CN1815601A - Digital content intelligent playing device and its controllable playing method - Google Patents

Digital content intelligent playing device and its controllable playing method Download PDF

Info

Publication number
CN1815601A
CN1815601A CN 200510007405 CN200510007405A CN1815601A CN 1815601 A CN1815601 A CN 1815601A CN 200510007405 CN200510007405 CN 200510007405 CN 200510007405 A CN200510007405 A CN 200510007405A CN 1815601 A CN1815601 A CN 1815601A
Authority
CN
China
Prior art keywords
intelligent
program
user
server
intelligent key
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN 200510007405
Other languages
Chinese (zh)
Other versions
CN100433161C (en
Inventor
许丰
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Kaichenggaoqing Electronic Technology Co Ltd Beijing
Original Assignee
Kaichenggaoqing Electronic Technology Co Ltd Beijing
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Kaichenggaoqing Electronic Technology Co Ltd Beijing filed Critical Kaichenggaoqing Electronic Technology Co Ltd Beijing
Priority to CNB2005100074059A priority Critical patent/CN100433161C/en
Publication of CN1815601A publication Critical patent/CN1815601A/en
Application granted granted Critical
Publication of CN100433161C publication Critical patent/CN100433161C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The playing back equipment includes one or more intelligent terminals as well as one or more intelligent keys in use for security. At least one intelligent key is as a security module, which is not possible to be replicated completely. Intelligent keys are divided into user type intelligent keys to denote users'ID and/or internal intelligent keys to denote ID of intelligent terminals. At least one intelligent terminal is connected to one or more intelligent keys. In condition of intelligent key is presented, intelligent terminal can process, transfer data or plays data of program. Intelligent key controls playing program. Content server has designed perfect methods for controlling display of local program, display of down loaded networked program, and display of online network program. The invention provides technical safeguard for further networked programs in multimedia.

