CN101447008B - Digital content network copyright management system and method - Google Patents

Digital content network copyright management system and method Download PDF

Info

Publication number
CN101447008B
CN101447008B CN200810240544XA CN200810240544A CN101447008B CN 101447008 B CN101447008 B CN 101447008B CN 200810240544X A CN200810240544X A CN 200810240544XA CN 200810240544 A CN200810240544 A CN 200810240544A CN 101447008 B CN101447008 B CN 101447008B
Authority
CN
China
Prior art keywords
digital content
user
licence
module
login
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN200810240544XA
Other languages
Chinese (zh)
Other versions
CN101447008A (en
Inventor
李军
刘靖
刘宁
马晨光
吴海博
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Institute of Computing Technology of CAS
Original Assignee
Institute of Computing Technology of CAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Institute of Computing Technology of CAS filed Critical Institute of Computing Technology of CAS
Priority to CN200810240544XA priority Critical patent/CN101447008B/en
Publication of CN101447008A publication Critical patent/CN101447008A/en
Application granted granted Critical
Publication of CN101447008B publication Critical patent/CN101447008B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention provides a digital content network copyright management system, which comprises a digital content management center, a license authorization management server and a terminal, wherein the digital content management center is used for encrypting digital content and storing and managing the encrypted digital content as well as the key thereof; the license authorization management server is used for managing user registration and login, and for managing the generation and issuance of the license of the digital content requested by the user, the right verification of the license and the issuance of the decrypted key of the digital content; and the terminal is used for achieving user registration, providing the user with two login manners including common login and USBKEY login, and achieving digital content acquisition, digital content license acquisition, license right verification, decrypted key acquisition of the digital content and digital content use.

