video content protection system relates generally to the problem of two aspects: the one, and the vision intelligibility of encrypted video (encryption granularity), the 2nd, the safety problem of encryption system.The former is closely related with the Video Applications scene, special dimension (military and and safety precaution) requires the video of encryption visually impenetrable under the situation of non-deciphering, is visually to allow and can understand but play under the situation of entertainment field (video request program and pay TV etc.) in non-deciphering; The latter comprises safety such as network node transcoding, key and radio receiver.Crack successfully possibility and always exist, guarantee the unique method that radio receiver is not cracked, creating new system update and cracking in the contest of this system between the required time and win exactly.Above-mentioned characteristic, encryption mode must be supported the various vision intelligibilitys of encrypted video, as: can watch impaired picture quality, picture quality to be badly damaged and can understand and image unintelligible etc., the method of encrypted packet load under the common transmission environment is not supported various vision intelligibilitys.In addition, comprise the synchronous code of a large amount of periodicity appearance and fixing information in the coded video sequence, as: frame and strips S lice initial code and picture size etc.Encrypt if the video coding file is seen as binary file, then can cause problems such as ciphertext/plaintext attack.
(5) information leakage problem
Though the protection to Digital Media that the displacement of the code word of the selection encryption method of existing key can be strengthened to a certain extent, it suffers ciphertext/plaintext attack easily, for improving security of system, also needs often to refresh permutation table.The limited problem in code word displacement space of its existence, for the multimedia digital content of low bit rate, even more serious.And, Run and Level are carried out the video coding of entropy coding respectively, as: video encoding standard of new generation H.264 and be about in the domestic AVS video standard adopt based on contextual arithmetic coding, be not suitable for the code word displacement, therefore the selection encryption method of existing key and inapplicable.
(6) computation complexity problem
Although up-to-date video coding technique has obtained the very big progress of relative past, as: under the same video quality prerequisite,, can't offset program and rise to the data increment that high definition resolution is brought although H.264 the code check of coding saves 50%.Reduce the computation complexity problem and remain the major issue that cryptographic operation need be considered.As: the download service of high definition program, require in the DRM system to distribute a key for each user, just for same program, different encryption keys is provided for each user.This will cause using respectively the same program of different secret key encryptions, therefore bring high computation complexity load.Aspect decoding, when adopting existing key to select encryption method, can decipher the video content of encrypting according to this method if will use one of the video decoding chip design of a standard, then peripheral chip need increase an entropy decoder and a deciphering chip again, the video decoding chip of a standard also contains an entropy decoder, its complexity (gate number) accounts for more than 20% of whole decoding chip, the computation complexity when therefore existing key also can increase the deciphering decoding greatly with the selection encryption method.
Summary of the invention
The objective of the invention is at the existing in prior technology defective, a kind of video-encryption device machine video encryption method is provided, both be applicable to the MPEG video compression standard, be applicable to again H.264 and the AVS video compression standard, utilize part or all of time and space structure in the encrypted video sequence content, support various security modes, and be applicable to various cryptographic algorithm, configurable computation complexity and encrypted content, original coding efficiency and compression performance there is not influence, irrelevant with transport layer, can satisfy the needs that different video is used.
To achieve these goals, the invention provides a kind of video-encryption device, this device comprises:
Control module is used for providing encryption required operating parameter according to right expression;
Content extraction module is connected with described control module, and the operating parameter that provides according to control module is provided, and is basic extraction unit with band or frame, and extracting from the coded video sequence that receives needs ciphered data;
Encrypting module is connected with described control module and content extraction module, and the operating parameter that provides according to control module is provided, the data encryption that content extraction module is extracted;
Recovery module is connected with described control module and encrypting module, and the operating parameter that provides according to control module is provided, and ciphered data is put back to extracting position, and output.
Described encrypting module is connected with described recovery module by pseudo-initial code pretreatment module, this puppet initial code pretreatment module is used for enciphered data is carried out pseudo-initial code preliminary treatment, thereby, the pseudo-initial code race problem that can avoid band to cause as the master data extraction unit.
To achieve these goals, the present invention also provides a kind of video encryption method, and this method comprises according to right expression determines operating parameter; From coded video sequence, extract required ciphered data according to operating parameter, to the data encryption that extracts, and the extracting position and the output of ciphered data being put back to described coded video sequence.