Description

Digital content intelligent playing device and controllable playing method thereof
Technical field
The present invention relates to a kind of playing device, particularly a kind of digital content intelligent playing device that is provided with Intelligent key also relates to the controllable safe player method of above playing device to program data.
Background technology
Common playing device or title playback terminal; specifically as: multi-media player; the public playback terminal of multimedia; player does not all have safety protection function to the program that will play; because the program of playback terminal itself is to exist among the open FLASH (FLASH is a kind of storer that can read) usually; can arbitrarily read; this makes playback terminal itself can't prevent that piracy from duplicating; just use under the prerequisite of same circuits in imitation; as long as duplicate the FLASH chip, be placed on the circuit board and get final product.
And the program that will play for player; mainly, the program data on the disc protects at present by being encrypted; once after being replicated or deciphering; just can be unlimited on all corresponding players; ground is play when unlimited, and can free download play on network, will upset the operation of whole market like this; for the program developer, the operator can cause tremendous loss.
Summary of the invention
The invention solves the defective that exists in the prior art, a kind of digital content intelligent playing device that can be provided with Intelligent key is provided, also provide above-mentioned intelligent playing device that program data is carried out the method that controllable safety is play.
In order to achieve the above object, intelligent playing device of the present invention, comprise one or more intelligent terminals, be used for safe and secret Intelligent key with one or more, described Intelligent key have at least one be can not complete copy security component, be divided into the inside Intelligent key that is used to represent the usefulness house type Intelligent key of user identity and/or represents the intelligent terminal identity, have at least an intelligent terminal to be connected with one or more Intelligent key, intelligent terminal will move in the presence of Intelligent key, is used for deal with data, transmission data or broadcast program data.
The controllable playing method of intelligent playing device of the present invention is connected with the intelligent terminal of Intelligent key, move in the presence of Intelligent key, is used for deal with data, transmission data or broadcast program data, the broadcast of control program data.
Intelligent playing device of the present invention, utilize not reproducible Intelligent key, participate in the operation of intelligent terminal, make intelligent terminal have non-reproduction, simultaneously, intelligent playing device of the present invention, when playing controlled program, utilize Intelligent key that the broadcast of program is controlled, by content server to different programs, different user authenticates, and authorization message is transferred to user's Intelligent key, can carry out controls playing to local program by user's Intelligent key, and can carry out the controls playing after internet program is downloaded, or the online playing of internet program all designed perfect method, for the networking of multimedia programming from now on provides technical guarantee.
Description of drawings
Fig. 1 represents the exemplary block diagram of smart card in the embodiment of the invention;
Fig. 2 (a) (b) represents the basic operation block scheme of smart card in the embodiment of the invention;
Fig. 3 represents the equipment structure chart block scheme of playback terminal in the embodiment of the invention;
Fig. 4 represents the process flow diagram that the condition of program data on disc in the embodiment of the invention or the hard disk is play;
Fig. 5 represents the device structure synoptic diagram of intelligent playing device in the embodiment of the invention;
Fig. 6 represents the typical structure synoptic diagram of content server in the embodiment of the invention;
Fig. 7 represents to carry out the process flow diagram that condition is play from the network download program in the embodiment of the invention;
Fig. 8 represents that authorization server is to the process flow diagram of playback terminal transmission authorization message in the embodiment of the invention;
Fig. 9 represents delegatable end-to-end programme transmission flow process figure in the embodiment of the invention;
Figure 10 represents in the embodiment of the invention to be that program downloading is appended the process flow diagram of broadcasting time or time;
Figure 11 represents to contain in the embodiment of the invention internet program online playing process flow diagram of the device of category-A Intelligent key.
Embodiment
With reference to accompanying drawing, will be described in detail the specific embodiment of the present invention.
The intelligent playing device that is provided with Intelligent key of the present invention, the HDV Intelligent key) and intelligent terminal comprise that Intelligent key (also claims:, described Intelligent key is that an interior data can not be read or can not be read fully, that is: not reproducible or security component that can not complete copy, the method that realizes described function is a lot, and meeting of the present invention describes in detail in following embodiment.
Described intelligent terminal makes self to possess the part non-reproduction by using Intelligent key, has ensured the legitimacy of actuating unit, according to dissimilar HDV Intelligent key, the protection of intelligent terminal is had different modes:
1.<Intelligent key of intelligent playing device 〉
1.1A class HDV Intelligent key: such HDV Intelligent key possesses CPU (software realization security function) or enciphering/deciphering arithmetic processor (hardware realization security function), and have the Intelligent key of the storer (as: nonvolatile memory) of not reproducible but updatable data, it is a kind of more perfect privacy device:
Described category-A HDV Intelligent key can be a smart card, also claim IC-card, described smart card contains the integrated circuit (IC) chip of storage, encryption and data-handling capacity, such as: the CPU card, PKI card of band coprocessor or the like, the profile of this smart card can be that described integrated circuit (IC) chip is encapsulated on the plastic cards, also can be by other interface shape inputs, output datas such as USB.
Smart card has very strong confidentiality, physically depends on not reproducible storer, the identification system the when encryption system of the use when making card that then places one's entire reliance upon in logic and identification card.
The typical structure of described smart card as shown in Figure 1, the hardware inner structure of smart card is composed as follows: comprising CPU and/or encryption logic, RAM, FLASH/ROM, EEPROM and I/O five parts, is a complete computer security system.User data is placed among the EEPROM of encrypted virtual protection (also can use inner high reliability FLASH, FERAM or other non-volatile memory technology to substitute EEPROM), has the security of height, can't be read out or duplicate.Card operating system and program mask are at ROM or download among the FLASH.The process key that uses in the transaction is placed in the ram space after generating, and loses automatically after the power down, guarantees application security.Smart card needs the developer to develop its operating system and program when being applied to different aspect.