Description

A kind of digital content network copyright management system and method
Technical field
The present invention relates to the copyright protection of digital content on the internet, particularly a kind of digital content network copyright management system and method.
Background technology
Along with rapid development of Internet and universal, users carry out the transmission of data, the issue of resource and the download of resource etc. by the internet more and more.It is of common occurrence already to download various digital resources such as music, download movie and television play or download computer software from the Internet.
The demand that the high speed development of internet has no doubt made things convenient for the user that information is obtained has fast also been brought challenge to the copyright protection of various digital resources but then.In daily life, provide the website of unwarranted music sources, movie and television play resource, software resource varied, the user can obtain free pirate resource easily from these websites.And extensively popularizing and using of P2P softwares such as electric donkey (eMule) software further facilitated the diffusion of pirate resource, for copyright protection has been brought bigger difficulty.
Propagating wantonly of interconnected Internet piracy resource is no doubt not high relevant with users' legal consciousness, has some relations but lack corresponding copyright management system with legal digital resource.Though also there is copy-right protection method in the prior art to digital resource; as digital resource being done encryption, being done authentication etc. for the taker that obtains of digital content; but these methods do not realize in a complete copyright management system; though make existing method realize protection, also be not easy to validated user obtaining digital resource through a legal device simultaneously to digital resource.In addition, the owner of digital resource to enlarge its business impact, equally also needs a safe and reliable copyright management system if will issue digital resource on the net safely.
Summary of the invention
The objective of the invention is to overcome the deficiency that lacks a kind of safe and reliable digital content network copyright management system in the prior art, can effectively protect and user's digital content network copyright management system easy to use digital content thereby provide a kind of.
To achieve these goals, the invention provides a kind of digital content network copyright management system, comprise digital content management center, licence empowerment management server and terminal; Wherein,
Encrypt digital content at described digital content management center, and the key of encrypting back digital content and this digital content is stored, managed;
Described licence empowerment management server is used for the registration and the login of leading subscriber, and manages to the checking of the generation of the licence of the digital content that the user asked and granting, license rights and to the granting of digital content decryption key;
Described terminal is used to realize user's registration and login, and after login, realize to the obtaining of the obtaining of digital content, digital content licenses, license rights checking, decrypted digital content key obtain and to the use of digital content; Described terminal (30) comprises that Registering modules (301), common login module (302), USBKEY login module (303), terminal room authentication module (307), USBKEY administration module (306), license request module (304), licence memory module (305) and licence use module (308); Wherein,
Described Registering modules (301) sends registration request from user to described licence empowerment management server (20);
Described license request module (304) is used for the licence of user to licence empowerment management server (20) request digital content, and finishes corresponding payment procedure;
Described common login module (302) provides common login mode to the user, the user is in common login process, it is right that this module generates a pair of key that is used for authentication, and, do not comprise the decrypted digital content key in this licence successfully obtaining licence from licence empowerment management server (20) after the login; Described licence is stored in this locality by described licence memory module (305); Described licence use module (308) is resolved described licence, and is passing through the decruption key of checking back to described licence empowerment management server (20) request digital content, according to the decruption key use digital content of described digital content;
Described USBKEY login module (303) provides USBKEY login mode to the user, the user is in the USBKEY login process, it is right that described USBKEY administration module (306) reads the key that is stored among the USBKEY, described USBKEY login module (303) utilizes this key subtend licence empowerment management server (20) to do login authentication, and obtaining licence, described licence comprises the decruption key of digital content; Described licence is stored in this locality by described licence memory module (305); Described licence uses module (308) to resolve described licence, and by verifying that the back obtains the decruption key of digital content from be kept at local licence, uses digital content according to the decruption key of described digital content;
Described terminal room authentication module (307) is used to realize the authentication between the user.
In the technique scheme, described digital content management center comprises that content key generates and content-encrypt module and content information memory module; Wherein,
Described content key generates and the content-encrypt module generates key for each digital content that will propagate in network, and with key digital content is encrypted;
The digital content after the encryption that described content information memory module generates content key and the content-encrypt module is generated and the key of correspondence are stored.
In the technique scheme, described licence empowerment management server comprises subscriber information management part, license information administrative section and Authority Verification part; Wherein,
Described subscriber information management partly is used to realize user's registration and login, and the user is registered the user account that generated of back manages;
Described license information administrative section is used for generating according to user's request the licence of correlated digital content, and the licence that is generated is carried out distribution ﹠ management;
Described Authority Verification is used for partly whether the user is had the authority of use encrypting the back digital content to be verified, and at the decruption key that is proved to be successful the after discharge digital content.
In the technique scheme, described subscriber information management partly comprises registration login process module and user account management module; Wherein,
Whether successful described registration login process module is used for the registration or the login process of process user, send registration or login message according to result to the user;