Describedly from coded video sequence, extract required ciphered data and can be specially, extract the band of required encryption, pick out filler, extract all or part of content-data of band, perhaps being specially with frame or band is the master data extraction unit, extracts the symbol in symbol index Columbus coding and/or the variable-length encoding.When encrypting, can adopt symmetric key, thereby can guarantee that ciphertext length is consistent with plaintext length, prevents that cryptographic operation from influencing video data compression efficient.
When the band content-data is encrypted, also to carry out pseudo-initial code preliminary treatment, and then ciphered data is put back to the extracting position of described coded video sequence the band content-data of encrypting, carry out the band byte-aligned and handle.
The present invention provides a kind of decryption of video device again, comprising:
Control module is used for providing deciphering required operating parameter according to right expression;
Content extraction module is connected with described control module, and the operating parameter that provides according to control module is provided, and extracts enciphered data from the coded video sequence that receives;
Deciphering module is connected with described control module and content extraction module, and the operating parameter that provides according to control module is provided, the enciphered data deciphering that content extraction module is extracted;
Recovery module is connected with described control module and deciphering module, and the operating parameter that provides according to control module is provided, and decrypted data is put back to extracting position and output.
Wherein, can also comprise pseudo-initial code pretreatment module, described deciphering module can be connected with described content extraction module by pseudo-initial code pretreatment module, and this puppet initial code pretreatment module is used for enciphered data is carried out pseudo-initial code preliminary treatment.
The invention still further relates to a kind of decryption of video method, this method comprises: determine operating parameter according to right expression; From the coded video sequence of encrypting, extract enciphered data according to operating parameter, to the data decryption that extracts, and the extracting position and the output of data decryption being put back to described coded video sequence.
Wherein, the described enciphered data of extracting from the coded video sequence of encrypting is specially: extract and encrypt band, pick out filler, and carry out pseudo-initial code preliminary treatment, or to be specially with frame or band be the master data extraction unit, extracts the symbol in symbol index Columbus coding and/or the variable-length encoding.
The present invention both had been applicable to the MPEG-2 video compression standard, be applicable to again H.264 and the AVS video compression standard, utilize part or all of time and space structure in the encrypted video sequence content, support various security modes, and be applicable to various cryptographic algorithm, configurable computation complexity and encrypted content do not have influence to original coding efficiency and compression performance, can satisfy the needs that different video is used.
Below by drawings and Examples, technical scheme of the present invention is described in further detail.
Description of drawings
Fig. 1 is a video-encryption apparatus structure schematic diagram of the present invention;
Fig. 2 is a video encryption method flow chart of the present invention;
Fig. 3 is video-encryption device one a specific embodiment structural representation of the present invention;
Fig. 4 is video encryption method one a specific embodiment flow chart of the present invention;
Fig. 5 is a decryption of video apparatus structure schematic diagram of the present invention;
Fig. 6 is decryption of video device one a specific embodiment structural representation of the present invention;
Fig. 7 is a decryption of video method flow diagram of the present invention.
Embodiment
As shown in Figure 1, be video-encryption apparatus structure schematic diagram of the present invention, comprise: control module 11, content extraction module 12, encrypting module 13 and recovery module 14.Control module 11 is used for providing encryption required operating parameter according to right expression; Content extraction module 12 is connected with control module 11, and the operating parameter that provides according to control module 11 is provided, and is basic extraction unit with band or frame, and extracting from the coded video sequence that receives needs ciphered data; Encrypting module 13 is connected with control module 11 and content extraction module 12, the data encryption that the operating parameter that is used for providing according to control module 11 extracts content extraction module; Recovery module 14 is connected with control module 11 and encrypting module 13, and the operating parameter that provides according to control module 11 is provided, and ciphered data is put back to extracting position, and output.
Control module 11 can receive DRM information, obtains safe mode parameter, encryption parameter and coding characteristic parameter etc. by the right expression in the DRM information, determines concrete operating parameter according to these parameters, controls the work of each module.This device is integrated into contents extraction, encryption and reduction in the device, is applicable to various cryptographic algorithm, and supports various digital rights management standard as MPEG-2IPMP-X and MPEG-4IPMP, to have good expandability.
As shown in Figure 2, for video encryption method flow chart of the present invention, comprise the steps:
Step 101, determine operating parameter according to the right expression in the digital rights management information;
Step 102, from coded video sequence, extract required ciphered data according to operating parameter;
Step 103, data encryption to extracting;
Step 104, with ciphered data put back to described coded video sequence extracting position and output.