Basic operation mode for smart card is: receive an order from interfacing equipment, give interfacing equipment through handling echo reply information then, every process of commands all will be passed through delivery manager, the cryptographic calculation device, four modules of command interpreter and file manager all will be returned corresponding error message if any one module is wherein found mistake in processing.Its command process is shown in Fig. 2 (a), and its command response process is shown in Fig. 2 (b).Below several modules are elaborated:
(1) data transmission
Delivery manager is responsible for the data communication between HDV smart card and the interfacing equipment, will handle the buffering to the input data in the receiving course, the transmission of response process control data.The agreement that communication is used is the asynchronous half-duplex character transmission agreement of the T=0 of ISO7816-3 defined.
After interfacing equipment powers on to card, at first send a reset answer information (ATR) and give interfacing equipment by card, interfacing equipment transmission command header is come the startup command processing procedure then.Delivery manager is given next functional module and is handled after correctly receiving order, also will return to interfacing equipment to the execution result of this order at last.
(2) secret communication
Data have three types on transmission mode: clear-text way, plaintext verification mode and ciphertext verification mode.Directly give command processing module to the data of transmitting with clear-text way by delivery manager.When transmitting with verification or ciphertext verification mode, data need the cryptographic calculation device that data are processed.
(3) command interpretation
Command interpreter is done grammatical analysis to every order of outside input, and whether analysis and inspection command parameter be correct, carries out corresponding functional modules according to the implication of command parameter then.If find that parameter is wrong, will directly return error message from this module.
(4) file manager
File management control is to the operation and the visit of file.To before the data operations, manager will be according to the safe condition of the security attribute inspection card of file, to determine the feasibility of operation.The security attribute of file and file structure promptly are under the control of manager after security system starts.
As from the foregoing, described smart card is a kind of HDV Intelligent key of perfect in shape and function, can store, renewal, deal with data.
Other can realize the assembly with the smart card identical function, possess CPU that is:, can realize security function (encryption/decryption functionality) by corresponding software, and have storer not reproducible but updatable data, can be category-A HDV Intelligent key of the present invention.
Category-A HDV Intelligent key of the present invention can be following structure also: the single-chip microcomputer or the embedded chip that possess CPU, destroy data by programming and read interface, or use external sensor to start self-destroying function, make its hardware possess non-reproduction, can realize security function (encryption/decryption functionality) by corresponding software, and add not reproducible but renewable storer, more than several aspects combine, also can be the category-A HDV Intelligent key of a perfect in shape and function.Wherein to write all be to write by certain data port to the object code of single-chip microcomputer or embedded chip, usually for verification, also can read, if after correctly writing, after applying high voltage or grind off physical damage such as pin by docking port, read routine reaches not reproducible purpose again.The example that uses external sensor to start self-destruction has: simple method, crust of the device itself have metal wire to connect, open shell after, tinsel disconnects, chip detection starts self-destruction to dropout; Complicated method, the chip exterior circuit makes chip interface possess specific electric parameter by using certain sensor (as resistance, electric capacity, infrared microwave, ultrasonic transmission/reception pipe), when changing, external condition (is removed circuit board as chip, external circuit change etc.), chip detection changes to the specific electric parameter of interface, starts self-destruction.
Category-A HDV Intelligent key of the present invention also can be following structure: realize security functions such as enciphering/deciphering calculation process by hardware, need not programme substantially, add storer not reproducible but updatable data again.
Above-mentioned category-A HDV Intelligent key can be exported the result again after enciphering/deciphering is handled after the input data when verification.
1.2B class HDV Intelligent key: other conditions can be with last described identical, and just this Intelligent key is not provided with the storer of updatable data.It can realize security functions such as enciphering/deciphering calculation process by hardware; perhaps utilize the software encryption and decryption; as: read interface by crossing the single-chip microcomputer or the embedded chip that possess CPU in conjunction with destroying data by programming; or use external sensor to start measure such as self-destroying function to reach its non-reproduction; such HDV Intelligent key is by above protection to hardware; make its software, hardware reach function of keeping secret; such Intelligent key does not have memory function, so just by replying output signal behind the input signal enciphering/deciphering.Such HDV Intelligent key and common encryption equipment are similar.
Above Intelligent key also can make up mutually, simultaneously Intelligent key is encrypted on software, hardware, realizes the structure of the Intelligent key that confidentiality is more powerful.
HDV Intelligent key among the present invention; can or be used to data of verifying legitimacy etc. with plaintext, the ciphertext of multi-medium data; be stored in the storer that can not duplicate fully; can also add the parts of enciphering/deciphering processing capacity in addition; also can be provided for quickening the coprocessor (as having coprocessor of special algorithm such as PKI etc.) of specific enciphering/deciphering computing, can also possess the function of power down protection, promptly otherwise data do not upgrade; all correct the renewal do not have intermediateness.By loading different programs, Intelligent key can have different types.Typically can be divided into be used to represent user identity (also can participate in verifying the legitimacy of intelligent terminal) external type (external type also can be built-in or portable) promptly: user's Intelligent key and be used to represent the inside Intelligent key of the identity (also can participate in verifying user's legitimacy) of intelligent terminal.Intelligent key of the present invention is by the input and output encrypt data, and Useful Information can be stored on the not reproducible storer, thus the security when having guaranteed data storage and transmission.
2,<playback terminal of intelligent playing device 〉
