CN101447990B - System for realizing download server in IPTV system and method thereof - Google Patents

System for realizing download server in IPTV system and method thereof Download PDF

Info

Publication number
CN101447990B
CN101447990B CN2008101793556A CN200810179355A CN101447990B CN 101447990 B CN101447990 B CN 101447990B CN 2008101793556 A CN2008101793556 A CN 2008101793556A CN 200810179355 A CN200810179355 A CN 200810179355A CN 101447990 B CN101447990 B CN 101447990B
Authority
CN
China
Prior art keywords
request
download
module
authentication
carried out
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN2008101793556A
Other languages
Chinese (zh)
Other versions
CN101447990A (en
Inventor
孔建华
程申梁
陈柏英
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN2008101793556A priority Critical patent/CN101447990B/en
Publication of CN101447990A publication Critical patent/CN101447990A/en
Application granted granted Critical
Publication of CN101447990B publication Critical patent/CN101447990B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Information Transfer Between Computers (AREA)

Abstract

The invention relates to a system for realizing a download server in an IPTV system and a method thereof. The system comprises the download server and a value-added service management system which are connected with each other, and the system also comprises a set-top box which is connected with the download server, wherein, the set-top box is used for sending a download request to the download server and is used for generating a plaintext code and an encrypted code, and the download request carries an authentication code consisting of the plaintext code and the encrypted code; the value-added service management system is used for sending a command request or sending an upload request to the download server after finishing the local uploading of a file; the download server is used for receiving the upload request and the command request sent by the value-added service management system and analyzing and executing the upload request and the command request; and the download server is also used for receiving the download request sent by the set-top box and analyzing and executing the download request. The invention uses the existing IPTV system device to realize the functions of uploading and downloading of the download server and also satisfies the safety requirement.