Described nusrmgr.cpl module manages the account who is registered to each user in the described digital content network copyright management system.
In the technique scheme, described license information administrative section comprises licence generation module, license issuance module and license management module; Wherein,
Described licence generation module is used for generating corresponding licence according to the information of digital content and user's authority requirement;
Described license issuance module is used for whether accessing licence to the user to be judged, and the license information that described licence generation module is generated sends to the user that can access licence;
Described license management module is stored, is managed user's licence.
In the technique scheme, described Authority Verification partly comprises Authority Verification module and key granting module; Wherein,
Described Authority Verification module is used for after the decruption key request of receiving the user, and whether the checking user has the power of request decruption key;
Described key is provided module and is used for sending decruption key to the user, and the authority in the licence is done corresponding processing.
The present invention also provide a kind of according to described digital content network copyright management system to the method that the network copyright of digital content manages, comprising:
Step 1), user login on terminal;
Step 2), the information of the digital content of user after according to the encryption of being obtained and own desired user right are to the licence of described this digital content of licence empowerment management server requests;
Step 3), described licence empowerment management server generate licence, and described licence comprises the sign and the user right of user name, digital content at least;
The user account of step 4), inquiring user when the granting of satisfying licence when the state in the described user account requires, is given the user with described license issuance;
Step 5), user are before the digital content of using after encrypting, parsing is from the resulting licence of licence empowerment management server, according to analysis result the user right in the licence is verified, after being proved to be successful, obtained decruption key, the digital content behind the enabling decryption of encrypted.
In the technique scheme, in described step 1), the user logins with common login mode, or logins with the USBKEY login mode.
In the technique scheme, when the user adopted the login of USBKEY login mode, described licence also comprised the decruption key of the digital content after the encryption of being asked
In the technique scheme, when the user logined in normal way, described step 5) comprised:
Step 5-1-1), the user is kept at the licence of being received in the local license file;
Step 5-1-2), resolve local license file, the licence of the digital content that whether will use to some extent in the local license file is checked;
Step 5-1-3), check successfully after, to licence empowerment management server requests decruption key;
Step 5-1-4), described licence empowerment management server is searched the licence of self preserving according to request, and the user right in the described licence is verified;
Step 5-1-5), described licence empowerment management server after being proved to be successful, send decruption key to the user, simultaneously in the licence of self, reduce user right.
In the technique scheme, at described step 5-1-4) in, described user right in the described licence is verified comprises: the user right of being preserved in the local license file with user terminal compares with the user right that the licence in licence empowerment management server is preserved, and the authority unanimity then is proved to be successful.
In the technique scheme, when the user logined in the USBKEY mode, described step 5) comprised:
Step 5-2-1), the user is kept at the licence of being received in the local license file, simultaneously also with the user right encrypting storing in the described licence in described USBKEY;
Step 5-2-2), resolve local license file, parsing user right that obtains and the user right that is kept among the described USBKEY are verified comparison;
Step 5-2-3), be proved to be successful after, read decruption key from local license file, and reduce in the local license file user right be kept at user right among the USBKEY.
In the technique scheme, described user right comprises watches number of times or viewing time to a digital content.
In the technique scheme, digital content after the described encryption realizes ciphering process by the digital content management center, information relevant with digital content after encrypting and decruption key are kept in the described digital content management in the heart, and the digital content after the encryption is by Web publishing.
In the technique scheme, the information relevant with digital content after encrypting comprises title, type, the price of described digital content.
In the technique scheme, the user registers on licence empowerment management server by terminal before login; In registration process, licence empowerment management server writes relevant information according to the log-on message of user input in subscriber's meter, and offers corresponding user account for the user.
The invention has the advantages that:
1, digital content network copyright management system of the present invention is controlled the use of encrypting the back digital content by the mode that sends licence to the user; the user has only by just obtaining having realized the protection to digital content after encrypting well to encrypting the key that the back digital content is decrypted after the licence mandate.
2, digital content network copyright management system of the present invention provides two kinds of different login modes to the user, and the user can select wherein a kind of mode to login according to actual conditions, has made things convenient for the user, has enlarged the usable range of system.
3, under digital content network copyright management system of the present invention, the digital content of providing through legal means can arbitrarily spread on network, illegal user then can not login system, has just prevented that also the disabled user from random issuing damaging digital content.
4, digital content network copyright management system of the present invention is before providing decruption key, the license rights that user side can be preserved is verified with secret license rights of preserving, only after being proved to be successful, could provide key, prevent that the user from revising privately to license rights and cause damage for digital content publisher.
Description of drawings
Fig. 1 is the system assumption diagram of digital content network copyright management system of the present invention;
The process flow diagram of the method that Fig. 2 manages the network copyright of digital content for the digital content network copyright management system that adopts Fig. 1.
The drawing explanation
10 digital content management centers, 101 content keys generate and the content-encrypt module
102 content information memory modules, 20 licence empowerment management servers