Described intelligent terminal can be a local multimedia play terminal, after above-mentioned HDV Intelligent key is connected, form intelligent playing device of the present invention, playback terminal structurally is provided with the interface that uses one or more HDV Intelligent key, can handle multimedia functions such as literal, image, music, video, also have the processing capacity of certain enciphering/deciphering.Its detailed device structural drawing at first connects the user's Intelligent key that is used to represent user identity as shown in Figure 3 on existing multimedia playing apparatus, can also add the inside Intelligent key that is used to represent the playback terminal identity.User's Intelligent key will comprise a category-A Intelligent key at least, and inner Intelligent key can be above-mentioned category-A, the HDV Intelligent key that category-B or its combine and form.Because Intelligent key is not reproducible, also is not reproducible so be connected with the playback terminal of user's Intelligent key, playback terminal of every production, only correspondence is produced an Intelligent key, thereby reaches the anti-counterfeit capability of playback terminal from hardware.Same other intelligent terminals also utilize coupled Intelligent key to reach false proof purpose.
3.<controllable playing method of intelligent playing device 〉
Because category-A HDV Intelligent key, have storer not reproducible but updatable data, and can store, renewal, deal with data, so use the intelligent terminal that comprises such Intelligent key can realize the condition of program data is play.According to being divided into following several situation to different situations:
3.1 the condition playing device and the method for program data on disc or the hard disk:
Program data has identification information (ID number) on the controlled disc or on the hard disk, plays on the intelligent playing device that is connected with category-A HDV user Intelligent key, stores authorization message with the program identification correspondence in user's Intelligent key at this HDV.Authorization message comprises program identification, if the broadcasting time and the reproduction time of the program play are controlled, will store counter informations such as broadcasting time, reproduction time in user's Intelligent key.All above-mentioned authorization messages all are on the not reproducible reservoir that is stored on described user's Intelligent key, play privacy functions.Behind the identification disc, if effective authorization message of program identification correspondence not and in the disc in user's Intelligent key, program can't be play.The each broadcast removed corresponding broadcasting time or the time counter in the authorization message in user's Intelligent key with bales catch.Process flow diagram is seen Fig. 4.
(1) playback terminal is when broadcast program, at first check on program disc or the hard disk in the program data ID of current program number be in check type, if to (3); Otherwise to (2)
(2) user's Intelligent key produces decruption key and gives playback terminal, plays corresponding program.After finishing, playing programs arrives (6)
(3) in Intelligent key, search corresponding ID number authorization message,, then arrive (6) if do not have; Otherwise to (4)
(4) whether judge in user's Intelligent key the counter values in the authorization message greater than zero, if be zero then to (6); Otherwise to (5)
(5) deduction of the counter in the corresponding ID authorization message is play once required time or number of times in user's Intelligent key,, then arrives (6) if subtract inadequately; Otherwise arrive (2) after the value of deduction counter
(6) check on program disk or the hard disk in the program data whether subsequent program is arranged, then do not finish to play; If have, get back to (1) after finding program
3.2 carry out the device and method that condition is play from the network download program:
In order to realize, and effective controls playing by the network download program, prevent that program from downloading on the net after, can in unlimited time and number of times ground play, cause damage to the program supplier.
Intelligent playing device of the present invention, in order to make the direct access network of intelligent terminal, direct program downloading from the network can be provided with network drive on its intelligent terminal, can also on described intelligent terminal hard disk be set, and is used to store the program data after the download.The equipment structure chart of described intelligent playing device such as Fig. 5 can comprise: content server, intelligent terminal (comprising playback terminal), Intelligent key, network.Playback terminal is connected with content server by network.The typical structure of content server as shown in Figure 6.
Content server can be to have one of following feature or combination of features:
(1) possesses security functions such as authentication, can authenticated identity (actual is that intelligent terminal produces legal log-on message by using user's Intelligent key, and server is by inner Intelligent key or the suitable program verification user identity of security function) and transmission cipher-text information.
(2) possess the function that connects several inner Intelligent key, or connect the function of encryption equipment (that is: category-B HDV Intelligent key), the mainly needs in order to provide a plurality of users to authenticate simultaneously of a plurality of inner Intelligent key are provided here.
(3) possess the function of statistics program, user related information, and can be according to statistical information update service mode.
(4) possesses certain self-safety protection function, this oneself's safety protection function can be not reproducible by above-mentioned band but the category-A HDV Intelligent key of the storer of updatable data protect as inner Intelligent key, on the one hand the information of user's information, program is kept on the storer of this not reproducible but updatable data, by such HDV Intelligent key the data of input and output is separated encryption again; Also can be by the database (as: by the artificial strictly database of management) of maintaining secrecy, add and separate encryption function (as: category-B HDV Intelligent key) when being located at inputoutput data, thereby accomplish self-safeguard protection.
(5) possesses the connection database function.
(6) possesses the function that connects a plurality of and multiple network.
Described content server possesses the function that service is provided on network, can be divided into program server according to the service difference, authorization server, address server and propagation server, these titles are for clearer description each several part service content, and physically these servers can exist on same computing machine or the different computing machine.
(1) program server provides the download service of ciphered program data, can be by transmitting cipher-text information between Intelligent key and intelligent terminal, authorization server;
(2) authorization server provides and downloads confirmation to program server, provides authorization message to user's Intelligent key.All data transmission are preferably by the ciphertext transmission, and the information of ciphertext transmission can use its inner Intelligent key to participate in finishing, and also can verify the legitimacy of user's Intelligent key by inner Intelligent key, and the authorization message of required programs are provided for this user; If each program supplier is provided with an authorization server, program server and authorization server also can unite two into one so;
(3) address server provides the address of program to distribute, and makes things convenient for the user to obtain program or program part according to nearest address, and this server can pass through internal type Intelligent key authenticated identity equally; This address server also can lump together with above two servers;