Description

Realize the system and method for Download Server in the IPTV system
Technical field
The present invention relates to IPTV (Internet Protocol Television, IPTV) value-added service field, realize the system and method for Download Server in the particularly a kind of IPTV system.
Background technology
In the IPTV system, except basic service, more and more abundanter value-added service adds to come in.Because diversity of operations, more demand has been proposed also for the structure of traditional business.Download Server is customized for the development of satisfying the IPTV value-added service.
And in value-added service,, all relate to the problem of the multiple processing operation of file like Java recreation, Multimedia Message etc., and safety issue, but present Download Server can not satisfy document processing operation and security credential problem well.
Summary of the invention
The technical problem that the present invention will solve provides the system and method for realizing Download Server in a kind of IPTV system, utilizes existing IPTV system device to realize functions such as the uploading of Download Server, download, satisfies security requirement simultaneously.
In order to address the above problem, the invention provides the system that realizes Download Server in a kind of IPTV system, comprise continuous Download Server and value-added service management system, also comprise the STB that links to each other with said Download Server, wherein:
Said STB is used to send download request and gives said Download Server; And, be used for generating expressly sign indicating number and encrypted code, and in said download request, carry the authentication code of forming by said plaintext sign indicating number and encrypted code;
Said value-added service management system is used to send command request, or uploads the back in this locality of accomplishing file and send upload request to said Download Server;
Said Download Server is used to receive upload request, the command request that said value-added service management system is sent, and said upload request, command request are resolved and carried out; And receive the download request that said STB sends, said download request is resolved and carried out.
Further; Said Download Server comprises at least: protocol module; Security authentication module and command module; Said protocol module links to each other with said security authentication module respectively with said command module, and said security authentication module also links to each other with said value-added service management system and said STB respectively, wherein:
Said security authentication module; Be used for said upload request, said download request are carried out the validity authentication; If the validity authentication is passed through, be sent to said protocol module after then said upload request, said download request being resolved, otherwise refusal is uploaded or is downloaded; And be used for said command request is carried out the validity authentication, if authentication is passed through, then said command request is sent to said command module, otherwise refusal is carried out said command request;
Said protocol module is used for according to the said upload request of receiving, the service that uploads and downloads of said download request execute file;
Said command module is used for the said command request of receiving is resolved and carried out, and returns execution result.
Further, said protocol module comprises the FTP module, perhaps HTTP module, and perhaps FTP module and said HTTP module, wherein:
Said FTP module is used for carrying out the service that uploads and downloads based on the file of File Transfer Protocol according to the said upload request of receiving, said download request;
Said HTTP module is used for carrying out the service that uploads and downloads based on the file of http protocol according to the said upload request of receiving, said download request.
Further, said command request comprise to said file compress, decompression or unloading operation, said command request is based on File Transfer Protocol or based on http protocol.
Further, said security authentication module also is used for: after download request is resolved, judge certification mode:
When said certification mode is forcible authentication, according to the said authentication code that carries in the download request it is carried out safety certification, if said safety certification is passed through, then download service is provided, otherwise refusal is carried out said download request according to said download request;
When said certification mode is when carrying said authentication code in self adaptation authentication and the said download request; Said authentication code according to carrying in the said download request carries out safety certification to it; If said safety certification is passed through; Then download service is provided, otherwise refusal is carried out said download request according to said download request; When said certification mode is when not carrying said authentication code in self adaptation authentication and the said download request, directly according to said download request download service to be provided.
Further, comprise store path in said upload request, the download request, said FTP module and said HTTP module also are used for uploading or downloaded files is preserved said according to the said store path of said upload request, download request.
The present invention also provides the method that realizes Download Server in a kind of IPTV system, and said method comprises:
Uploading with download request of receiving carried out the validity authentication,, then described request is resolved and carried out, otherwise refusal is carried out described request if the validity authentication is passed through; And,
Generate expressly sign indicating number and encrypted code, and in said download request, carry the authentication code of forming by said plaintext sign indicating number and encrypted code.
Further, said method also comprises:
Receive to said file compress, after the command request of decompression or unloading operation; Said command request is carried out the validity authentication; If the validity authentication is passed through, then said command request is resolved and carried out, otherwise refusal is carried out said command request.
Further, said method also comprises: after said download request is resolved, judge certification mode:
When said certification mode is forcible authentication, according to the said authentication code that carries in the download request it is carried out safety certification, if said safety certification is passed through, then download service is provided, otherwise refusal is carried out said download request according to said download request;
When said certification mode is when carrying said authentication code in self adaptation authentication and the said download request; Said authentication code according to carrying in the said download request carries out safety certification to it; If said safety certification is passed through; Then download service is provided, otherwise refusal is carried out said download request according to said download request; When said certification mode is when not carrying said authentication code in self adaptation authentication and the said download request, directly according to said download request download service to be provided.
Further, comprise store path in said upload request and the said download request, said method is uploaded or downloaded files is preserved said according to wherein said store path the upload request through the validity authentication, download request.
The present invention combines the characteristics of IPTV system self; Having designed a cover satisfies present operation demand, not only realized the system and method for Download Server in safety but also the practical IPTV system; Through this system and method, Download Server safety issue and multiple command process problem have well been solved.
Description of drawings
Fig. 1 is the system configuration sketch map of the embodiment of the invention;
Fig. 2 is the flow chart of uploading that adopts the inventive method;
Fig. 3 is the command execution flow chart that adopts the inventive method;
Fig. 4 is the download flow chart that adopts the inventive method.
Embodiment
Come technical scheme of the present invention is described in further detail below in conjunction with accompanying drawing and specific embodiment.
Fig. 1 is the system configuration sketch map of in the IPTV system, realizing Download Server of the embodiment of the invention; As shown in Figure 1; This system mainly comprises: Download Server, value-added service management system and STB; Wherein, value-added service management system links to each other with Download Server, is used to carry out uploading of various Java application files, media file; Download Server also links to each other with STB, and STB is used for downloading authentication with Download Server, and accomplishes the download of resources such as various Java recreation, media file.