Use in order to adapt to various video, the present invention proposes various security modes, comprising: no safe mode, encrypt video content not, encryption mode is described in rights language; The lower security pattern, be divided into two kinds of situations, first encrypted symbols integral indices Columbus se (symbol v) of encoding, it two is N originally * L bits of encrypting slice data part (all data among the Slice except that the Slice head) among each strips S lice, this operation is limited to the Slice in the I-frame, and N is positive integer and describes in rights language; Middle safe mode, be divided into two kinds of situations, the first is encrypted variable-length encoding ce (v) with symbol integral indices Columbus se (symbol v) of encoding, it two is N originally * L bits of encrypting slice data part among each strips S lice, this operation is limited to the Slice in I-frame and the P-frame, and N is positive integer and describes in rights language; High safe mode is done encryption to all bits of slice data part among each strips S lice, and this operation is limited to all Slice in I-frame, B-frame and the P-frame.
Hence one can see that, and encryption mode of the present invention has two kinds, a kind of be to ce (v) and/or se (symbol is v) encrypted, and another kind is that the part or all of data of slice data among the Slice are encrypted.Symbol is encrypted the computation complexity that can reduce terminal deciphering equipment, is fit to software and realizes, is particularly suitable for wireless mobile apparatus (computational resource is limited, and internal memory is limited, and disposal ability is limited, and capacity of power is limited).Proposing part or all of band encrypts, both being fit to hardware realizes, being fit to software again realizes: at first, can simplify the decryption hardware design complexities of terminal equipment, and the content safety of various encryption granularities can be provided, and for example: when adopting band of the present invention to encrypt, peripheral chip only need increase a band identification circuit and a deciphering chip again, and the complexity of band identification circuit very low (well below the entropy decoder complexity), because it does not need to discern each code word.Second, can realize the content safety of higher level, when H.264 video sequence adopts video compression standard, encrypt the strip portion content and can effectively utilize adaptive entropy coding technical characteristic, promptly destroy the content of front in the band, then the content of back can't normal decoder, even the method that adopts rough power to attack, can decode does not have the clear data of encryption, but picture quality will be badly damaged.The video content that the development of hardware technology at present makes terminal equipment decipher whole band encryption is not a problem, this is for the computation complexity of terminal equipment decoded video content, because the computation complexity of decryption oprerations is well below the computation complexity of decoding.
Encryption can be adopted symmetric key algorithms such as AES or RC5, and symmetric key algorithm can make ciphertext length and expressly length is consistent, thereby can prevent that cryptographic operation from influencing video data compression efficient.
Safe mode, encryption parameter and encoding characteristics parameter are described in DRM information, thereby, can determine operating parameter according to DRM information.Comprise in the operating parameter: extract data area, encryption parameter and encoding characteristics.
In a specific embodiment of the present invention, the safe mode in the DRM information is first kind of situation of middle safe mode, promptly encrypts variable-length encoding ce (v) with symbol integral indices Columbus se (symbol v) of encoding; Encryption parameter is the AES cryptographic algorithm, and key length L is 128bit, among CBC pattern and each the strips S lice slice data part originally the data of N key length be encrypted content; Encoding characteristics is Profile H.264Main, CABAC entropy coding.When encrypting, at first extract frame or band in the video sequence, according to the precedence of bit stream, extract se (v) and ce (symbol v), and preserve and produce symbol data with this; Then, adopt AES cryptographic algorithm (CBC pattern), symbol data is encrypted, every L length bit, i.e. 128 bits, be a basic ciphering unit, the part of curtailment 128 bits is not carried out encryption, the sequencing tissue that the generation of 128 bits occurs in coded video sequence according to each bit; Then, the symbol with after encrypting is put back into the original position in the video sequence successively, exports to other device then, as: streaming media server, ftp server and various memory devices etc.When extracting data, still is the master data extraction unit with the frame with the band for the master data extraction unit, relevant with the video content code check, for mobile video, code check is relatively low, can be the master data extraction unit with the frame, for the high definition program, because data volume is big, can be the master data extraction unit with the band.
In another specific embodiment of the present invention, the safe mode in the DRM information is second kind of situation in the middle safe mode, promptly encrypts the N originally * L bit of slice data part among each strips S lice, and this operation is limited to the Slice in I-frame and the P-frame; Encryption parameter is identical with a last embodiment with encoding characteristics.When encrypting, at first,, extract the Slice of I frame and P frame according to operating parameter; Then, adopt AES cryptographic algorithm (CBC pattern), the Slice that extracts is encrypted, every L length bit, i.e. 128 bits, be a basic ciphering unit, the part of curtailment 128 bits is not carried out encryption, the sequencing tissue that the generation of 128 bits occurs in coded video sequence according to each bit; Then,, implement pseudo-initial code preliminary treatment, then be put back into the original position in the video sequence, export to other device then the primitive of encrypting, as: streaming media server, ftp server and various memory devices etc.
Video encryption method of the present invention is applicable to the various video compression standards that comprise ribbon structure, as MPEG-2, H.264 with AVS etc., and can adopt various cryptographic algorithm by configuration DRM information, configurable encrypted content does not have influence to original coding efficiency and compression performance.
Pseudo-initial code race problem for fear of causing as basic proposition unit with band need carry out pseudo-initial code preliminary treatment to data encrypted.