(4) breed the function that server provides information, commerce services and links to each other with other network.Equally can be by internal type Intelligent key checking card user identity; The content that the added value service server provides comprises: informations on demand such as weather forecast, public transport, news, amusement; Other network connection service, as: the mutual transmission of the chat of note, short message and multimedia message; Ecommerce; Game services and various interactive information and multimedia service.This propagation server is a selectable content.
With program server, authorization server, address server separately, mainly for the ease of management, program server can be any person that can provide the program data, and all user profile and program authorization message all manage in authorization server, and the main user for convenience of address server accelerates speed of download, and the address of each program is managed.
After network download program authentication, the detailed step that the condition of carrying out is play as shown in the figure,
(1) playback terminal that will have a network download program function is connected on the network;
(2) obtain to contain the rendition list of chained address the program address server of playback terminal from network;
(3) user's playback terminal sends application information (sending HDV user's Intelligent key ID, program ID, broadcasting time or reproduction time information and HDV user's Intelligent key random number) according to the rendition list to corresponding program server;
(4) whether program server count (monetary unit that the online purchase program is used) that have to this user of authorization server data base querying (that is: the holder of this ID HDV user Intelligent key) is enough, as enough then arrive (5); Otherwise to (8);
(5) authorization server returns confirmation and gives program server, and program server will allow the user's download program, and the user's download program comprises in the program data of download program ID number, arrives (6) after download is finished; End if download, then arrive (7)
(6) program server sends program and downloads and finish confirmation to authorization server, after authorization server deduct in database that the user is corresponding and is counted, in HDV user's Intelligent key of playback terminal, send authorization message after, arrive (7);
(7) whether the user downloads new program, then gets back to (3) if download, otherwise finishes;
(8) whether the user will supplement with money,, then arrives (7) if do not fill; Otherwise after the user can order multiple flexi mode and realizes supplementing with money by input prepaid card password, online paying, bank transfer, note, to (3).(annotate: after supplementing with money, user's points information will be upgraded in the authorization server database);
(9) playback terminal is according to 3.1 method broadcast program.
During the user applies program, counting that different broadcasting times or reproduction time need can be different.
In (6) step of above-mentioned flow process, for the authorization message that guarantees to transmit between authorization server and playback terminal can be safe and secret, simultaneously can only be between two legal terminal transmission information, the step that authorization server sends authorization message to playback terminal can comprise the steps: as shown in Figure 8
(1) authorization server is obtained ID number and the random number of HDV usefulness user Intelligent key generation of HDV user's Intelligent key of playback terminal connection;
(2) authorization server uses the authorization message encryption main key that the ID dispersion of HDV user's Intelligent key in the playback terminal is produced sub-key, and this sub-key is the key that the relative users Intelligent key uses;
(3) authorization server produces the service end random number;
(4) authorization server obtains cipher-text information with authorization message (comprising program identification, time or the number of times value of appending), HDV user's Intelligent key random number and the service end random number of sub-key ciphered program;
(5) authorization server is given cipher-text information and service end random number HDV user's Intelligent key of playback terminal together;
(6) HDV user's Intelligent key is after inner decrypting ciphertext information, and checking HDV user's Intelligent key random number and service end random number if the checking authorization server is legal, then write authorization message in Intelligent key; If HDV user's Intelligent key can't be decrypted, then HDV user's Intelligent key is illegal, also can't write authorization message, can't carry out normal play;
(7) finish.
In the above program (2) step produces sub-key, and encryption authorization information preferably utilizes described category-A or category-B Intelligent key to realize as inner Intelligent key in (4) step, can guarantee the security of authorization center like this.Simultaneously in order to make anyone can manage authorization server, this inside Intelligent key can also limit and generate the authorization message number of times, promptly whenever offers authorization message of user, and the counter in the Intelligent key can cut respective value.When mutual data transmission, utilize two random numbers, increased the legitimacy and the security of this device.
3.3 delegatable end-to-end programme transmission:
In order to reduce the load of internet program server, solve the contradiction between the parallel outburst of big server handling capacity and the small probability visit capacity, the method for solution is provided.At first complete program is divided into proprietary program data and authorization message two parts, wherein authorization message can only be by playback terminal to the authorization server application, and proprietary program data can be shared, its solution is for also becoming the service side that data are provided when certain netcast terminal user becomes the customer of data download, promptly in the time of the user's download data, also offer other user data, make very little server handling capacity just can hold the program download service of big number of users by effective exchange and relay.But the program data of downloading can not be play, and must store the authorization message of corresponding download in HDV user's Intelligent key.Concrete method as shown in Figure 9, step is as follows:
(1) user can select to download new program or continue to download the program that once interrupted, and deposits and carries the number of attempt counter;
(2) if downloading the number of attempt counter is zero, then arrive (12); Otherwise to (3);
(3) playback terminal obtains the address of service table of the continual renovation of required programs from address server;
(4) from own nearest program source address, if do not have in the resource of other online user or online customer group not any program of needs or the segmentation of program, then program server is directly pointed in the chained address to playback terminal according to address of service table inquiry;
(5) if contain the segmentation that needs program in other online users' the resource, then the program segments from the nearest several sharing users in playback terminal address is pointed in the table of address of service in the chained address;
(6) if what download is the program that does not have in the hard disk, then start anew to download; Otherwise begin to download from breakpoint address;
(7) playback terminal also provides the share service of existing program in the program downloading segmentation;
(7) when connection is broken down, download and point to next address continuation download in the table of chained address;