Described Download Server comprises at least: FTP module (File Transfer Protocol; FTP) module, HTTP (Hyper Text Transfer Protocol; HTTP) module, security authentication module, command module, each module effect is following:
The FTP module, being mainly used in provides uploading and downloading based on the file of File Transfer Protocol;
The HTTP module, being mainly used in provides uploading and downloading based on the file of http protocol;
Security authentication module, be mainly used in upload, the purview certification of download request, prevent illegally uploading and illegal download of user; And command request carried out security credential, prevent illegal operation;
Command module is mainly used in various orders based on File Transfer Protocol or http protocol is resolved and carried out, and return results.
Based on system shown in Figure 1, the method that in the IPTV system, realizes Download Server of the embodiment of the invention comprises the application of the following aspects:
Use A: Download Server receives upload request, and upload service is provided;
Application of B: Download Server receives command request, and fill order;
Use C: Download Server receives download request, and download service is provided.
Fig. 2 shows the flow process of uploading of Download Server, promptly above-mentioned application A, and implementation step is following:
Step 201: through said value-added service management system, with the file essential information and the last arq mode input system of (comprising Java application file, media file etc.), wherein, last arq mode comprises HTTP pattern and FTP pattern;
Step 202:,, carry out this locality and upload:, then file is uploaded to the local directory of value-added service management system if be the HTTP pattern according to last arq mode through value-added service management system; If be the FTP pattern, then, file uploaded to this locality from third party's ftp server;
Step 203: value-added service management system is carried out upload operation, sends upload request and gives Download Server, and then local file is uploaded to Download Server;
Comprise request type (also deserve to be called and pass type) and store path in the said upload request, wherein, request type comprises FTP type and HTTP type;
Step 204: Download Server receives the upload request from value-added service management system;
Step 205: Download Server carries out the validity authentication through safety management module to upload request, if authentication is passed through, then continues next step, otherwise refusal is uploaded;
Step 206: Download Server upload request is resolved, according in the upload request upload type and store path is uploaded: if upload type is FTP, and then execution in step 207, is HTTP if upload type, and then execution in step 208;
Step 207: accomplish file through the FTP module and upload, simultaneously file is saved under the store path of appointment, and after uploading, returns and upload the result;
Step 208: accomplish file through the HTTP module and upload, simultaneously file is saved under the store path of appointment, and after uploading, returns and upload the result.
If desired file is carried out various operations,, then can realize through above-mentioned Application of B like operations such as compression, decompression, unloadings.Be illustrated in figure 3 as the command execution flow process of Download Server, implementation step is following:
Step 301: value-added service management system is sent command request and is given Download Server;
Step 302: Download Server receives command request through command module;
Step 303: the safety management module of Download Server, command request is carried out the validity authentication, if authentication is passed through, then continue next step; Otherwise the execution of refusal order, EO;
Step 304: the command module of Download Server is resolved command request;
Step 305: the command module of Download Server is based on File Transfer Protocol or the request of http protocol fill order, and returns execution result.
Shown in Figure 4 is the download flow process of Download Server, promptly above-mentioned application C, and implementation step is following:
Step 401: STB generates one 32 character string at random as the plaintext sign indicating number;
Step 402: STB will be encrypted this plaintext sign indicating number, generate 32 encrypted code, and wherein, encryption is to adopt the secret key encryption of agreement to generate;
Step 403: STB sends download request and gives Download Server, comprises request type (also claiming type of download) and store path (also claiming download path) in the download request, and request type comprises FTP type and HTTP type; And also have authentication code in this download request, wherein, authentication code is 64, comprises expressly sign indicating number and encrypted code;
Step 404: Download Server receives the download request from STB;
Step 405: Download Server carries out the validity authentication through safety management module to download request, if authentication is passed through, then continues next step; Otherwise refusal is downloaded, EO;
Step 406: Download Server download request is resolved, obtain authentication code, type of download and download path;
Step 407: the security authentication module of Download Server is judged the certification mode of current system configuration: if forcible authentication then gets into step 408; If the self adaptation authentication is then distinguished according to the authentication code in the download request, if having, then get into step 408, otherwise directly get into step 410 or step 411 according to type of download, download service directly is provided;
In actual application environment, possibly there are two kinds of situation in STB, and a kind of is not support safety certification, and a kind of is (STB for example provided by the invention) of supporting safety certification, and at this moment, the effect of configuration safety certification pattern is most important.Because if STB is not supported safety certification, then its download request of not carrying authentication code will directly be downloaded the server refusal.
For the present download request of not carrying authentication code of compatibility, the inventive method is judged certification mode:
If the certification mode of system is configured to " adaptive model ", two kinds of STBs all need to support so, for the request of the STB of supporting safety certification, can carry out safety certification through the security authentication module of Download Server; For the request of the STB of not supporting safety certification, the security authentication module of Download Server can directly pass through;
If the certification mode of system is configured to " forcible authentication pattern ", for the request of the STB of supporting safety certification, can carry out safety certification so through the security authentication module of Download Server; For the request of the STB of not supporting safety certification, the security authentication module of Download Server is refusal directly.
Step 408: Download Server parses expressly sign indicating number and encrypted code, execution in step 409 according to the authentication code that obtains;
Step 409: the security authentication module of Download Server carries out safety certification; The plaintext sign indicating number is carried out cryptographic calculation through a key of arranging, if result who calculates and encrypted code are in full accord, then authentication is passed through; Download service is provided, gets into step 410 or step 411 according to type of download; Otherwise refusal is downloaded, EO;
Step 410: if type of download is based on the download of FTP, then download is provided, and returns the download result through the FTP module;
Step 411:, then provide and download and return the download result by the HTTP module if type of download is based on the download of HTTP;
Step 412: STB is accomplished and is downloaded, if failed download is then pointed out the user's download failure.
In sum; The system and method for realizing Download Server in the IPTV provided by the present invention system has the following advantages: made full use of existing IPTV platform; Through system and method for the present invention; Operator not only can enrich the resource diversity of IPTV for the user provides uploading, downloading of various media files and other operations; And through safety certification effectively guaranteed the safe and reliable of download.System of the present invention constitutes simple and reliable, the clear standard of operation flow.
Certainly; The present invention also can have other various embodiments; Under the situation that does not deviate from spirit of the present invention and essence thereof; Those of ordinary skill in the art work as can make various corresponding changes and distortion according to the present invention, but these corresponding changes and distortion all should belong to the protection range of the appended claim of the present invention.