201 registration login process modules, 202 licence generation modules
203 license issuance modules, 204 user account management module
205 license management modules, 206 Authority Verification modules
207 keys are provided module 30 terminals
301 Registering modules, 302 common login module
303 USBKEY login module, 304 license request modules
305 licence memory modules, 306 USBKEY administration modules
307 terminal room authentication modules, 308 licences use module
Embodiment
The present invention will be further described below in conjunction with the drawings and specific embodiments.
In actual life, exist a kind of so general scene: after a movie distributor takes a film, in order to obtain bigger commercial interest, he not only issues this film by modes such as cinema screening, publication video discs, also wish to propagate this film, make the network user watch film easily in paid mode by the internet.When propagating film by the internet, should guarantee user's convenience on the one hand, also to note the security of film on the other hand, prevent by the internet issue film by other people illegally obtain, piracy.In order to address the above problem, can adopt the digital content network copyright management system among the present invention that the network copyright of this film is managed.
Understand for convenience, the architecture of digital content network copyright management system of the present invention is described below in conjunction with Fig. 1.In a kind of preferred implementation, digital content network copyright management system of the present invention comprises: digital content management center 10, licence empowerment management server 20 and terminal 30.Wherein, the 10 pairs of digital contents that need propagate on network in digital content management center are encrypted, and the association key of encrypting the back digital content is managed.Licence empowerment management server 20 is used for the registration and the login of process user, provides the licence of digital content, the decruption key of digital content to the user, will verify the authority of user license in addition.Terminal 30 provides the function of registration and login digital content network copyright management system to the user, the user can obtain the digital content resource by terminal 30, obtain the licence of digital content, the checking license rights is obtained the decrypted digital content key and is used digital content.Below the various piece in the digital content network copyright management system is done further division according to function.
Digital content management center 10 comprises that content key generates and content-encrypt module 101, and content information memory module 102.Content key wherein generates and content-encrypt module 101 generates key for each digital content that will propagate in network, and with key digital content is encrypted.Content information memory module 102 is then stored digital content after the encryption that content key generates and content-encrypt module 101 is generated and corresponding key.
Licence empowerment management server 20 comprises registration login process module 201, licence generation module 202, license issuance module 203, user account management module 204, license management module 205, Authority Verification module 206 and key granting module 207.Whether successful wherein, registration login process module 201 is used for the registration or the login process of process user, send registration or login message according to result to the user.Licence generation module 202 is used for the authority requirement according to the information of digital content and user, generates corresponding licence.License issuance module 203 is used for whether accessing licence to the user to be judged, and the license information that licence generation module 202 is generated sends to the user that can access licence.Nusrmgr.cpl module 204 manages each user's account.License management module 205 is used for each user's licence is stored, managed.Authority Verification module 206 is used for after the decruption key request of receiving the user, and whether the checking user has the authority of request decruption key.Key is provided module 207 and is used for sending decruption key to the user, and license rights is done corresponding processing.
Terminal 30 comprises that Registering modules 301, common login module 302, USBKEY login module 303, license request module 304, licence memory module 305, USBKEY administration module 306, terminal room authentication module 307 and licence use module 308.Wherein, Registering modules 301 sends registration request from user to licence empowerment management server 20.Common login module 302 provides a kind of common login mode to the user, the user is in common login process, it is right that this module generates a pair of key that is used for authentication, and obtaining the certificate that is used for authentication in successful login back from licence empowerment management server 20.USBKEY login module 303 provides a kind of USBKEY login mode to the user, the user is in the USBKEY login process, the key subtend licence empowerment management server 20 that this module utilization is stored among the USBKEY is done login authentication, and obtains the certificate that is used for authentication.License request module 304 is used for the licence of user to licence empowerment management server 20 request digital contents, and finishes corresponding payment procedure.The license information that licence memory module 305 is used for obtaining from 20 requests of licence empowerment management server is stored as local license file.USBKEY administration module 306 is used for the user is managed with associative operation and information after the USBKEY pattern login.Terminal room authentication module 307 is used to realize the authentication between the user.Licence uses module 308 to be used for using digital content according to the decruption key of digital content.
On the basis of above-mentioned digital content network copyright management system, can realize network copyright management to the film of being mentioned in the previous examples.Be illustrated below with reference to 2 pairs of concrete management processes of accompanying drawing.
The movie distributor at first can adopt the content key in the digital content management center 10 to generate and the content of 101 pairs of films of content-encrypt module is encrypted, in ciphering process, it is right at first to generate the encrypting and decrypting key, utilizes encryption key wherein that substance film is encrypted.It should be noted that the key that is generated to having uniqueness, it is right promptly should to have a specific encrypting and decrypting key for a film.In ciphering process, can adopt encipher-decipher method of the prior art, all can as DES, 3DES, AES encipher-decipher method.
Film is after encryption, the movie distributor need set relevant information for this film, as the title of film, type, price etc., then these information are stored in content information memory module 102 in the digital content management center 10 with aforesaid decruption key.These information will be in subsequent operation as the information source of licence.Film after the encryption can be published on the network, and the user can arbitrarily download.Because movie contents is encrypted, therefore, also can't watch even unauthorized user has obtained movie contents.This has just protected the copyright of film well.