(8) if all lost efficacy in current all chained addresses, after download number of attempt counter successively decreases, arrive (2)
(10) after all program segments downloads are finished, return to the program site download and finish confirmation;
(11) program can not be play-overed after downloading and finishing, and also needs corresponding authorization message, and authorization message will be updated to according to the method in 3.2 in HDV user's Intelligent key of playback terminal connection;
(12) finish to download.
3.4 for broadcasting time or time are appended in program downloading application, flow process as shown in figure 10,
(1) user is selecting program and broadcasting time that will append or time in the program downloading tabulation;
(2) playback terminal sends application information to authorization server;
Whether (3) inquiring user has authorization server in database counts, enough, then deducts corresponding counting as enough, to (4); Otherwise to (5);
(4) according to real 3.2 method send authorization message in the HDV Intelligent key of playback terminal after, the user just can be according to 3.1 method broadcast program, arrives (6) then;
(5) whether the user will supplement with money,, then arrives (7) if do not fill; Otherwise after the user can order multiple flexi mode and realizes supplementing with money by input prepaid card password, online paying, bank transfer, note, to (6); (annotate: after supplementing with money, user's points information will be upgraded in the authorization center database).
(6) as wanting continuation application then to arrive (1); Otherwise to (7);
(7) finish to download.
3.5 the safety guard of online playing program and method,
Be connected with the device of category-A user Intelligent key for playback terminal, use following flow process protecting network program online playing, process flow diagram as shown in figure 11,
(1) legitimacy of checking playback terminal and coupled Intelligent key; This step also can omit;
(2) playback terminal that will have a network download program function is connected on the network, checks whether to have the reproduction time information that does not send, if there are (17); Otherwise to (3)
(3) obtain to contain the rendition list of chained address the program address server of playback terminal from network, deposit and carry a number of attempt counter;
(4) if downloading the number of attempt counter is zero, then arrive (17); Otherwise to (5);
(5) user sends application information according to the rendition list to corresponding program server;
Whether (6) program server is to counting that this user of authorization server data base querying has, enough, as enough then arrive (7); Otherwise to (16);
(7) authorization server withhold play whole program required count and return authorization information is given playback terminal;
(8) playback terminal obtains the address of service table of the continual renovation of required programs from address server;
(9) from own nearest program source address, if do not have in the resource of other online user or online customer group not any program of needs or the segmentation of program, then program server is directly pointed in the chained address to playback terminal according to address of service table inquiry;
(10) if contain the segmentation that needs program in other online users' the resource, then the program segments from the nearest several sharing users in playback terminal address is pointed in the table of address of service in the chained address;
(11) the playback terminal data download is put into first-level buffer, begins to play the first-level buffer data after piling, and data download is to level 2 buffering simultaneously, after the first-level buffer data playback finishes, begin to play the level 2 buffering data, continue data download simultaneously to first-level buffer, so repeatedly.While playback terminal recorded program ID and reproduction time information.
(12) when connection is broken down, download and point to next address continuation download in the table of chained address;
(13) if all lost efficacy in current all chained addresses, after download number of attempt counter successively decreases, arrive (4)
(14) after playing programs is finished, return to program server and authorization server confirmation; Authorization server will confirm to deduct counting of having withheld.
(15) whether the user plays new program, then gets back to (3) if play; Otherwise to (18)
(16) whether the user will supplement with money,, then arrives (18) if do not fill; Otherwise after the user can order multiple flexi mode and realizes supplementing with money by input prepaid card password, online paying, bank transfer, note, to (3).(annotate: after supplementing with money, user's points information will be upgraded in the authorization server database).
(17) playback terminal returns reproduction time information to authorization server, and authorization server will recover the preceding Counter Value of withholding, and the numerical value of deduction real consumption, and playback terminal is received and confirmed will remove reproduction time information after the deduction information.To (3)
(18) finish to play
(11) step in buffering also can be multi-buffer.
4.<intelligent terminal of intelligent playing device 〉
Intelligent terminal of the present invention can be above 2,3 described playback terminals, is connected with user's Intelligent key, carries out playing program jointly.
Intelligent terminal also can be described authorization server, by coupled inside Intelligent key (category-A HDV Intelligent key or category-B HDV Intelligent key add the private data storehouse), the leading subscriber data, the identity of authenticated Intelligent key is for user's Intelligent key provides the ciphertext authorization message.
For described program server, address server, the propagation server also can connect inner Intelligent key as authorization server, and the identity of authenticated Intelligent key is by official's transmission information.
Intelligent terminal also can be an internet program copy terminal, according to the method described in 3, by connected user's Intelligent key and content server authentication, program downloading is to the storer of self, again program is copied to the player hard disk or be made into CD, for online search of network player saving and download time, there is not the player of network interface that new program is provided.
Described intelligent terminal also can be a cell server, according to the method described in 3, by user's Intelligent key and the content server authentication of self, the program that speed of download is slower copies or downloads to the storer of self, provide high-speed downloads to serve by sub-district high-speed local area network or broadband networks again, identity (the being user's Intelligent key) authentication of community user is undertaken by one or more internal type Intelligent key to community user.The purpose of using a plurality of internal type Intelligent key is to visit simultaneously in order to offer user as much as possible, as user's maximum latency is 2 seconds, use 8 internal type Intelligent key just can realize about 100 people on-line authentication simultaneously, by 2% user while on-line authentication probability, be equivalent to provide about 5000 user groups service.
As from the foregoing, intelligent terminal also can be not used in broadcast program, only is used for the intermediate conveyor program data, the safe transmission of the program data that realization will be play.More than two class intelligent terminals also can think two kinds of content servers.