The pretreated method of pseudo-initial code is specially: each writes in the video sequence before original position with the primitive of encrypting, judge earlier, if this is second least significant bit of a byte, check 22 that this writes before, if these 22 all is ' 0 ', inserted ' 10 ' before this position, this becomes the highest significant position of next byte.
Should handle by the following method during deciphering: when from the strips S lice of an encryption, extracting encrypted content, when whenever reading in a byte, check two bytes and the current byte of reading in previously, if these three bytes constitute bit string ' 0,000 0,000 0,000 0,000 0,000 0010 ', abandon minimum two significance bits of current byte, then the content after this processing is sent the deciphering module deciphering.
As shown in Figure 3, be video-encryption device one specific embodiment structural representation of the present invention, encrypting module 13 is connected with recovery module 14 by pseudo-initial code pretreatment module 15, and this puppet initial code pretreatment module 15 is used for enciphered data is carried out pseudo-initial code preliminary treatment.
Video encryption method of the present invention also can add the pretreated step of pseudo-initial code.As shown in Figure 4, be the another specific embodiment flow chart of video encryption method of the present invention, this method comprises:
Step 201, the safe mode according in the DRM information, encryption parameter and coding characteristic are determined operating parameter;
Step 202, be the master data extraction unit, extract the content that needs are encrypted according to operating parameter with the band;
Step 203, according to operating parameter, the band that extracts is carried out encryption;
Step 204, the band after encrypting is carried out pseudo-initial code preliminary treatment;
Step 205, the pretreated band of pseudo-initial code is put back to original extracting position.
As shown in Figure 5, be decryption of video apparatus structure schematic diagram of the present invention, comprise: control module 21, content extraction module 22, deciphering module 23 and recovery module 24.Control module 21 is used for providing deciphering required operating parameter according to right expression; Content extraction module 22 is connected with control module 21, and the operating parameter that provides according to control module 21 is provided, and is basic extraction unit with band or frame, and extracting from the coded video sequence that receives needs ciphered data; Deciphering module 23 is connected with control module 21 and content extraction module 22, the data decryption that the operating parameter that is used for providing according to control module 21 extracts content extraction module; Recovery module 24 is connected with control module 21 and deciphering module 23, and the operating parameter that provides according to control module 21 is provided, and decrypted data is put back to extracting position, and output.
In a specific embodiment of decryption of video device of the present invention, added pseudo-initial code pretreatment module, as shown in Figure 6, be this specific embodiment structural representation, deciphering module 23 is connected with content extraction module 22 by pseudo-initial code pretreatment module 25, and this puppet initial code pretreatment module 25 is used for enciphered data is carried out pseudo-initial code preliminary treatment.
As shown in Figure 7, be decryption of video method flow diagram of the present invention, comprise:
Step 301, determine operating parameter according to right expression;
Step 302, from the coded video sequence of encrypting, extract enciphered data according to operating parameter;
Step 303, data decryption to extracting;
Step 304, with data decryption put back to described coded video sequence extracting position and output.
When encryption was carried out at strip data, the step of deciphering was as follows: at first, determine operating parameter according to the safe mode in the DRM information, encryption parameter and coding characteristic; Then, extract band, pick out filler according to operating parameter; Then, carry out pseudo-initial code preliminary treatment; At last, be decrypted and data decryption is put back to original position according to operating parameter, the video code flow after obtaining deciphering is also exported to decoding device and is decoded.
When encrypting at meeting when carrying out, the step of deciphering is as follows: at first, determine operating parameter according to the safe mode in the DRM information, encryption parameter and coding characteristic; Then, extract frame or band, and extract se (v) and/or ce (v) symbol, and preserve successively and produce the encrypted symbols data according to the precedence of bit stream according to operating parameter; Then, symbol data is deciphered, the symbol after the deciphering is put back into the video code flow of deciphering after obtaining deciphering on preceding its original position successively, and video code flow is exported to decoding device decode according to operating parameter.
The present invention is applicable to that various is the video compression standard of elementary organization unit with the band, as MPEG-2, H.264 reach the AVS video compression standard, utilize part or all of time and space structure in the encrypted video sequence content, support various security modes, and be applicable to various cryptographic algorithm, configurable computation complexity and encrypted content do not have influence to original coding efficiency and compression performance, can satisfy the needs that different video is used.
Should be noted that at last: above embodiment is only in order to illustrate that technical scheme of the present invention is not intended to limit; Although with reference to preferred embodiment the present invention is had been described in detail, those of ordinary skill in the field should be appreciated that still and can make amendment or the part technical characterictic is equal to replacement the specific embodiment of the present invention; And not breaking away from the spirit of technical solution of the present invention, it all should be encompassed in the middle of the technical scheme scope that the present invention asks for protection.

Claims (12)

1, a kind of video-encryption device is characterized in that, this device comprises:
Control module is used for providing encryption required operating parameter according to right expression;
Content extraction module is connected with described control module, and the operating parameter that provides according to control module is provided, and extracting from the coded video sequence that receives needs ciphered data;
Encrypting module is connected with described control module and content extraction module, and the operating parameter that provides according to control module is provided, the data encryption that content extraction module is extracted;
Recovery module is connected with described control module and encrypting module, and the operating parameter that provides according to control module is provided, and ciphered data is put back to extracting position, and output.
2, device according to claim 1 is characterized in that, described encrypting module is connected with described recovery module by pseudo-initial code pretreatment module, and this puppet initial code pretreatment module is used for enciphered data is carried out pseudo-initial code preliminary treatment.
3, a kind of video encryption method is characterized in that, this method comprises: determine operating parameter according to right expression; From coded video sequence, extract required ciphered data according to operating parameter, to the data encryption that extracts, and the extracting position and the output of ciphered data being put back to described coded video sequence.
4, method according to claim 3 is characterized in that, describedly extracts required ciphered data be specially from coded video sequence, extracts the band of required encryption, picks out filler, extracts all or part of content-data of band.
5, method according to claim 4, it is characterized in that, this method also comprises: the band content-data of encrypting is carried out pseudo-initial code preliminary treatment, and then ciphered data is put back to the extracting position of described coded video sequence, carry out the band byte-aligned and handle.
6, method according to claim 3 is characterized in that, describedly extracts required ciphered data be specially from coded video sequence: with frame or band is the master data extraction unit, the symbol in extracting index Columbus coding and/or the variable-length encoding.
7, according to the arbitrary described method of claim 4-6, it is characterized in that described encryption is specially: adopt symmetric key encryption.
8, a kind of decryption of video device is characterized in that, this device comprises:
Control module is used for providing deciphering required operating parameter according to right expression;
Content extraction module is connected with described control module, and the operating parameter that provides according to control module is provided, and extracts enciphered data from the coded video sequence that receives;
Deciphering module is connected with described control module and content extraction module, and the operating parameter that provides according to control module is provided, the enciphered data deciphering that content extraction module is extracted;
Recovery module is connected with described control module and deciphering module, and the operating parameter that provides according to control module is provided, and decrypted data is put back to extracting position and output.
9, device according to claim 8, it is characterized in that, also comprise pseudo-initial code pretreatment module, described deciphering module is connected with described content extraction module by pseudo-initial code pretreatment module, and this puppet initial code pretreatment module is used for enciphered data is carried out pseudo-initial code preliminary treatment.
10, a kind of decryption of video method is characterized in that, this method comprises: determine operating parameter according to right expression; From the coded video sequence of encrypting, extract enciphered data according to operating parameter, to the data decryption that extracts, and the extracting position and the output of data decryption being put back to described coded video sequence.
11, method according to claim 10, it is characterized in that the described enciphered data of extracting is specially: be the master data extraction unit with the band, carry out pseudo-initial code preliminary treatment from the coded video sequence of encrypting, pick out filler, extract the enciphered data in the band.
12, method according to claim 10, it is characterized in that, the described enciphered data of extracting from the coded video sequence of encrypting is specially: with frame or band is the master data extraction unit, extracts the symbol in symbol index Columbus coding and/or the variable-length encoding.
CNB2006100781586A 2006-04-28 2006-04-28 Video encrypting/deciphering device and encrypting/deciphering method Expired - Fee Related CN100518280C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2006100781586A CN100518280C (en) 2006-04-28 2006-04-28 Video encrypting/deciphering device and encrypting/deciphering method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2006100781586A CN100518280C (en) 2006-04-28 2006-04-28 Video encrypting/deciphering device and encrypting/deciphering method