After downloading the movie contents after obtaining encrypting on users from networks,, then can become its legal registered user to digital content network copyright management system registration of the present invention if need watch this film.In registration process, the user inputs log-on messages such as user name, login password on the Registering modules 301 of terminal 30, generate register requirement by this module and send to registration login process module 201 in the licence empowerment management server 20, after registration login process module 201 is received registration request from user, in subscriber's meter, write this user's information, simultaneously offer a new user account at this user, in user account, store the information of the amount of money that this user fills by user account management module 204.
The user just can be by terminal 30 login digital content network copyright management systems after finishing registration.From the description of aforementioned logarithm word content network copyright management system as can be seen, digital content network copyright management system of the present invention can provide two kinds of login modes, and one is common login mode, and two is the USBKEY login mode.In general, when if the user need use digital content under presence, can adopt common login mode login digital content network copyright management system, and the user can adopt USBKEY login mode login digital content network copyright management system need also can use digital content under off-line state the time.Below user's login digital content network copyright management system and then realize legal the watching of film is illustrated under these two kinds of login modes how just.
If the user logins digital content network copyright management system by terminal 30 with common login mode, then in login process, it is right that common login module 302 in the terminal 30 can generate a pair of public and private key, utilize this right, can realize the authentication between other users on user and licence empowerment management server 20 or the network public and private key.The authentication of user on licence empowerment management server 20 is the prerequisite that the user logins digital content network copyright management system, adopted public key encryption algorithm in the authentication process.Specifically, user terminal and licence empowerment management server 20 respectively have a pair of self PKI and private key, each bar message that user terminal and server both sides send is mutually all used the other side's public key encryption, and comprise the random number of new generation and the digital signature of this message in every message, in order to the freshness of assurance authentication and the data integrity of transmission course, the take over party verifies random number and digital signature, thereby realizes described authentication process with after self private key decrypt.After the authentication success, utilize user ID and the password preserved in user ID in the logging request and password and the user account to compare, if their unanimities, then login successfully, the user can obtain one from licence empowerment management server 20 and be used to represent oneself to be the certificate of validated user, this certificate is to obtain after the PKI of user terminal is done digital signature with licence empowerment management server 20 in the present embodiment, will use this certificate during authentication between follow-up user.
The user can carry out operations such as data transmission with other users in this system after successfully logining digital content network copyright management system.In the explanation in front, supposed the movie contents after the user has obtained encrypting, but the movie contents after if the user does not also obtain encrypting this moment, or the user expects other digital content, then can obtain the digital content that the user wants from other users in the digital content network copyright management system.Realize said process, need between the user, finish bidirectional identity authentication, determine that other users are validated users, and allow other users believe that also this user is validated user.Authentication between the user is finished by authentication module 307 between the terminal on the terminal 30.In verification process, the certificate that obtains from licence empowerment management server 20 during with the PKI of two terminals and login is intercoursed and is verified, notes the other side's PKI, finishes verification process then.
After the movie contents of user after obtaining encrypting,, will obtain the decruption key of this movie contents, and will obtain decruption key, need to obtain earlier the licence of this film if need watch the particular content of film.The user forms license request message by the license request module 304 in the terminal 30 with the information such as authority that ID, the user of this film wants to obtain, and this message is sent to licence empowerment management server 20.In the present invention, related authority is meant the rights of using of user to a certain digital resource, is a film as digital resource, then the user can select to watch once or several times, in the certain hour scope, arbitrarily watch or can watch all the life etc.Will obtain the difference of authority according to different users, the user can ask dissimilar licences, and the price of these licences is also inequality certainly.Licence generation module 202 in the licence empowerment management server 20 is after receiving license request message, be kept at relevant information in the content information memory module 102 according to this film, as the title of film, type, price etc., and the needed authority information of user generates corresponding licence and storage in the license request message, by 205 unifications of license management module licence is managed afterwards.When adopting the common mode login, the decruption key that does not comprise digital content in the licence that is generated, but comprise terminal user name, digital content ID, user right etc., also comprise user's logging status, promptly the user logins with common login mode login or in the USBKEY mode.
Licence sends to user terminal by license issuance module 203 after generating.But whether license issuance module 203 need have the right to get a license to examine before granting to the user.Specifically, whether license issuance module 203 inquiring user accounts judge there being sufficient capital to pay this licence among this user's the account.If insufficient funds then point out the user to supplement with money, if fund can satisfy the demands, then license issuance module 203 sends to user terminal after the licence that is generated is encrypted.