Claims (10)

1. realize the system of Download Server in the IPTV system, comprise continuous Download Server and value-added service management system, it is characterized in that, also comprise the STB that links to each other with said Download Server, wherein:
Said STB is used to send download request and gives said Download Server; And, be used for generating expressly sign indicating number and encrypted code, and in said download request, carry the authentication code of forming by said plaintext sign indicating number and encrypted code;
Said value-added service management system is used to send command request, or uploads the back in this locality of accomplishing file and send upload request to said Download Server;
Said Download Server is used to receive upload request, the command request that said value-added service management system is sent, and said upload request, command request are resolved and carried out; And receive the download request that said STB sends, said download request is resolved and carried out.
2. the system of claim 1; It is characterized in that; Said Download Server comprises at least: protocol module, and security authentication module and command module, said protocol module links to each other with said security authentication module respectively with said command module; Said security authentication module also links to each other with said value-added service management system and said STB respectively, wherein:
Said security authentication module; Be used for said upload request, said download request are carried out the validity authentication; If the validity authentication is passed through, be sent to said protocol module after then said upload request, said download request being resolved, otherwise refusal is uploaded or is downloaded; And be used for said command request is carried out the validity authentication, if authentication is passed through, then said command request is sent to said command module, otherwise refusal is carried out said command request;
Said protocol module is used for according to the said upload request of receiving, the service that uploads and downloads of said download request execute file;
Said command module is used for the said command request of receiving is resolved and carried out, and returns execution result.
3. system as claimed in claim 2 is characterized in that said protocol module comprises the FTP module, perhaps HTTP module, and perhaps FTP module and said HTTP module, wherein:
Said FTP module is used for carrying out the service that uploads and downloads based on the file of File Transfer Protocol according to the said upload request of receiving, said download request;
Said HTTP module is used for carrying out the service that uploads and downloads based on the file of http protocol according to the said upload request of receiving, said download request.
4. according to claim 1 or claim 2 system is characterized in that, said command request comprise to said file compress, decompression or unloading operation, said command request is based on File Transfer Protocol or based on http protocol.
5. system as claimed in claim 2 is characterized in that, said security authentication module also is used for: after download request is resolved, judge certification mode:
When said certification mode is forcible authentication, according to the said authentication code that carries in the download request it is carried out safety certification, if said safety certification is passed through, then download service is provided, otherwise refusal is carried out said download request according to said download request;
When said certification mode is when carrying said authentication code in self adaptation authentication and the said download request; Said authentication code according to carrying in the said download request carries out safety certification to it; If said safety certification is passed through; Then download service is provided, otherwise refusal is carried out said download request according to said download request.
6. system as claimed in claim 3; It is characterized in that; Comprise store path in said upload request, the download request, said FTP module and said HTTP module also are used for uploading or downloaded files is preserved said according to the said store path of said upload request, download request.
7. method based on the realization Download Server of the said system of claim 1 is characterized in that said method comprises:
Download Server carries out the validity authentication to what receive from the upload request of value-added service management system with from the download request of STB, if the validity authentication is passed through, then described request is resolved and carried out, otherwise refusal is carried out described request; And,
STB generates expressly sign indicating number and encrypted code, and in said download request, carries the authentication code of being made up of said plaintext sign indicating number and encrypted code.
8. method as claimed in claim 7 is characterized in that, said method also comprises:
Download Server receive to its files stored compress, after the command request of decompression or unloading operation; Said command request is carried out the validity authentication; If the validity authentication is passed through, then said command request is resolved and carried out, otherwise refusal is carried out said command request.
9. method as claimed in claim 7 is characterized in that, said method also comprises: after said download request is resolved, judge certification mode:
When said certification mode is forcible authentication, according to the said authentication code that carries in the download request it is carried out safety certification, if said safety certification is passed through, then download service is provided, otherwise refusal is carried out said download request according to said download request;
When said certification mode is when carrying said authentication code in self adaptation authentication and the said download request; Said authentication code according to carrying in the said download request carries out safety certification to it; If said safety certification is passed through; Then download service is provided, otherwise refusal is carried out said download request according to said download request.
10. method as claimed in claim 7; It is characterized in that; Comprise store path in said upload request and the said download request, said method is uploaded or downloaded files is preserved said according to wherein said store path the upload request through the validity authentication, download request.
CN2008101793556A 2008-12-02 2008-12-02 System for realizing download server in IPTV system and method thereof Expired - Fee Related CN101447990B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2008101793556A CN101447990B (en) 2008-12-02 2008-12-02 System for realizing download server in IPTV system and method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2008101793556A CN101447990B (en) 2008-12-02 2008-12-02 System for realizing download server in IPTV system and method thereof

Publications (2)

Publication Number Publication Date
CN101447990A CN101447990A (en) 2009-06-03
CN101447990B true CN101447990B (en) 2012-08-08

Family

ID=40743387

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2008101793556A Expired - Fee Related CN101447990B (en) 2008-12-02 2008-12-02 System for realizing download server in IPTV system and method thereof

Country Status (1)

Country Link
CN (1) CN101447990B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101621545B (en) * 2009-07-07 2012-11-14 中兴通讯股份有限公司 Device and method for pulling down media resource towards terminal device
CN101742239B (en) * 2009-11-27 2012-09-26 深圳创维-Rgb电子有限公司 Method for controlling audio/video programs of network television
CN104618804B (en) * 2014-12-31 2018-08-17 山东泰信电子股份有限公司 A kind of method and system obtaining television channel information

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040252836A1 (en) * 2003-06-03 2004-12-16 Hirotaka Yoshida Message-authenticated encryption apparatus or decryption apparatus for common-key cipher
CN101080015A (en) * 2007-06-28 2007-11-28 中兴通讯股份有限公司 System and method for uploading third party video and audio content in IPTV system
CN101184199A (en) * 2007-12-06 2008-05-21 中兴通讯股份有限公司 System and method for transmitting multimedia message in network television system

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040252836A1 (en) * 2003-06-03 2004-12-16 Hirotaka Yoshida Message-authenticated encryption apparatus or decryption apparatus for common-key cipher
CN101080015A (en) * 2007-06-28 2007-11-28 中兴通讯股份有限公司 System and method for uploading third party video and audio content in IPTV system
CN101184199A (en) * 2007-12-06 2008-05-21 中兴通讯股份有限公司 System and method for transmitting multimedia message in network television system

Also Published As

Publication number Publication date
CN101447990A (en) 2009-06-03

Similar Documents

Publication Publication Date Title
US9253164B2 (en) Distribution of portions of content
CN1937495B (en) Digital copyright protection method and system for media network application
CN101567893A (en) Method and system for uploading files in WEB application
EP3055805A1 (en) System and method for signaling and verifying url signatures for both url authentication and url-based content access authorization in adaptive streaming
CN103067174B (en) Digital signature method and system completed in mobile operating system
CN1728633A (en) Method of providing access to encrypted content, device for providing access to encrypted content and method of generating a secure content package
US7191343B2 (en) Voucher driven on-device content personalization
CN101552669A (en) Method and system of data transmission
CN101330524A (en) Method and apparatus for processing download and dispatching file as well as transmission file system
CN104255010A (en) Support for short cryptoperiods in template mode
CN104602238A (en) Wireless network connecting method, device and system
CN106254336A (en) A kind of document transmission method based on File Mapping encryption
US9276998B2 (en) Transfer of files with arrays of strings in soap messages
CN101473675A (en) Virtualization of mobile device user experience
KR20140107705A (en) Method and system of evidence preservation for digital documents
CN109547198A (en) The method and system of network transmission video file
CN105659519A (en) Extensible media format system and methods of use
US20080183839A1 (en) System For Computer To Mobile Device Place Shifting
CN103685557A (en) Method and device for uploading and downloading file
CN104298896A (en) Method and system for managing and distributing digital rights
EP3602363A1 (en) Secure media casting bypassing mobile devices
CN112199622A (en) Page jump method, system and storage medium
JP2013235465A (en) File processing system
US20080184123A1 (en) System And Method For Providing A Secure Connection Between A Computer And A Mobile Device
CN101447990B (en) System for realizing download server in IPTV system and method thereof

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20120808

Termination date: 20171202