Publications (2)

Publication Number Publication Date
CN101064813A CN101064813A (en) 2007-10-31
CN100518280C true CN100518280C (en) 2009-07-22

Family

ID=38965483

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2006100781586A Expired - Fee Related CN100518280C (en) 2006-04-28 2006-04-28 Video encrypting/deciphering device and encrypting/deciphering method

Country Status (1)

Country Link
CN (1) CN100518280C (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101800878B (en) * 2010-01-04 2011-11-23 重庆大学 System and method for encrypting and decrypting MPEG (Moving Picture Experts Group) video based on position files
CN102469344B (en) * 2010-11-16 2013-10-09 腾讯科技(深圳)有限公司 Video stream encryption and decryption method, video stream encryption and decryption device, communication terminal and storage terminal
CN102970544A (en) * 2012-12-07 2013-03-13 豪威科技(上海)有限公司 JPEG (Joint Photographic Experts Group) encoding and decoding method and JPEG encoding and decoding system
CN109743471B (en) * 2019-01-11 2021-04-06 北京世纪影源科技有限公司 Image source scanner mainboard and system

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1284818A (en) * 2000-09-29 2001-02-21 清华大学 Full digital conditioned receiving method for video broadcost in cable TV network
CN1682486A (en) * 2002-09-09 2005-10-12 索尼电子有限公司 Content distribution for multiple digital rights management
US20050273629A1 (en) * 2004-06-04 2005-12-08 Vitalsource Technologies System, method and computer program product for providing digital rights management of protected content

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1284818A (en) * 2000-09-29 2001-02-21 清华大学 Full digital conditioned receiving method for video broadcost in cable TV network
CN1682486A (en) * 2002-09-09 2005-10-12 索尼电子有限公司 Content distribution for multiple digital rights management
US20050273629A1 (en) * 2004-06-04 2005-12-08 Vitalsource Technologies System, method and computer program product for providing digital rights management of protected content

Also Published As

Publication number Publication date
CN101064813A (en) 2007-10-31

Similar Documents

Publication Publication Date Title
Bhargava et al. MPEG video encryption algorithms
Shi et al. A fast MPEG video encryption algorithm
CN102804766B (en) Partial encryption using variable block-size parameters
US20020018565A1 (en) Configurable encryption for access control of digital content
CN100426859C (en) Selective encryption algorithm aiming at network video
Zhu et al. Encryption and authentication for scalable multimedia: Current state of the art and challenges
CN101572805B (en) Safe video transmission system and application method thereof
CN101247520B (en) Video data enciphering/deciphering method
US9124771B2 (en) Valid replacement data in encoded video
CN100518280C (en) Video encrypting/deciphering device and encrypting/deciphering method
CN201663660U (en) Data encryption and data decryption system of digital video
KR20050009227A (en) Individual video encryption system and method
Jovanović et al. An efficient mechanism of cryptographic synchronization within selectively encrypted H. 265/HEVC video stream
CN107294946A (en) Data protection method
CN102598690A (en) Encryption procedure and device for an audiovisual data stream
US10489559B2 (en) Method for providing protected multimedia content
Ma et al. Bitstream-oriented protection for the h. 264/scalable video coding (svc)
KR102186480B1 (en) Apparatus for packaging DRM contents and system comprising it and method for packaging DRM contents
Jun et al. A two-way selective encryption algorithm for MPEG video
Varalakshmi et al. An enhanced encryption algorithm for video based on multiple Huffman tables
CN101118580A (en) Digital products content protective system and method
KR20120138940A (en) System and method implementing a selective encryption for mobile terminal
Saleh et al. A low computational method of secure video streaming in mobile system
Potdar et al. Comparison of MPEG video encryption algorithms
JP2010068145A (en) Data transmitting device, data transmitting method, and data transmitting program, and data receiving device, data receiving method, and data receiving program, and data communication system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20090722

Termination date: 20200428