The user utilizes the licence memory module 305 in the terminal 30 to write local license file after receiving licence.During movie contents after the user need use encryption, use the license file of 308 pairs of this locality of module to resolve by licence, in resolving, to whether there being the licence of this movie contents to check in the local license file, verify but need not whether the authority in the licence be modified.Owing to adopt the licence that common login mode obtained not comprise decruption key, therefore, licence uses module 308 to ask decruption keys to licence empowerment management server 20.Comprise the existing authority that ID and local license file write down of terminal user name, film etc. in the message of request decruption key.
After the request that licence empowerment management server 20 is received decruption key, by the licence of license management module 205 according to the information searching correspondence in the decruption key request, if find licence then by Authority Verification module 206 checking users authority (as whether also having enough number of times of watching) whether in addition, with the ciphertext transmission mode decruption key of digital content is sent to user terminal safely if there is key then to provide module 207, simultaneously, license management module 205 reduces the authority of corresponding licence at server end, subtracts 1 as watching number of times.The checking of the 206 pairs of user rights of Authority Verification module in the licence empowerment management server 20 can prevent that the user from artificially revising the authority in the local license file and the robber that produces sees phenomenon in end, make that the user promptly allows to revise, also can be found when Authority Verification, the terminal user finally can't obtain decruption key.
The terminal user also does corresponding minimizing with licence empowerment management server 20 like that with the part of the authority in the local license file after receiving decruption key, if the authority of local license file makes zero after minimizing, and then also will be with whole license file deletion.The terminal user obtains decruption key and can the movie contents after encrypting be decrypted, to realize normally watching film.
More than be after the user is logined digital content network copyright management system in normal way, how realize the explanation of being done of watching the movie contents after encrypting.After below the user being logined digital content network copyright management system in the USBKEY mode, how to watch the movie contents after the encryption to describe.
When adopting the USBKEY mode to login, need insert preprepared USBKEY in terminal 30, it is right to have in advance a pair of public and private key that writes for the terminal user in USBKEY, and this public and private key is to invisible to the terminal user owing to the encryption storage characteristics of USBKEY.
The user logins by the USBKEY login module 303 in the terminal 30, in login process, it is right to read the public and private key that writes in advance by USBKEY administration module 306 from USBKEY, utilize this to PKI and private key, the terminal user sends logging request to licence empowerment management server 20, finishes authentication.The processing of 20 pairs of user's logging request of licence empowerment management server and the user processing procedure when common login mode is similar, therefore, and not repeat specification herein.
The user is after login, in order to realize need obtaining licence equally to encrypting watching of back movie contents.Similar when the obtain manner of licence and common login mode, also to send license request, also want the licence generation module 202 in the licence empowerment management server 20 to generate licence, also will before license issuance, whether have the right of obtaining licence and verify by 203 couples of users of license issuance module according to the relevant information of request film and the information in the license request.Unique difference is, also includes decruption key in the licence that is obtained when adopting the USBKEY login mode, and licence empowerment management server 20 has sent to the terminal user with decruption key in the lump when issuing license.
After the user obtains licence by terminal 30, all the elements of licence are all write local license file, also the part of the user right in the licence is write USBKEY with cipher mode simultaneously.Because the user right that writes behind the USBKEY is invisible to the terminal user, the user can not make amendment to the user right that writes behind the USBKEY, therefore can be realized the checking of user right by it, prevents that the user from artificially revising user right.The user is after obtaining licence, owing to watch the required decruption key of movie contents after the encryption to be kept at this locality, and the checking of user right also can realize in this locality, no longer need the participation of licence empowerment management server 2, so the movie contents of user after can under off-line state, watching encryption.
When the user need watch movie contents after the encryption, local license file is resolved, verify comparison with resolving the resulting user right in back with the user right that is kept among the USBKEY, if both unanimities then are proved to be successful.After being proved to be successful, the terminal user reads out decruption key from local license file.The decruption key that is read can't directly be decrypted the movie contents after encrypting.Because when decruption key is provided module 207 transmissions by key, adopted the PKI of user terminal that the decruption key of encrypting the back digital content is encrypted, therefore, before decruption key that use to encrypt the back digital content, to do decryption oprerations from the private key that USBKEY reads self earlier, just can obtain the decruption key that the movie contents after encrypting is decrypted.The terminal user reduces the corresponding authority in the licence after getting decruption key, and the authority after will reducing writes among the USBKEY.Meanwhile, the terminal user also will upgrade the authority in the local license file, when authority is reduced to when not having, and the deletion license file.After obtaining decruption key by aforesaid operations, just can view and admire the movie contents after encrypting.
In the above description, be distributed as example, how digital content network copyright management system of the present invention realized the network copyright management of this film illustrates with the network of film.Those of ordinary skill in the art should understand, and this system is not limited to the network distribution of film, can realize the management and the protection of the network copyright by system of the present invention as various forms of digital contents such as TV play, music, software, electronics papers.
It should be noted last that above embodiment is only unrestricted in order to technical scheme of the present invention to be described.Although the present invention is had been described in detail with reference to embodiment, those of ordinary skill in the art is to be understood that, technical scheme of the present invention is made amendment or is equal to replacement, do not break away from the spirit and scope of technical solution of the present invention, it all should be encompassed in the middle of the claim scope of the present invention.