Claims (23)

1, a kind of intelligent playing device, it is characterized in that, comprise one or more intelligent terminals, be used for safe and secret Intelligent key with one or more, described Intelligent key have at least one be can not complete copy security component, be divided into and be used to represent the user's Intelligent key of user identity and/or the inside Intelligent key of expression intelligent terminal identity, have at least an intelligent terminal to be connected with one or more Intelligent key, intelligent terminal will move in the presence of Intelligent key, is used for deal with data, transmission data or broadcast program data.
2, intelligent playing device according to claim 1 is characterized in that, described Intelligent key possesses the enciphering/deciphering function, be used for by the ciphertext input/output information, and it is soft, hardware and/or internal data can not complete copy.
3, intelligent playing device according to claim 2 is characterized in that, described Intelligent key is to have storer not reproducible but updatable data, is used for the data of storing subscriber information and/or program authorization message.
4, intelligent playing device according to claim 3 is characterized in that, described Intelligent key is the PKI card of CPU card or band coprocessor.
5, according to the arbitrary described intelligent playing device of claim 1 to 4, it is characterized in that, described intelligent terminal comprises one or more multimedia play terminals, described each playback terminal structurally is provided with the interface that uses one or more Intelligent key, can handle multimedia programming, described each playback terminal is connected with user's Intelligent key that has the storer of not reproducible but updatable data at least.
6, intelligent playing device according to claim 5; it is characterized in that; described intelligent terminal also comprises the content server that possesses self-safety protection function; described content server is connected by network with described other intelligent terminals, intelligent terminal program downloading authorization message and/or program data from the content server.
7, intelligent playing device according to claim 6 is characterized in that, described content server has the function of statistics program and/or user related information, can and send authorization message to user's Intelligent key by ciphertext authenticated identity.
8, intelligent playing device according to claim 7, it is characterized in that, described content server connects one or more inner Intelligent key, utilize this inside Intelligent key and user's Intelligent key to carry out the authenticated identity and send authorization message, and/or utilize this inside Intelligent key to control the legal operation of described content server to user's Intelligent key.
9, intelligent playing device according to claim 8, it is characterized in that, described content server comprises authorization server, program server, described authorization server, program server is by network interconnection, and wherein authorization server is used to add up user related information, and authenticated identity and transmission ciphertext authorization message are to user's Intelligent key; Described program server is used to provide the download service of ciphered program.
10, intelligent playing device according to claim 9 is characterized in that, described content server comprises address server, and the statistics programme information provides the address of program to distribute.
11, intelligent playing device according to claim 10 is characterized in that, described content server comprises the propagation server, the function that described propagation server provides information, commerce services and links to each other with other network.
12, intelligent playing device according to claim 8, it is characterized in that, on the content server of the inside Intelligent key that is connected with one or more authenticated identity, also be connected with one or more user's Intelligent key, be used for obtaining service from the other guide server as the power user.
13, intelligent playing device according to claim 8, it is characterized in that, the intelligent terminal of intelligent playing device comprises internet program copy terminal, by connected user's Intelligent key and content server authentication, the program downloading data copy program to other player hard disks again or are made into CD to the storer of self.
14, as the controllable playing method of the arbitrary described intelligent playing device of claim 1 to 13, it is characterized in that being connected with the intelligent terminal of Intelligent key, to in the presence of Intelligent key, move, be used for deal with data, transmission data or broadcast program data, the broadcast of control program data.
15, the controllable playing method of intelligent playing device according to claim 14, it is characterized in that, described user's Intelligent key is to have storer not reproducible but updatable data, be used to store the data of identifying user identity and/or program authorization message, the controlled ciphered program data of playing contain identification information, but on the not reproducible reservoir of described Intelligent key, store the corresponding authorization message of broadcast program sign, during broadcast, during the effective authorization message of the program identification correspondence that has in user's Intelligent key and will play, user's Intelligent key produces decruption key and gives playback terminal, playback terminal broadcast program.
16, the controllable playing method of intelligent playing device according to claim 15 is characterized in that each the broadcast bales catch except that corresponding broadcasting time or time counter in the authorization message in user's Intelligent key.
17, the controllable playing method of intelligent playing device according to claim 16, it is characterized in that, described intelligent terminal is connected with content server by network, store user and programme information on the content server, by the user's Intelligent key to intelligent terminal authenticate legal after, send the program authorization message to described user's Intelligent key.
18, the controllable playing method of intelligent playing device according to claim 17, it is characterized in that, program data is downloaded from content server by network, intelligent terminal is play after being stored in the program data of being downloaded on the storage facilities again, and perhaps intelligent terminal program downloading data are play while downloading to multi-buffer, realize online online playing, perhaps behind the program data that intelligent terminal is downloaded, as content server, for other intelligent terminals provide service.
19, the controllable playing method of intelligent playing device according to claim 18, it is characterized in that, described content server comprises described authorization server, program server, and the method for authenticated identity and program downloading data and authorization message may further comprise the steps:
(1) user's intelligent terminal sends application program information to program server;
Whether (2) program server is to counting that this user of authorization server data base querying has, enough, as enough then arrive (4); Otherwise to (3);
(3) forward (1) after the user supplements with money to and reenter the application program flow process;
(4) authorization server returns confirmation and gives program server, and program server will allow the user's download program, and the user's download program arrives (5) after download is finished;
(5) program server sends program and downloads and finish confirmation to authorization server, after authorization server deduct in database that the user is corresponding and is counted, and transmission ciphertext authorization message in user's Intelligent key of intelligent terminal.
20, the controllable playing method of intelligent playing device according to claim 19, it is characterized in that, before above-mentioned (1) step, obtain to contain the rendition list of chained address the program address server of intelligent terminal from network, send application program information to corresponding program server according to the rendition list.
According to the controllable playing method of the arbitrary described intelligent playing device of claim 17 to 20, it is characterized in that 21, described content server sends the ciphertext authorization message in user's Intelligent key method may further comprise the steps:
(1) content server is obtained ID number and the random number of user's Intelligent key generation of user's Intelligent key of intelligent terminal connection;
(2) content server uses the authorization message encryption main key that the ID dispersion of this user's Intelligent key is produced sub-key;
(3) content server produces the service end random number;
(4) content server obtains cipher-text information with authorization message, user's Intelligent key random number and the service end random number of sub-key ciphered program;
(5) content server is given user's Intelligent key together with cipher-text information and service end random number;
(6) user's Intelligent key is after inner decrypting ciphertext information, and checking user's Intelligent key random number and service end random number if the checking content server is legal, then write authorization message in user's Intelligent key.
22, the controllable playing method of the described intelligent playing device of claim 21 is characterized in that, the method that program data is downloaded may further comprise the steps:
(1) user selects to download new program or continues to download the program that once interrupted;
(2) intelligent terminal obtains the address of service table of the continual renovation of required programs from address server;
(3) from own nearest program source address, if do not have in the resource of other online user or online customer group not any program of needs or the segmentation of program, then program server is directly pointed in the chained address to intelligent terminal according to address of service table inquiry;
(4) if contain the segmentation that needs program in other online users' the resource, then the program segments of or several sharing users that speed of download the fastest nearest from the playback terminal address in the watch of address of service is pointed in the chained address; (5) if what download is the program that does not have in the hard disk, then start anew to download; Otherwise begin to download from breakpoint address;
(6) intelligent terminal also provides the share service of existing program in the program downloading segmentation;
(7) when connection is broken down, download and point to next address continuation download in the table of chained address;
(8) if all lost efficacy in current all chained addresses, arrive (10)
(9) after all program segments downloads are finished, return to the program server download and finish confirmation;
(10) finish to download.
23, the controllable playing method of intelligent playing device according to claim 22, it is characterized in that, during online online playing, after the application, content server is withheld and is play required the counting and return the ciphertext authorization message and give playback terminal of whole program, playback terminal utilizes authorization message by user's Intelligent key, the deciphering program data, playback terminal program downloading data are to multi-buffer, play while downloading, after finishing playing, playback terminal returns to program server and authorization server confirmation; Authorization server will confirm to deduct counting of should having detained.
CNB2005100074059A 2005-02-05 2005-02-05 Digital content intelligent playing device and its controllable playing method Expired - Fee Related CN100433161C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2005100074059A CN100433161C (en) 2005-02-05 2005-02-05 Digital content intelligent playing device and its controllable playing method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2005100074059A CN100433161C (en) 2005-02-05 2005-02-05 Digital content intelligent playing device and its controllable playing method

