CN101998163A - Entitlement management method, terminal equipment and front end - Google Patents
Entitlement management method, terminal equipment and front end Download PDFInfo
- Publication number
- CN101998163A CN101998163A CN200910091146.0A CN200910091146A CN101998163A CN 101998163 A CN101998163 A CN 101998163A CN 200910091146 A CN200910091146 A CN 200910091146A CN 101998163 A CN101998163 A CN 101998163A
- Authority
- CN
- China
- Prior art keywords
- message
- entitlement management
- entitlement
- management message
- information
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
- 238000007726 management method Methods 0.000 title claims abstract description 175
- 238000000034 method Methods 0.000 claims abstract description 18
- 238000013475 authorization Methods 0.000 claims description 71
- 230000008014 freezing Effects 0.000 claims description 30
- 238000007710 freezing Methods 0.000 claims description 30
- 239000000047 product Substances 0.000 description 35
- 230000000875 corresponding effect Effects 0.000 description 20
- 238000012545 processing Methods 0.000 description 3
- 238000013459 approach Methods 0.000 description 2
- 230000009286 beneficial effect Effects 0.000 description 2
- GOLXNESZZPUPJE-UHFFFAOYSA-N spiromesifen Chemical compound CC1=CC(C)=CC(C)=C1C(C(O1)=O)=C(OC(=O)CC(C)(C)C)C11CCCC1 GOLXNESZZPUPJE-UHFFFAOYSA-N 0.000 description 2
- 239000006227 byproduct Substances 0.000 description 1
- 230000001276 controlling effect Effects 0.000 description 1
- 230000002596 correlated effect Effects 0.000 description 1
- 230000002950 deficient Effects 0.000 description 1
- 238000010586 diagram Methods 0.000 description 1
- 230000014759 maintenance of location Effects 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 238000012856 packing Methods 0.000 description 1
- 238000003860 storage Methods 0.000 description 1
Images
Abstract
The invention provides an entitlement management method, terminal equipment and a front end. The method comprises user entitlement management through entitlement control message which is transmitted by the receiving front end and comprises entitlement management message. Through the embodiment of the invention, the method can effectively prevent a user from refusing to receive an EMM (entitlement management message) packet to separate from entitlement management of an operator, so that the terminal equipment realizes program management of the operator at the same time of receiving an entitlement control message (ECM) data packet, realizes user entitlement management of the operator at the same time and effectively protects the vital interests of the operator.
Description
Technical field
The present invention relates to digital television techniques, particularly a kind of authorization management method, terminal equipment and front end.
Background technology
In digital television system, condition receiving system (CAS:Conditional Access System) is meant and is used for controlling the system that the user receives broadcast service, usually realize the paid service of broadcast system by empowerment management and authorization control, to guarantee that the user who has authorized can receive corresponding mandate TV programme and service business, undelegated user then can't obtain TV programme and service business.
Conditional access system front-end is packaged into product to some channels, if packing back user orders this product, then need condition receiving system to authorize, this authorization message generally is issued to set-top box by Entitlement Management Message (EMM:Entitlement Management Message).
At front end, broadcast data is carried out scrambling, and scrambling control word (CW) is encrypted afterwards (CW ') together send terminal to by Entitlement Control Message (ECM:Entitlement Control Message) and this broadcast data; In terminal, by safety device, decipher scrambling control word after this encryption (CW ') as smart card and obtain this control word (CW), send this control word (CW) to terminal equipment then, as set-top box, reduce this broadcast data by this set-top box descrambling.
The inventor finds that there is following defective in prior art in realizing process of the present invention: operator realizes empowerment management by EMM, realize program by ECM, be that EMM separates with ECM, therefore, if the user has had rejection EMM packet after the mandate of program, the empowerment management that then can break away from operator, promptly the disabled user can be by not receiving the approach of anti-authorization packets, illegally have the right of always watching former mandate program, invaded the vital interests of operator.
Summary of the invention
The invention provides a kind of authorization management method, terminal equipment and front end, can realize user authorization management by Entitlement Control Message ECM, can prevent the user from rejecting the EMM packet effectively and break away from the empowerment management of front end, and also safeguard the vital interests of operator effectively.
The embodiment of the invention provides a kind of authorization management method, and wherein, this method comprises: the Entitlement Control Message that comprises Entitlement Management Message that issues by receiving front-end carries out user authorization management.
The embodiment of the invention provides a kind of terminal equipment, and wherein, this terminal equipment comprises:
Information receiving unit is used for the Entitlement Control Message that comprises Entitlement Management Message that receiving front-end issues, and wherein, this Entitlement Management Message comprises the message identification and the corresponding terminal device sign of Entitlement Management Message; Perhaps this Entitlement Management Message comprises message identification, corresponding terminal device sign and the product mark of Entitlement Management Message;
The type determining unit is connected with this information receiving unit, is used for determining according to the message identification of this Entitlement Management Message the information type of this Entitlement Management Message;
The equipment determining unit is connected with the type determining unit, is used for according to determining that with this message identification corresponding terminal device sign this Entitlement Management Message is relevant with current terminal equipment;
Operating unit is connected with this equipment determining unit, is used for when this equipment determining unit determines that this Entitlement Management Message is relevant with current terminal equipment, operates accordingly according to the information type of determining.
The embodiment of the invention provides a kind of authorization management method, and this method comprises:
Conditional access system front-end is configured Entitlement Management Message, to generate the program configuration information;
Read described program configuration information;
Generate Entitlement Control Message according to described program configuration information, described Entitlement Control Message comprises Entitlement Management Message;
The Entitlement Control Message that generates is sent to terminal equipment.
The embodiment of the invention provides a kind of conditional access system front-end, and this front end comprises:
The information configuration unit is used for Entitlement Management Message is configured, to generate the program configuration information;
The information reading unit is used to read the described program configuration information of described information configuration configuration of cells;
The Entitlement Control Message generation unit is used for generating Entitlement Control Message according to the described program configuration information that reads, and described Entitlement Control Message comprises Entitlement Management Message;
Information transmitting unit is used for the Entitlement Control Message that described Entitlement Control Message generation unit generates is sent to terminal equipment.
The beneficial effect of embodiment of the present invention is, can realize user authorization management by Entitlement Control Message ECM, prevents that effectively the user from rejecting the EMM packet and breaking away from the empowerment management of front end, and also safeguarded the vital interests of operator effectively.
Description of drawings
Accompanying drawing described herein is used to provide further understanding of the present invention, constitutes the application's a part, does not constitute limitation of the invention.In the accompanying drawings:
Fig. 1 is the authorization management method flow chart of the embodiment of the invention 2;
Fig. 2 is the front-end architecture schematic diagram of the embodiment of the invention 3;
Fig. 3 is the terminal equipment structural representation of the embodiment of the invention 4.
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer,, the present invention is described in further details below in conjunction with execution mode and accompanying drawing.At this, exemplary embodiment of the present invention and explanation thereof are used to explain the present invention, but not as a limitation of the invention.
Embodiment 1
The embodiment of the invention provides a kind of authorization management method, and this method comprises: the Entitlement Control Message that comprises Entitlement Management Message that issues by receiving front-end carries out user authorization management.
In the prior art, operator realizes empowerment management by EMM, if the user has had rejection EMM packet after the mandate of program, the empowerment management that then can break away from operator, be that the disabled user can be by not receiving the approach of anti-authorization packets, illegally have the right of always watching former mandate program, invaded the vital interests of operator.
Therefore, in embodiments of the present invention, reject the EMM bag in order to prevent the user, the empowerment management that breaks away from operator, the special proposition carried out user authorization management by Entitlement Control Message ECM.Because if the terminal user desires to watch program; then terminal equipment must receive the ECM packet; if terminal equipment receives and comprises Entitlement Management Message in the ECM packet; this terminal equipment has also been realized the empowerment management of operator to the user when receiving the ECM packet so, has protected the vital interests of operator effectively.
In the present embodiment, this Entitlement Control Message can be the ECM packet, and this ECM packet also comprises the control word of being encrypted by product key except comprising Entitlement Management Message.
In the present embodiment, this Entitlement Management Message can comprise the message identification and the corresponding terminal device sign of Entitlement Management Message; Perhaps this Entitlement Management Message comprises message identification, corresponding terminal device sign and the product mark of Entitlement Management Message.Wherein, message identification is represented the information type of this Entitlement Management Message, so that terminal equipment is operated accordingly according to the type of this Entitlement Management Message.
In the present embodiment, this Entitlement Management Message can be authorization message, anti-authorization message, freezing information etc.When this Entitlement Management Message was freezing information, this freezing information can comprise the device identification of message identification with the terminal equipment that will freeze of freezing information.When this Entitlement Management Message was anti-authorization message, this anti-authorization message comprised the message identification of anti-authorization message, the device identification and the anti-product mark (ID) of authorizing of respective user terminal equipment.When this Entitlement Management Message was authorization message, this authorization message comprised the message identification of authorization message, the device identification of respective user terminal equipment and the product mark (ID) of mandate.
In the present embodiment, consider all Entitlement Management Messages are all issued by the ECM packet, some terminal equipment receives the authorization message relevant with this terminal equipment may need the long period, like this, also can have influence on benefits of operators, therefore, also can use the EMM packet to send user authorization management information in the present embodiment, use ECM to send user authorization management information in some cases.For example, use the EMM packet to send user's authorization message, and use the ECM packet to send freezing information or anti-authorization message, like this, both guaranteed that the user can not guarantee the vital interests of operator again by rejecting the empowerment management that the EMM packet breaks away from operator.
In the present embodiment, when comprising freezing information in the ECM packet, after terminal equipment receives the ECM packet that contains the freezing information relevant with this terminal equipment, freeze this terminal equipment, refusal is decrypted this ECM packet, can not obtain descrambled control words, therefore, the user can not continue to watch all sponsored programs.Example: operator desires to forbid that Terminal Equipment Identifier is that the user of A watches whole sponsored programs, then the CAS front end can increase the freezing information relevant with A in the ECM packet, user A desires to watch that program must receive this ECM packet, as long as after receiving this ECM packet, Terminal Equipment Identifier is that the terminal equipment of A will be frozen, the refusal deciphering, thus the terminal user can't watch program.
In the present embodiment, when comprising anti-authorization message in the ECM packet, after terminal equipment received the ECM packet that contains the anti-authorization message relevant with itself, the product corresponding with product mark ID authorized by counter, thereby this terminal user can not watch by anti-program of authorizing.For example, operator desires to forbid that Terminal Equipment Identifier is that the terminal user of A, B watches that product mark is 3,4 sponsored program, then the CAS front end can increase corresponding anti-authorization message in the ECM packet, when terminal user A, B desire to watch the program of product mark 3,4 correspondences, must receive the ECM packet, as long as receive this ECM packet, this device identification is that the product of product mark 3,4 correspondences of the terminal equipment of A, B is authorized by counter, can't watch the program of these product mark 3,4 correspondences.
In the present embodiment, when comprising authorization message in the ECM packet, it is similar that processing mode and employing EMM packet carry out empowerment management, repeats no more herein.
By the foregoing description as can be known; carry out user authorization management by Entitlement Control Message ECM; the empowerment management that can prevent the user from rejecting the EMM packet and break away from operator; make this terminal equipment when receiving the ECM packet, not only realize the management of operator to program; simultaneously also realized the empowerment management of operator, protected the vital interests of operator effectively the user.
Embodiment 2
The embodiment of the invention provides a kind of authorization management method, below in conjunction with accompanying drawing, draw together freezing information and anti-authorization message is that example is elaborated to this method with the front end configuration packet.
At front end:
Step 101, front end is configured Entitlement Management Message, to generate the program configuration information.
In the present embodiment, this Entitlement Management Message can be configured to freezing information or anti-authorization message.Wherein, this freezing information can comprise the device identification of message identification with the terminal equipment that will freeze of freezing information; This anti-authorization message can comprise the message identification of anti-authorization message, the device identification and the anti-product mark (ID) of authorizing of respective user terminal equipment.
Step 102 reads described program configuration information, and generates the ECM packet according to described program configuration information, and this ECM packet comprises freezing information or anti-authorization message.
Table 1 is the form that comprises the ECM packet of freezing information.Table 2 is the form that comprises the ECM packet of anti-authorization message.
Table 1
Grammer | Note |
?ECMFreeze_Desc(){ | |
DescriptorTag | Message identification |
Group | Group number |
Mask | Mask (1000) in the group |
?} |
As shown in table 1, " DescriptorTag " represents message identification, is the message identification of expression freezing information; " Group " and " Mask " compositing terminal numbering, i.e. Terminal Equipment Identifier, " Group " expression terminal iidentification place group wherein, for example, in the present embodiment, 1000 terminal equipments are one group." Mask " is mask in the group, a terminal equipment in each representative group.For example, " Mask " if in numerical value on certain be 1, show that then corresponding terminal equipment is frozen, if the numerical value on certain is 0, show that then terminal equipment is not frozen.
Table 2
Grammer | Note |
ECMDetitle_Desc(){ | |
DescriptorTag | Message identification |
Product | Expression product radix ID |
Product?IDMask | Product IDs mask (16) |
?Group | Group number |
?Mask | Mask (1000) in the group |
?} |
As shown in table 2, " DescriptorTag " is message identification, represents the message identification of anti-authorization message; " Group " and the device identification of " Mask " compositing terminal, wherein " Group " represents terminal place group, for example, 1000 terminals are one group." Mask " is mask in the group, and each represents a terminal, for example, " Mask " if in numerical value on certain be 1, show that then corresponding terminal equipment authorized by counter, if the numerical value on the figure place is 0, show that then corresponding terminal do not authorized by counter.
Product IDs is made up of " Product " and " ProductIDMask ", " Product " expression product radix ID, " ProductIDMask " can be 16, each represents a product, for example, be 1 if digital value is gone up in the position, show that then corresponding product ID is authorized by counter, if digital value is 0 on the position, show that then corresponding product ID is not authorized by counter.
For those skilled in the art, the expression mode of above-mentioned Terminal Equipment Identifier, product mark is not limited to the foregoing description, can also represent by alternate manner.
In addition, in this ECM packet, except comprising above-mentioned Entitlement Management Message, also can comprise by the product key encrypted descrambling control word.
Step 103 sends the ECM packet that generates to terminal equipment.
At terminal equipment:
Step 104, the ECM packet that comprises Entitlement Management Message that the terminal equipment receiving front-end issues.
Step 105 is determined the information type of this Entitlement Management Message according to the message identification of this Entitlement Management Message, if when determining that this Entitlement Management Message is freezing information, and execution in step 106, if when determining that this Entitlement Management Message is anti-authorization message, execution in step 108;
In the present embodiment, can determine the type of this Entitlement Management Message according to " DescriptorTag " in this ECM packet.If when this message identification is the freezing information corresponding identification, can determine that the Entitlement Management Message that comprises in this ECM packet is a freezing information; In like manner, can determine that the Entitlement Management Message that comprises in this ECM packet is anti-authorization message.
Step 106 when determining that in step 105 this Entitlement Management Message is freezing information, determines further then whether this Entitlement Management Message is relevant with this terminal equipment.If determine the result for relevant, then execution in step 107, if determine that the result is uncorrelated, then execution in step 110.
In the present embodiment, can be according to determining with this message identification corresponding terminal device sign whether this Entitlement Management Message is relevant with current terminal equipment in this Entitlement Management Message; Wherein, the Terminal Equipment Identifier in this Entitlement Management Message is consistent with current Terminal Equipment Identifier, then can determine to be correlated with, otherwise determine uncorrelated.
Step 107, determine that in step 106 this freezing information is relevant with this terminal equipment, then this terminal equipment is operated accordingly according to this Entitlement Management Message, promptly freeze this terminal equipment, thereby this terminal equipment is not handled the ECM packet that receives, and makes the terminal user can't watch sponsored program.
Step 108 when determining that in step 105 this Entitlement Management Message is anti-authorization message, determines further then whether this anti-authorization message is relevant with this terminal equipment, determines that mode with step 106, repeats no more herein.If determine the result for relevant, then execution in step 109, if determine that the result is uncorrelated, then execution in step 110.
Step 109, in step 108, if determine relevant with this terminal equipment, then this terminal equipment is operated accordingly according to this Entitlement Management Message, can authorize the product of this product mark correspondence is counter according to the product mark that comprises in this anti-authorization message, like this, corresponding program prompting is not authorized, and makes the terminal user can't watch this program.
Step 110, in step 106 and 108, if determining the result is that this Entitlement Management Message and this terminal equipment are irrelevant, then this terminal equipment can be decrypted processing to this ECM packet, its processing procedure and prior art are similar, promptly utilize the product key that prestores that this ECM packet is decrypted, to obtain descrambled control words, utilize this descrambled control words that scrambled program is carried out descrambling and broadcast then, make the user can normally watch this program.
The foregoing description only is that freezing information or anti-authorization message are that example is illustrated with the Entitlement Management Message, but this Entitlement Management Message only is embodiments of the invention, be not only to comprise above-mentioned freezing information or anti-authorization message, this Entitlement Management Message also can comprise out of Memory.
In the present embodiment, can issue Entitlement Management Message by an ECM packet or an above ECM packet.Owing to consider the restriction of ECM data packet length; possibly Entitlement Management Message can't be issued by an ECM packet; therefore; also can issue by an above ECM packet; front end constantly repeats to send all ECM packets, and terminal desires to watch program, just can constantly receive all ECM packets; so just realized being undertaken the purpose of empowerment management, protected the vital interests of operator effectively by ECM.
By the foregoing description as can be known; carry out user authorization management by Entitlement Control Message ECM; the empowerment management that can prevent the user from rejecting the EMM packet and break away from operator; make this terminal equipment when receiving the ECM packet, not only realize the management of operator to program; simultaneously also realized the empowerment management of operator, protected the vital interests of operator effectively the user.
Embodiment 3
The embodiment of the invention provides a kind of conditional access system front-end, and as shown in Figure 2, this front end comprises: information configuration unit 201, information reading unit 202, Entitlement Control Message generation unit 203 and information transmitting unit 204; Wherein,
In the present embodiment, Entitlement Control Message can be the ECM packet.Wherein included Entitlement Management Message can be freezing information, anti-authorization message or authorization message etc. in this ECM packet.The form of the ECM packet that ECM generation unit 203 generates repeats no more shown in table 1, table 2 herein.
As shown in Figure 2, this front end also can comprise memory cell 205, is used to store the program configuration information of generation.Like this, information reading unit 202 also can read the program configuration information of memory cell 205 storages.
By the foregoing description as can be known; conditional access system front-end can be configured Entitlement Management Message; to generate the program configuration information; and generate the ECM packet that comprises Entitlement Management Message according to this program configuration information; and this ECM packet is issued to terminal equipment; make terminal equipment carry out user authorization management according to this ECM packet; thereby the empowerment management that prevents the user from rejecting the EMM packet and break away from operator; make this terminal equipment when receiving the ECM packet, not only realize the management of operator to program; simultaneously also realized the empowerment management of operator, protected the vital interests of operator effectively the user.
Embodiment 4
The embodiment of the invention provides a kind of terminal equipment, and as shown in Figure 3, this terminal equipment comprises: information receiving unit 301, type determining unit 302, equipment determining unit 303 and operating unit 304; Wherein,
In the present embodiment, this Entitlement Management Message can be freezing information, anti-authorization message or authorization message etc.
In the present embodiment, can determine the type of this Entitlement Management Message according to the message identification that comprises in this Entitlement Management Message, the step 105 of definite mode and embodiment 2 is similar, repeats no more herein.
In the present embodiment, equipment determining unit 303 is according to determining that with this message identification corresponding terminal device sign this Entitlement Management Message is relevant with current terminal equipment, determines the step 106,108 similar of mode and embodiment 2, repeats no more herein.
In the present embodiment, when type determining unit 302 determined that the information type of this Entitlement Management Message is freezing information, operating unit 304 can freeze current terminal equipment according to this freezing information.
In the present embodiment, when type determining unit 302 determined that the information type of this Entitlement Management Message is anti-authorization message or authorization message, operating unit 304 can be authorized or authorize the product of this product mark correspondence is counter according to this anti-authorization message or authorization message.
As shown in Figure 3, this terminal equipment also comprises decrypting device 305, is used for utilizing the product key that prestores that this Entitlement Control Message is decrypted, to obtain descrambled control words when equipment determining unit 303 determines that this Entitlement Management Message and current terminal equipment have nothing to do.
Therefore, this terminal equipment also can comprise descrambling unit 306 and broadcast unit 307, and wherein, descrambling unit 306 utilizes descrambled control words that decrypting device 305 obtains that the program of scrambling is carried out descrambling, broadcast unit 307 is used to play the program behind the descrambling, so that the terminal user watches this program.
As shown in Figure 3, this terminal equipment also can comprise memory cell 308, is used for the stored prod key.
By the foregoing description as can be known; the Entitlement Control Message that comprises Entitlement Management Message that terminal equipment issues by receiving front-end; the empowerment management that can prevent the user from rejecting the EMM packet and break away from operator; make this terminal equipment when receiving the ECM packet, not only realize the management of operator to program; simultaneously also realized the empowerment management of operator, protected the vital interests of operator effectively the user.
Above embodiment; purpose of the present invention, technical scheme and beneficial effect are further described; institute is understood that; it below only is the specific embodiment of the present invention; and be not intended to limit the scope of the invention; within the spirit and principles in the present invention all, any modification of being made, be equal to replacement, improvement etc., all should be included within protection scope of the present invention.
Claims (15)
1. an authorization management method is characterized in that, described method comprises: the Entitlement Control Message that comprises Entitlement Management Message that issues by receiving front-end carries out user authorization management.
2. method according to claim 1 is characterized in that, described Entitlement Management Message comprises the message identification and the corresponding terminal device sign of Entitlement Management Message; Perhaps described Entitlement Management Message comprises message identification, corresponding terminal device sign and the product mark of Entitlement Management Message.
3. method according to claim 2 is characterized in that, the described Entitlement Control Message that comprises Entitlement Management Message that issues by receiving front-end carries out user authorization management, comprising:
The Entitlement Control Message that comprises Entitlement Management Message that receiving front-end issues;
Determine the information type of described Entitlement Management Message according to the message identification of described Entitlement Management Message;
If, then operate accordingly according to the information type of determining according to determining that with described message identification corresponding terminal device sign described Entitlement Management Message is relevant with current terminal equipment.
4. method according to claim 3 is characterized in that, when the information type of determining described Entitlement Management Message was freezing information, described Entitlement Management Message comprised the message identification and the corresponding terminal device sign of Entitlement Management Message;
And operate accordingly according to the information type of determining, comprising: freeze current terminal equipment according to described freezing information.
5. method according to claim 3, it is characterized in that, when the information type of determining described Entitlement Management Message was anti-authorization message or authorization message, described Entitlement Management Message comprised message identification, corresponding terminal device sign and the product mark of Entitlement Management Message;
And operate accordingly according to the information type of determining, comprising:
Authorize or authorize the product of described product mark correspondence is counter according to described anti-authorization message or authorization message.
6. according to claim 4 or 5 described methods, it is characterized in that, if according to determining that with described message identification corresponding terminal device sign described Entitlement Management Message and current terminal equipment have nothing to do, described method also comprises: utilize the product key that prestores that described Entitlement Control Message is decrypted, to obtain descrambled control words.
7. a terminal equipment is characterized in that, described terminal equipment comprises:
Information receiving unit is used for the Entitlement Control Message that comprises Entitlement Management Message that receiving front-end issues, and wherein, described Entitlement Management Message comprises the message identification and the corresponding terminal device sign of Entitlement Management Message; Perhaps described Entitlement Management Message comprises message identification, corresponding terminal device sign and the product mark of Entitlement Management Message;
The type determining unit is connected with described information receiving unit, is used for determining according to the message identification of described Entitlement Management Message the information type of described Entitlement Management Message;
The equipment determining unit is connected with described type determining unit, is used for according to determining that with described message identification corresponding terminal device sign described Entitlement Management Message is relevant with current terminal equipment;
Operating unit is connected with described equipment determining unit, is used for when described equipment determining unit determines that described Entitlement Management Message is relevant with current terminal equipment, operates accordingly according to the information type of determining.
8. terminal equipment according to claim 7, it is characterized in that, when described type determining unit determined that the information type of described Entitlement Management Message is freezing information, described Entitlement Management Message comprised the message identification and the corresponding terminal device sign of Entitlement Management Message;
And described operating unit specifically comprises: freeze current terminal equipment according to described freezing information.
9. terminal equipment according to claim 7, it is characterized in that, when described type determining unit determined that the information type of described Entitlement Management Message is anti-authorization message or authorization message, described Entitlement Management Message comprised message identification, corresponding terminal device sign and the product mark of Entitlement Management Message;
And described operating unit specifically comprises: authorize or authorize the product of described product mark correspondence is counter according to described anti-authorization message or authorization message.
10. according to Claim 8 or 9 described terminal equipments, it is characterized in that described terminal equipment also comprises:
Decrypting device is used for utilizing the product key that prestores that described Entitlement Control Message is decrypted, to obtain descrambled control words when described equipment determining unit determines that described Entitlement Management Message and current terminal equipment have nothing to do.
11. an authorization management method is characterized in that, described method comprises:
Conditional access system front-end is configured Entitlement Management Message, to generate the program configuration information;
Read described program configuration information;
Generate Entitlement Control Message according to described program configuration information, described Entitlement Control Message comprises Entitlement Management Message;
The Entitlement Control Message that generates is sent to terminal equipment.
12. method according to claim 11 is characterized in that, described Entitlement Management Message comprises the message identification and the corresponding terminal device sign of Entitlement Management Message; Perhaps described Entitlement Management Message comprises message identification, corresponding terminal device sign and the product mark of Entitlement Management Message.
13. a conditional access system front-end is characterized in that, described front end comprises:
The information configuration unit is used for Entitlement Management Message is configured, to generate the program configuration information;
The information reading unit is used to read the described program configuration information of described information configuration configuration of cells;
The Entitlement Control Message generation unit is used for generating Entitlement Control Message according to the described program configuration information that reads, and described Entitlement Control Message comprises Entitlement Management Message;
Information transmitting unit is used for the Entitlement Control Message that described Entitlement Control Message generation unit generates is sent to terminal equipment.
14. front end according to claim 13 is characterized in that, described front end also comprises memory cell, is used to store the described program configuration information of generation.
15. front end according to claim 13 is characterized in that, described Entitlement Management Message comprises the message identification and the corresponding terminal device sign of Entitlement Management Message; Perhaps described Entitlement Management Message comprises message identification, corresponding terminal device sign and the product mark of Entitlement Management Message.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN200910091146.0A CN101998163A (en) | 2009-08-10 | 2009-08-10 | Entitlement management method, terminal equipment and front end |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN200910091146.0A CN101998163A (en) | 2009-08-10 | 2009-08-10 | Entitlement management method, terminal equipment and front end |
Publications (1)
Publication Number | Publication Date |
---|---|
CN101998163A true CN101998163A (en) | 2011-03-30 |
Family
ID=43787626
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN200910091146.0A Pending CN101998163A (en) | 2009-08-10 | 2009-08-10 | Entitlement management method, terminal equipment and front end |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN101998163A (en) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103957429A (en) * | 2012-05-09 | 2014-07-30 | 山东泰信电子有限公司 | Statistical method of system for counting user number of digital televisions |
CN107343210A (en) * | 2017-07-06 | 2017-11-10 | 成都睿胜科技有限公司 | Unidirectional CA EMM bag data sending methods |
-
2009
- 2009-08-10 CN CN200910091146.0A patent/CN101998163A/en active Pending
Cited By (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103957429A (en) * | 2012-05-09 | 2014-07-30 | 山东泰信电子有限公司 | Statistical method of system for counting user number of digital televisions |
CN103957429B (en) * | 2012-05-09 | 2017-02-01 | 山东泰信电子有限公司 | Statistical method of system for counting user number of digital televisions |
CN107343210A (en) * | 2017-07-06 | 2017-11-10 | 成都睿胜科技有限公司 | Unidirectional CA EMM bag data sending methods |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN100380966C (en) | Content playback apparatus, method, and program, and key management apparatus and system | |
TW554627B (en) | Method for operating a conditional access system for broadcast applications | |
JP3015175B2 (en) | Terminal function updating method and device for maintaining secure communication network | |
US7986781B2 (en) | Method for controlling access to encrypted data | |
US8548167B2 (en) | System for traceable decryption of bandwidth-efficient broadcast of encrypted messages and security module revocation method used for securing broadcasted messages | |
US20130262869A1 (en) | Control word protection | |
EP2802152B1 (en) | Method for secure processing a stream of encrypted digital audio / video data | |
CN101282456B (en) | Method and apparatus for receiving digital television condition | |
MXPA04009312A (en) | Smart card mating protocol. | |
JP4691244B2 (en) | Limited reception device and security module of limited reception system, limited reception system, limited reception device authentication method, and encryption communication method | |
CN101513057A (en) | Security processor and recording method and medium for configuring the behaviour of this processor | |
CN101626484A (en) | Method for protecting control word in condition access system, front end and terminal | |
KR20160034286A (en) | Method for protecting decryption keys in a decoder and decoder for implementing said method | |
KR101803974B1 (en) | A method and apparatus for decrypting encrypted content | |
KR101280740B1 (en) | Method to secure access to audio/video content in a decoding unit | |
KR20070064630A (en) | Method for transmitting management messages by a management center addressed to a plurality in multimedia units | |
CN101998163A (en) | Entitlement management method, terminal equipment and front end | |
JP2007174682A (en) | Playback apparatus for playing back content | |
CN100440884C (en) | Local digital network, methods for installing new devices and data broadcast and reception methods in such a network | |
CN101583012B (en) | Method for realizing two-stage condition receiving system and front end and final end of two-stage condition receiving system | |
CN101742236A (en) | Method for preventing and countering smart card from being shared | |
TW201203991A (en) | Protection method, decrypting method, recording medium and terminal for this protection method | |
JP2008294707A (en) | Digital broadcast receiving apparatus | |
CN101729746B (en) | Televiewing control method and device | |
GB2377348A (en) | Security unit for encrypted signal transmission |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C12 | Rejection of a patent application after its publication | ||
RJ01 | Rejection of invention patent application after publication |
Application publication date: 20110330 |