Claims (16)

1. a digital content network copyright management system is characterized in that, comprises digital content management center (10), licence empowerment management server (20) and terminal (30); Wherein,
Encrypt digital content at described digital content management center (10), and the key of encrypting back digital content and this digital content is stored, managed;
Described licence empowerment management server (20) is used for the registration and the login of leading subscriber, and manages to the checking of the generation of the licence of the digital content that the user asked and granting, license rights and to the granting of digital content decryption key;
Described terminal (30) is used to realize user's registration and login, and after login, realize to the obtaining of the obtaining of digital content, digital content licenses, license rights checking, decrypted digital content key obtain and to the use of digital content; Described terminal (30) comprises that Registering modules (301), common login module (302), USBKEY login module (303), terminal room authentication module (307), USBKEY administration module (306), license request module (304), licence memory module (305) and licence use module (308); Wherein,
Described Registering modules (301) sends registration request from user to described licence empowerment management server (20);
Described license request module (304) is used for the licence of user to licence empowerment management server (20) request digital content, and finishes corresponding payment procedure;
Described common login module (302) provides common login mode to the user, the user is in common login process, it is right that this module generates a pair of key that is used for authentication, and, do not comprise the decrypted digital content key in this licence successfully obtaining licence from licence empowerment management server (20) after the login; Described licence is stored in this locality by described licence memory module (305); Described licence use module (308) is resolved described licence, and is passing through the decruption key of checking back to described licence empowerment management server (20) request digital content, according to the decruption key use digital content of described digital content;
Described USBKEY login module (303) provides USBKEY login mode to the user, the user is in the USBKEY login process, it is right that described USBKEY administration module (306) reads the key that is stored among the USBKEY, described USBKEY login module (303) utilizes this key subtend licence empowerment management server (20) to do login authentication, and obtaining licence, described licence comprises the decruption key of digital content; Described licence is stored in this locality by described licence memory module (305); Described licence uses module (308) to resolve described licence, and by verifying that the back obtains the decruption key of digital content from be kept at local licence, uses digital content according to the decruption key of described digital content;
Described terminal room authentication module (307) is used to realize the authentication between the user.
2. digital content network copyright management system according to claim 1 is characterized in that, described digital content management center (10) comprises that content key generates and content-encrypt module (101) and content information memory module (102); Wherein,
Described content key generates and content-encrypt module (101) generates key for each digital content that will propagate in network, and with key digital content is encrypted;
The digital content after the encryption that described content information memory module (102) generates content key and content-encrypt module (101) is generated and the key of correspondence are stored.
3. digital content network copyright management system according to claim 1 is characterized in that, described licence empowerment management server (20) comprises subscriber information management part, license information administrative section and Authority Verification part; Wherein,
Described subscriber information management partly is used to realize user's registration and login, and the user is registered the user account that generated of back manages;
Described license information administrative section is used for generating according to user's request the licence of correlated digital content, and the licence that is generated is carried out distribution ﹠ management;
Described Authority Verification is used for partly whether the user is had the authority of use encrypting the back digital content to be verified, and at the decruption key that is proved to be successful the after discharge digital content.
4. digital content network copyright management system according to claim 3 is characterized in that, described subscriber information management partly comprises registration login process module (201) and user account management module (204); Wherein,
Whether successful described registration login process module (201) is used for the registration or the login process of process user, send registration or login message according to result to the user;
Described nusrmgr.cpl module (204) manages the account who is registered to each user in the described digital content network copyright management system.
5. digital content network copyright management system according to claim 3 is characterized in that, described license information administrative section comprises licence generation module (202), license issuance module (203) and license management module (205); Wherein,
Described licence generation module (202) is used for generating corresponding licence according to the information of digital content and user's authority requirement;
Described license issuance module (203) is used for whether accessing licence to the user to be judged, and the license information that described licence generation module (202) is generated sends to the user that can access licence;
Described license management module (205) is stored, is managed user's licence.
6. digital content network copyright management system according to claim 3 is characterized in that, described Authority Verification partly comprises Authority Verification module (206) and key granting module (207); Wherein,
Described Authority Verification module (206) is used for after the decruption key request of receiving the user, and whether the checking user has the power of request decruption key;
Described key is provided module (207) and is used for sending decruption key to the user, and the authority in the licence is done corresponding processing.
One kind according to the described digital content network copyright management system of one of claim 1-6 to the method that the network copyright of digital content manages, comprising:
Step 1), user go up login in terminal (30);
Step 2), the information of the digital content of user after according to the encryption of being obtained and own desired user right are asked the licence of this digital content to described licence empowerment management server (20);
Step 3), described licence empowerment management server (20) generate licence, and described licence comprises the sign and the user right of user name, digital content at least;
The user account of step 4), inquiring user when the granting of satisfying licence when the state in the described user account requires, is given the user with described license issuance;
Step 5), user are before the digital content of using after encrypting, parsing is from the resulting licence of licence empowerment management server (20), according to analysis result the user right in the licence is verified, after being proved to be successful, obtained decruption key, the digital content behind the enabling decryption of encrypted.
8. the network copyright management method of digital content according to claim 7 is characterized in that, in described step 1), the user logins with common login mode, or logins with the USBKEY login mode.
9. the network copyright management method of digital content according to claim 8 is characterized in that, when the user adopted the login of USBKEY login mode, described licence also comprised the decruption key of the digital content after the encryption of being asked
10. the network copyright management method of digital content according to claim 9 is characterized in that, when the user logined in normal way, described step 5) comprised:
Step 5-1-1), the user is kept at the licence of being received in the local license file;
Step 5-1-2), resolve local license file, the licence of the digital content that whether will use to some extent in the local license file is checked;
Step 5-1-3), check successfully after, to licence empowerment management server (20) request decruption key;
Step 5-1-4), described licence empowerment management server (20) is searched the licence of self preserving according to request, and the user right in the described licence is verified;
Step 5-1-5), described licence empowerment management server (20) after being proved to be successful, send decruption key to the user, simultaneously in the licence of self, reduce user right.
11. the network copyright management method of digital content according to claim 10, it is characterized in that, at described step 5-1-4) in, described user right in the described licence is verified comprises: the user right of being preserved in the local license file with user terminal compares with the user right that the licence in licence empowerment management server (20) is preserved, and the authority unanimity then is proved to be successful.
12. the network copyright management method of digital content according to claim 9 is characterized in that, when the user logined in the USBKEY mode, described step 5) comprised:
Step 5-2-1), the user is kept at the licence of being received in the local license file, simultaneously also with the user right encrypting storing in the described licence in described USBKEY;
Step 5-2-2), resolve local license file, parsing user right that obtains and the user right that is kept among the described USBKEY are verified comparison;
Step 5-2-3), be proved to be successful after, read decruption key from local license file, and reduce in the local license file user right be kept at user right among the USBKEY.
13. the network copyright management method of digital content according to claim 7 is characterized in that, described user right comprises watches number of times or viewing time to a digital content.
14. the network copyright management method of digital content according to claim 7, it is characterized in that, digital content after the described encryption realizes ciphering process by digital content management center (10), information and the decruption key relevant with digital content after encrypting are kept in the described digital content management center (10), and the digital content after the encryption is by Web publishing.
15. the network copyright management method of digital content according to claim 14 is characterized in that, the information relevant with digital content after encrypting comprises title, type, the price of described digital content.
16. the network copyright management method of digital content according to claim 7 is characterized in that, the user goes up registration by terminal (30) at licence empowerment management server (20) before login; In registration process, licence empowerment management server (20) writes relevant information according to the log-on message of user input in subscriber's meter, and offers corresponding user account for the user.
CN200810240544XA 2008-12-23 2008-12-23 Digital content network copyright management system and method Active CN101447008B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200810240544XA CN101447008B (en) 2008-12-23 2008-12-23 Digital content network copyright management system and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200810240544XA CN101447008B (en) 2008-12-23 2008-12-23 Digital content network copyright management system and method