Publications (2)

Publication Number Publication Date
CN1815601A true CN1815601A (en) 2006-08-09
CN100433161C CN100433161C (en) 2008-11-12

Family

ID=36907745

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005100074059A Expired - Fee Related CN100433161C (en) 2005-02-05 2005-02-05 Digital content intelligent playing device and its controllable playing method

Country Status (1)

Country Link
CN (1) CN100433161C (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102572519A (en) * 2011-12-30 2012-07-11 四川长虹电器股份有限公司 IC card repair method in conditional access system

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020068632A1 (en) * 2000-12-06 2002-06-06 Shayne Dunlap Interconnection of users via a communications network, for competitive gaming
KR100340282B1 (en) * 2001-07-14 2002-06-14 정광균 Portable multimedia device and control method thereof
CN100407616C (en) * 2002-05-08 2008-07-30 英华达股份有限公司 Method for automatic ally updating network system pins
KR100512271B1 (en) * 2002-06-27 2005-09-02 현대디지텍 주식회사 Device and processing method for recoding/playing visitor's picture in home automation system

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102572519A (en) * 2011-12-30 2012-07-11 四川长虹电器股份有限公司 IC card repair method in conditional access system
CN102572519B (en) * 2011-12-30 2014-08-20 四川长虹电器股份有限公司 IC card repair method in conditional access system

Also Published As

Publication number Publication date
CN100433161C (en) 2008-11-12

Similar Documents

Publication Publication Date Title
CN100337478C (en) A private key acquiring method for use in set-top box
CN1225711C (en) Digital content issuing system and digital content issuing method
CN1280737C (en) Safety authentication method for movable storage device and read and write identification device
KR101081729B1 (en) Reprogrammable security for controlling piracy and enabling interactive content
US20220353085A1 (en) Secure distributed information system for public device authentication
CN1150050C (en) Interactive gaming system
US9026804B2 (en) Methods and apparatus for protected distribution of applications and media content
CN1658112A (en) Conditional access to digital rights management conversion
US8763110B2 (en) Apparatuses for binding content to a separate memory device
CN1689361A (en) Robust and flexible digital rights management involving a tamper-resistant identity module
CN1588386A (en) System and method for realizing article information detection by radio frequency identification and mobile communication combination
CN105069876A (en) Control method and system for intelligent access control
CN1780361A (en) Digital audio/video data processing unit and method for controlling access to said data
CN1271448A (en) Portable electronic device for safe communication system, and method for initialising its parameters
CN1675881A (en) Monitoring of digital content provided from a content provider over a network
CN1388968A (en) Recording/reproducing method and recorder/reproducer for record medium containing copyright management data
CN1860471A (en) Digital rights management structure, portable storage device, and contents management method using the portable storage device
CN1879155A (en) Secure multimedia content delivery on storage media
CN1736078A (en) Secure logging of transactions
CN1350670A (en) Public cryptographic control unit and system therefor
US20080115211A1 (en) Methods for binding content to a separate memory device
CN1897027A (en) Authentication services using mobile device
US10880091B2 (en) Control method for enrolling face template data and related product
CN1812416A (en) Method for managing consumption of digital contents within a client domain and devices implementing this method
TW200302654A (en) Methods and apparatus for secure distribution of program content

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
PP01 Preservation of patent right

Effective date of registration: 20090527

Pledge (preservation): Preservation

PD01 Discharge of preservation of patent

Date of cancellation: 20100527

Granted publication date: 20081112

C17 Cessation of patent right
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20081112

Termination date: 20110205