Publications (2)

Publication Number Publication Date
CN101447008A CN101447008A (en) 2009-06-03
CN101447008B true CN101447008B (en) 2011-08-17

Family

ID=40742684

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200810240544XA Active CN101447008B (en) 2008-12-23 2008-12-23 Digital content network copyright management system and method

Country Status (1)

Country Link
CN (1) CN101447008B (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111757152A (en) * 2020-06-22 2020-10-09 腾讯科技(深圳)有限公司 Multimedia content projection method and device and electronic equipment

Families Citing this family (29)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101957893B (en) * 2009-07-15 2013-02-20 精品科技股份有限公司 File permission management system
CN101989988A (en) * 2010-11-05 2011-03-23 上海传知信息科技发展有限公司 Copyright protection system and method of ebook online reading
CN102025507B (en) * 2010-12-24 2013-05-15 暨南大学 Digital copyright management method for protecting digital content consumer privacy
EP2595077B1 (en) * 2011-11-16 2016-04-20 Alcatel Lucent Method and system for digital contents lending
CN103379365B (en) * 2012-04-27 2017-08-08 日立(中国)研究开发有限公司 Content acquisition unit and method, content and multimedia distribution system
CN102693386A (en) * 2012-05-28 2012-09-26 北京网尚数字电影院线有限公司 Method and system for encryption protection of video files
CN102724043B (en) * 2012-06-21 2015-04-22 哈尔滨国源火电节能技术有限公司 Single user authoring method for digital rights management
CN103873233B (en) * 2014-03-19 2017-10-20 国家广播电影电视总局电影数字节目管理中心 A kind of digital movie cryptographic key distribution method based on managing web, device and system
CN105611318A (en) * 2014-11-25 2016-05-25 上海天脉聚源文化传媒有限公司 Method and system for video encryption playing
CN104504323B (en) * 2014-12-16 2017-06-06 浪潮集团有限公司 A kind of IPMI management systems with encryption certification
US10218817B2 (en) * 2015-04-28 2019-02-26 Microsoft Technology Licensing, Llc Digital rights list for device groups
CN104853242A (en) * 2015-05-13 2015-08-19 青岛海信电器股份有限公司 Descrambling method and apparatus of digital television set
CN105046112B (en) * 2015-07-10 2017-10-17 安徽新华传媒股份有限公司 A kind of digital literary property protection method
CN105005715A (en) * 2015-07-10 2015-10-28 安徽新华传媒股份有限公司 Digital right authorization management method
CN105163143B (en) * 2015-07-17 2019-01-18 华数传媒网络有限公司 A kind of method of online request and the online film operation system and broadcasting of downloading working days film
CN105142143A (en) * 2015-10-22 2015-12-09 上海斐讯数据通信技术有限公司 Verification method and system thereof
CN105787301A (en) * 2016-02-24 2016-07-20 温喆 Software protection method
CN106446609B (en) * 2016-08-31 2018-06-29 南阳理工学院 A kind of copy-right protection method of Network Environment
CN106454436A (en) * 2016-10-28 2017-02-22 上海文广科技(集团)有限公司 Film playing information feedback system and method for second-level film theater chain
CN108268755A (en) * 2016-12-31 2018-07-10 北京版银科技有限责任公司 The copyright data processing method of original works
CN108268758A (en) * 2016-12-31 2018-07-10 北京版银科技有限责任公司 The generation of copyright authentication mark and application method
CN108268756A (en) * 2016-12-31 2018-07-10 北京版银科技有限责任公司 Copyright and transaction processing system
CN108268754A (en) * 2016-12-31 2018-07-10 北京版银科技有限责任公司 The generation method of works certification mark
CN107171785A (en) * 2017-05-18 2017-09-15 电子科技大学 A kind of digital copyright management method based on block chain technology
CN107204848B (en) * 2017-07-25 2018-08-28 北京深思数盾科技股份有限公司 A kind of method managing secret key data and the device for managing key data
CN108038355A (en) * 2017-12-14 2018-05-15 安徽新华传媒股份有限公司 IPTV system for numeral copyright management and its method based on Database Systems on-line authentication
CN109345223A (en) * 2018-02-13 2019-02-15 李茗 Block chain copyrighted digital content restoration methods and block chain operating platform
CN111031360A (en) * 2018-10-09 2020-04-17 中兴通讯股份有限公司 Distribution method and device, equipment and storage medium
CN111641852B (en) * 2020-05-15 2023-05-12 上海幕革科技有限公司 Method and system for secondarily packaging film content

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111757152A (en) * 2020-06-22 2020-10-09 腾讯科技(深圳)有限公司 Multimedia content projection method and device and electronic equipment
CN111757152B (en) * 2020-06-22 2021-12-14 腾讯科技(深圳)有限公司 Multimedia content projection method and device and electronic equipment

Also Published As

Publication number Publication date
CN101447008A (en) 2009-06-03

Similar Documents

Publication Publication Date Title
CN101447008B (en) Digital content network copyright management system and method
USRE47313E1 (en) Securing digital content system and method
US8539233B2 (en) Binding content licenses to portable storage devices
EP1942430B1 (en) Token Passing Technique for Media Playback Devices
US7725404B2 (en) Secure electronic commerce using mutating identifiers
US7376624B2 (en) Secure communication and real-time watermarking using mutating identifiers
EP2770455B1 (en) Method and system to exercise geographic restrictions over the distribution of content via a network
US20030140257A1 (en) Encryption, authentication, and key management for multimedia content pre-encryption
US20090193249A1 (en) Privacy-preserving information distribution system
US20100088236A1 (en) Secure software service systems and methods
US8856942B2 (en) Privacy-aware content protection system
AU2001269856A1 (en) Methods and systems to distribute content via a network utilizing distributed conditional access agents and secure agents, and to perform digital rights management (drm)
US7802109B2 (en) Trusted system for file distribution
US8347098B2 (en) Media storage structures for storing content, devices for using such structures, systems for distributing such structures
JP2004509399A (en) System for protecting objects distributed over a network
US10574458B2 (en) Media storage structures for storing content, devices for using such structures, systems for distributing such structures
Perlman et al. Privacy-preserving DRM
CN101335754B (en) Method for information verification using remote server
CN115514578B (en) Block chain based data authorization method and device, electronic equipment and storage medium
CN108076352B (en) Video anti-theft method and system
US11928188B1 (en) Apparatus and method for persistent digital rights management
Adams et al. A global PMI for electronic content distribution
Sun et al. A Trust Distributed DRM System Using Smart Cards

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant