CN1852432A - Method for enciphering and deciphering living-broadcasting flow-medium data - Google Patents

Method for enciphering and deciphering living-broadcasting flow-medium data Download PDF

Info

Publication number
CN1852432A
CN1852432A CN 200510135652 CN200510135652A CN1852432A CN 1852432 A CN1852432 A CN 1852432A CN 200510135652 CN200510135652 CN 200510135652 CN 200510135652 A CN200510135652 A CN 200510135652A CN 1852432 A CN1852432 A CN 1852432A
Authority
CN
China
Prior art keywords
key
current
random number
live broadcast
stream media
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN 200510135652
Other languages
Chinese (zh)
Other versions
CN100401769C (en
Inventor
李耀辉
孙超
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CNB2005101356527A priority Critical patent/CN100401769C/en
Publication of CN1852432A publication Critical patent/CN1852432A/en
Application granted granted Critical
Publication of CN100401769C publication Critical patent/CN100401769C/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Two-Way Televisions, Distribution Of Moving Picture Or The Like (AREA)

Abstract

The encryption method includes steps: based on random number of cryptographic key current obtained, generated content key, and algorithm setup for deriving key, encryptor calculates current encryption key; using the current encryption key encrypts data of stream media in living broadcast. The decryption method includes steps: from media transport network, user terminal receives encrypted data of stream media in living broadcast with random number of cryptographic key; based on random number of cryptographic key carried by data of stream media in living broadcast, content key sent from copyright center, and algorithm setup in advance for deriving key, user terminal calculates current decryption key; based on the said current decryption key, the user terminal decrypts the encrypted data of stream media in living broadcast. The invention raises difficulty of obtaining cryptographic key to be used in encryption and decryption so as to enhance security.

Description

A kind of method of the live broadcast stream media data being carried out encryption and decryption
Technical field
The present invention relates to digital copyright management (DRM) technology, particularly relate to a kind of method that the live broadcast stream media data are carried out method of encrypting and the live broadcast stream media data are decrypted.
Background technology
The DRM technology be along with Streaming Media on the internet wide-scale distribution and a kind of new technology of growing up.The purpose of DRM technology is the copyright of protection digital content, improves pirate technical threshold and cost technically, guarantees to have only the user who buys copyright enjoying digital content in accordance with under the condition of copyright rule.
The streaming media service of carrying out at present mainly is divided into live broadcast stream media and puts broadcasting flow-medium.The live broadcast stream media business is just as the TV programme of traditional sense, and media server is play stream media data always; Then only when the user triggers, media server just sends to the user with stream medium data to the program request streaming media service.
Fig. 1 is the structural representation of DRM system.Fig. 2 is the flow chart that prior art adopts the DRM technology live broadcast stream media data to be carried out encryption and decryption.Referring to Fig. 1 and Fig. 2, in the prior art, adopt the DRM technology that the live broadcast stream media data are carried out encryption and decryption, thereby the process that makes terminal finally obtain the live broadcast stream media data specifically may further comprise the steps:
Step 201: when a program issue, encryption equipment produces a content key (CEK) and content identification (ContentId), and this CEK and the ContentId that is produced is sent to the copyright center by escape way.
For ease of describing, below the program described in this step is referred to as program 1.
Here, the copyright center is by receiving ContentId and CEK who obtains program 1 correspondence.
Step 202: encryption equipment obtains the live broadcast stream media data of carrying program 1 from program source.
Step 203: encryption equipment uses a CEK who is produced to encrypt this live broadcast stream media data, and the live broadcast stream media data after will encrypting are sent to the Media Delivery Network network.
Here, the Media Delivery Network ruton is crossed and is received the live broadcast stream media data of obtaining carrying program 1.
So far, encryption equipment has then been finished the live broadcast stream media data has been carried out encrypted process.
Step 204: user terminal obtains the relevant information of program 1 from electronic program guides (EPG).
Here, comprise the unique resource localizer (URL) of program 1 and the URL at copyright center in the relevant information of the program 1 that user terminal obtained, the information such as SDP file name of the ContentId of program 1 and program 1.
Step 205: the instruction of obtaining the broadcast program 1 of user input when user terminal, and after determining self not have the copyright of this program 1, the prompting user buys copyright.
Step 206: obtain the purchase copyright instruction of user input when user terminal after, the URL according to the copyright center of this program 1 correspondence sends the copyright request of the ContentId that carries program 1 to the copyright center of correspondence.
Step 207: after the copyright center receives the copyright request, obtain a CEK of program 1 correspondence, and a CEK of program 1 correspondence obtained is sent to user terminal according to the ContentId that wherein carries.
Here, user terminal gets access to 1 CEK of program 1 correspondence by reception.
Step 208: user terminal obtains the live broadcast stream media data of the carrying program 1 after the encryption from Media Delivery Network.
Step 209: a CEK of program 1 correspondence that user terminal is sent according to the copyright center is decrypted the live broadcast stream media data of the carrying program 1 that obtained, obtains the original contents of program 1.
So far then finished the live broadcast stream media data are promptly carried the process that the live broadcast stream media data of program 1 are decrypted, user terminal then can be play the original contents of the program 1 that decrypts to the user.
By above description as can be seen, in the prior art, when encryption equipment need be encrypted the live broadcast stream media data, just encrypt by a CEK who produces, and in whole ciphering process, this CEK remains constant, has therefore caused the encryption level of ciphering process lower, greatly reduces the live broadcast stream media safety of data transmission.Correspondingly, user terminal is when being decrypted the live broadcast stream media data that receive, also a unique constant CEK using when encrypting of the encryption equipment of only sending according to the copyright center is decrypted, and therefore, has greatly reduced the fail safe to live broadcast stream media data decryption process.
Summary of the invention
In view of this, main purpose of the present invention is to provide a kind of the live broadcast stream media data is carried out method of encrypting and a kind of method that the live broadcast stream media data are decrypted, to improve the live broadcast stream media safety of data.
In order to achieve the above object, technical scheme of the present invention is achieved in that
A kind of the live broadcast stream media data are carried out method of encrypting, may further comprise the steps:
A, encryption equipment produce the content key of program;
B, when need be encrypt the time to the live broadcast stream media data of carrying program, encryption equipment obtains current key random number;
C, encryption equipment derive the current encryption key of algorithm computation according to current key random number, the content key that is produced and the key that sets in advance, and use this current encryption key that calculates that the live broadcast stream media data of carrying program are encrypted.
In step B, the step that described encryption equipment obtains the current key random number comprises: encryption equipment produces a current key random number in real time.
This method further comprises: the security key change cycle is set, and whenever timing arrives security key change during the cycle, encryption equipment produces the key random number;
In step B, the step that described encryption equipment obtains the current key random number comprises: encryption equipment changes the key random number that produces in the cycle as the current key random number with current key.
The described step that the security key change cycle is set comprises: according to the disposal ability of encrypting requirement and/or user terminal be set the security key change cycle.
Described steps A further comprises: encryption equipment is sent to the copyright center with the content key of the program that produced;
Described step C further comprises: encryption equipment is carried at the key random number of current use in the live broadcast stream media data after the encryption and is sent to the Media Delivery Network network;
After step C, further comprise:
After D, copyright center received the copyright request that user terminal sends, the content key of the program that encryption equipment is sent was sent to user terminal;
E, user terminal receive the live broadcast stream media data after the encryption of carrying the key random number from the Media Delivery Network network, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, the content key that send at the copyright center and the key that sets in advance;
F, user terminal are decrypted the live broadcast stream media data after encrypting according to resulting current decruption key.
In steps A, encryption equipment produces and is sent to the number of content key at copyright center greater than 1;
In steps A, described encryption equipment comprises the step that content key is sent to the copyright center: encryption equipment is respectively each content key that is produced corresponding sequence number is set, and is sent to the copyright center after according to the pairing sequence number of each content key each content key being arranged in order;
In step C, the step that described encryption equipment calculates current encryption key comprises: encryption equipment is selected a content key from a plurality of content keys that produced, and derives the current encryption key of algorithm computation according to current key random number, selected content key and the key that sets in advance;
Described step C further comprises: encryption equipment is carried at selected content key corresponding sequence number in the live broadcast stream media data after the encryption and is sent to the Media Delivery Network network;
In step D, the content key that the copyright center is sent to user terminal be encryption equipment send arrange in order after all the elements key;
In step e, carry the content key corresponding sequence number in the live broadcast stream media data that user terminal receives from the Media Delivery Network network;
In step e, the step that described user terminal calculates current decruption key comprises: user terminal is according to the content key corresponding sequence number of carrying in the live broadcast stream media data, from all the elements key that send at the copyright center, select a content key, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, selected content key and the key that sets in advance then.
In step e, after the live broadcast stream media data that user terminal receives, and before calculating current decruption key, further comprise: user terminal judges that whether preserving this in self receives key random number entrained in the live broadcast stream media data,
If do not preserve, then continue to carry out the step of the current decruption key of described calculating, and, user terminal is derived algorithm and is calculated respectively under the current key random number corresponding to the decruption key of this other each content key according to other content key and the key that sets in advance except that the selected content key that this receives that key random number entrained in the live broadcast stream media data, copyright center send, and preserves the current key random number then and corresponds respectively to the current key random number and the decruption key of each content key;
If preserve, user terminal then receives content key corresponding sequence number entrained in the live broadcast stream media data according to current, from all the elements key that send at the copyright center, select a content key, receive key random number entrained in the live broadcast stream media data according to current then, in all decruption keys of current entrained key random number corresponding to this of self preserving and each content key, decruption key that will be corresponding with the selected content key is as current decruption key, execution in step F.
In steps A, described encryption equipment comprises for the step that each content key is provided with corresponding sequence number: encryption equipment is provided with each content key corresponding sequence number respectively according to the sequencing that produces or the sequencing of each content key initial.
A kind of method that the live broadcast stream media data are decrypted, this method comprises:
After a, copyright center received the copyright request that user terminal sends, the content key of the program that encryption equipment is sent was sent to user terminal;
B, user terminal receive the live broadcast stream media data after the encryption of carrying the key random number from the Media Delivery Network network, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, the content key that send at the copyright center and the key that sets in advance;
C, user terminal are decrypted the live broadcast stream media data after encrypting according to resulting current decruption key.
In step a, the content key that the copyright center is sent to user terminal is a plurality of content keys after arranging in order;
In step b, carry the content key corresponding sequence number of using when encrypting in the live broadcast stream media data that user terminal receives;
In step b, the step that described user terminal calculates current decruption key comprises: user terminal is according to the content key corresponding sequence number of carrying in the live broadcast stream media data, from all the elements key that send at the copyright center, select a content key, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, selected content key and the key that sets in advance then.
In step b, after user terminal receives the live broadcast stream media data, and before calculating current decruption key, further comprise: user terminal judges that whether preserving this in self receives key random number entrained in the live broadcast stream media data,
If do not preserve, then continue to carry out the step of the current decruption key of described calculating, and, user terminal is derived algorithm and is calculated respectively under the current key random number corresponding to the decruption key of this other each content key according to other content key and the key that sets in advance except that the selected content key that this receives that key random number entrained in the live broadcast stream media data, copyright center send, and preserves the current key random number then and corresponds respectively to the current key random number and the decruption key of each content key;
If preserve, user terminal then receives content key corresponding sequence number entrained in the live broadcast stream media data select a content key from all the elements key that send at the copyright center according to current, receive key random number entrained in the live broadcast stream media data according to current then, in all decruption keys that self preserves corresponding to current entrained key random number and each content key, decruption key that will be corresponding with the selected content key is as current decruption key, execution in step c.
As seen, the method for the present invention's proposition has the following advantages:
1, the present invention's employed key when the live broadcast stream media data are encrypted is that key random number, CEK and key derivation algorithm that produces by encryption equipment calculates, rather than directly produce in the prior art, therefore, improved the difficulty of obtaining the key that uses when encrypting, increase the encryption level of encryption equipment, improved the fail safe that the live broadcast stream media data are encrypted.
2, in the present invention, the key random number of calculating the key that uses when encrypting is periodically variable, and CEK selects from a plurality of CEK that produced in real time, that is to say, employed key is transformable during encryption, rather than use a changeless ciphering key EK to encrypt in the prior art, therefore, further improved the fail safe that the live broadcast stream media data are encrypted.
3, the present invention's employed decruption key when the live broadcast stream media data are decrypted is resulting by CEK and a key derivation algorithm of key random number, correspondence, rather than directly use a fixing decruption key CEK in the prior art, therefore, improved the difficulty of the key that uses when obtaining deciphering, just increase the difficulty of deciphering, improved the fail safe when the live broadcast stream media data are decrypted greatly.
4, in the present invention, because encrypting pusher side key random number is periodically change, that is to say, at security key change in the cycle, the key that is adopted during encryption all is identical, like this, when receiving the live broadcast stream media data of carrying program 1 first, user terminal has calculated the corresponding respectively decruption key corresponding to the different CEK of same key random number, in the follow-up live broadcast stream media data that receive when being decrypted,, that is to say in the cycle at security key change, under the constant situation of the key random number of in the live broadcast stream media data, carrying, user terminal all need not to carry out according to the key random number again, CEK and key are derived the complicated processes of algorithm computation decruption key, therefore, greatly reduced requirement, improved deciphering efficient the user terminal processes ability.
Description of drawings
Fig. 1 is the structural representation of DRM system.
Fig. 2 is the flow chart that prior art adopts the DRM technology live broadcast stream media data to be carried out encryption and decryption.
Fig. 3 is the flow chart that the present invention adopts the DRM technology that the live broadcast stream media data are encrypted.
Fig. 4 is the flow chart that the present invention adopts the DRM technology that the live broadcast stream media data are decrypted.
Embodiment
The present invention proposes and a kind of the live broadcast stream media data are carried out method of encrypting, its core concept is: encryption equipment produces the content key of program; In the time need encrypting the live broadcast stream media data of carrying program, encryption equipment obtains current key random number; Encryption equipment is derived the algorithm computation current key according to current key random number, the content key that is produced and the key that sets in advance, and uses this current key that calculates that the live broadcast stream media data of carrying program are encrypted.
The present invention has correspondingly also proposed a kind of method that the live broadcast stream media data are decrypted, and its core concept is: after the copyright center received the copyright request that user terminal sends, the content key of the program that encryption equipment is sent was sent to user terminal; User terminal receives the live broadcast stream media data of the carrying program that carries the key random number, obtains current decruption key according to key random number entrained in these live broadcast stream media data, the content key that send at the copyright center and the key derivation algorithm that sets in advance; User terminal is decrypted according to the live broadcast stream media data of resulting current decruption key to the carrying program.
As seen, when the present invention carries out encryption and decryption to the live broadcast stream media data the encryption key and the decruption key that use respectively obtain according to key random number, content key and an algorithm, rather than directly produce in the prior art, therefore, can improve the encryption and decryption fail safe.
In the business realizing of reality, encryption equipment can produce a plurality of content keys, and encryption equipment and user terminal can be further carry out encryption and decryption according to the content key of an agreement, thereby further improve the encryption and decryption fail safe.
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with drawings and the specific embodiments.
Fig. 3 is the flow chart that the present invention adopts the DRM technology that the live broadcast stream media data are encrypted.Referring to Fig. 1 and Fig. 3, the present invention carries out encrypted process to the live broadcast stream media data and specifically may further comprise the steps:
Step 301: key is set in encryption equipment in advance derives algorithm.
Step 302: when the program initial release, encryption equipment produces ContentId and a plurality of CEK at this program, and is that all CEK that produced are provided with corresponding sequence number respectively.
Here, encryption equipment is when being provided with corresponding sequence number respectively for a plurality of CEK, can each CEK corresponding sequence number be set according to the sequencing that produces, also can be according to other rule, such as the sequencing of each CEK initial each CEK corresponding sequence number etc. is set.
For ease of describing, below the program described in this step is referred to as program 1.
Step 303: encryption equipment is sent to the copyright center with ContentId and all CEK of program 1 by escape way, and the copyright center obtains ContentId and all CEK of program 1 by reception.
Here, encryption equipment when all CEK are sent to the copyright center, be according to all CEK respectively corresponding sequence number be sent to the copyright center after all CEK are arranged in order, thereby guarantee in subsequent process, can find corresponding CEK by sequence number.
Step 304: encryption equipment obtains the live broadcast stream media data of carrying program 1 from program source.
Step 305: encryption equipment obtains the key random number of using when this is encrypted, and selects a CEK from all CEK of program 1.
Here, the process that encryption equipment obtains the key random number of using when this is encrypted can be: when encryption equipment is encrypted in these live broadcast stream media data to carrying program 1, produce a key random number in real time, and will be somebody's turn to do the key random number of using when the key random number that produces in real time is retrieved as this encryption.
In addition, owing to the encryption to the live broadcast stream media data is a real-time process,, then can increase the service load quantity of encryption equipment greatly if when encrypting each time, all need to produce in real time the key random number.Therefore, preferably, the present invention can be provided with a security key change cycle in advance in encryption equipment, and whenever timing arrives security key change during the cycle, encryption equipment produces the key random number again, and all produces the key random number when need not to encrypt at every turn.Like this, in this step, the key random number of using when this that encryption equipment obtained encrypted is the key random number that is produced in the cycle at current security key change.In addition, the present invention can be according to the actual encrypted of live broadcast stream media data being required and/or the disposal ability of user terminal is provided with the length in security key change cycle.Such as, have relatively high expectations and the disposal ability of user terminal when strong when encryption, can be provided with the security key change cycle shorter, require lower and disposal ability user terminal when relatively poor when encrypting, can be provided with the security key change cycle longer.
Step 306: encryption equipment uses key random number, current selected CEK that is obtained and the key that sets in advance derivation algorithm computation to go out a key, is designated as SK, and uses this key SK to encrypt the live broadcast stream media data of carrying program 1.
Step 307: the key random number that encryption equipment uses when current selected CEK corresponding sequence number and this are encrypted is carried in the live broadcast stream media data after the encryption and is sent to the Media Delivery Network network.
The key random number of using when here, encryption equipment is encrypted current selected CEK corresponding sequence number and this is carried at the mode of encrypting in the live broadcast stream media data of back and can be exemplified as: the key random number that encryption equipment uses when according to the ISMACrypto standard selected CEK corresponding sequence number and this being encrypted is encapsulated in the live broadcast stream media data after the encryption; And/or, the key random number that encryption equipment uses when carrying selected CEK corresponding sequence number and this encryption by designated parameters in the live broadcast stream media data after encrypting etc.
The Media Delivery Network ruton is crossed and is received the live broadcast stream media data of obtaining carrying program 1.
So far, encryption equipment has then been finished the live broadcast stream media data has been carried out encrypted process.
Fig. 4 is the flow chart that the present invention adopts the DRM technology that the live broadcast stream media data are decrypted.Referring to Fig. 1 and Fig. 4, after through the encryption to the live broadcast stream media data in the above-mentioned process shown in Figure 3, the present invention specifically may further comprise the steps the process that the live broadcast stream media data are decrypted:
Step 401: key is set in user terminal in advance derives algorithm.
Here, in user terminal set key to derive algorithm identical with the key derivation algorithm that is provided with in encryption equipment in advance.
Step 402: user terminal obtains the relevant information of program 1 from EPG.
Here, comprise the URL of program 1 and the URL at copyright center in the relevant information of the program 1 that user terminal obtained, the information such as SDP file name of the ContentId of program 1 and program 1.
Step 403: the instruction of obtaining the broadcast program 1 of user input when user terminal, and after determining self not have the copyright of this program 1, the prompting user buys copyright.
Step 404: obtain the purchase copyright instruction of user input when user terminal after, the URL according to the copyright center of this program 1 correspondence sends the copyright request of the ContentId that carries program 1 to the copyright center of correspondence.
Above-mentioned steps 402 is identical with the respective process of prior art to the process of step 404.
Step 405: after the copyright center receives the copyright request, obtain all CEK of program 1 correspondence that encryption equipment sends according to the ContentId that wherein carries, and all CEK of program 1 correspondence obtained are sent to user terminal, user terminal is preserved all CEK of program 1 correspondence.
Here, all CEK that the copyright center is sent to user terminal be encryption equipment send arrange in order after all CEK, thereby can guarantee that in subsequent process user terminal can find corresponding CEK according to sequence number.
Step 406: user terminal receives the live broadcast stream media data after the encryption of carrying corresponding sequence number of CEK and key random number from the Media Delivery Network network.
Step 407: user terminal judges that whether preserving this in self receives key random number entrained in the live broadcast stream media data, if then execution in step 409, otherwise, execution in step 408.
Step 408: user terminal is according to the content key corresponding sequence number of carrying in these live broadcast stream media data, from all the elements key that send at the copyright center, select a content key, derive the current decruption key of algorithm computation, execution in step 411 according to key random number entrained in these live broadcast stream media data, selected content key and the key that sets in advance then.
In this step 408, do not receive key random number entrained in the live broadcast stream media data owing to preserve this in the user terminal, that is to say, current corresponding to the new security key change cycle of encrypting pusher side, so user terminal can also receive key random number entrained in the live broadcast stream media data according to this, other the content key except that the selected content key that send at the copyright center, and the key that sets in advance is derived algorithm and is calculated under the current key random number decruption key corresponding to this other each content key respectively, and preserve the current key random number and correspond respectively to the current key random number and each decruption key of each content key, thereby be convenient in the subsequent process, current security key change in the cycle user terminal all can from each decruption key of being preserved, directly obtain the required decruption key of deciphering, avoid shortcoming in current security key change double counting in the cycle.
Step 409: user terminal receives content key corresponding sequence number entrained in the live broadcast stream media data select a content key from all the elements key that send at the copyright center according to current.
Step 410: user terminal receives key random number entrained in the live broadcast stream media data according to current, in all decruption keys corresponding to current entrained key random number and each content key that self preserves, decruption key that will be corresponding with the selected content key is as current decruption key.
Here, because encrypting pusher side key random number is periodically change, that is to say, at security key change in the cycle, the key random number that is adopted during encryption all is identical, like this, if all decruption keys at current security key change same key random number and each CEK in user terminal has calculated corresponding to the current key change cycle in reception before in the cycle, so, in this step, receive key random number entrained in the live broadcast stream media data owing to preserve this in the user terminal self, that is to say, this receives with reception last time and is in same security key change in the cycle, like this, user terminal only needs to obtain current decruption key from all decruption keys corresponding to same key random number and each CEK that a security key change calculates in the cycle first and gets final product, and need not to carry out again according to the key random number, CEK and key are derived the complicated processes of algorithm computation decruption key, therefore, greatly reduced requirement, improved deciphering efficient the user terminal processes ability.
Need to prove that above-mentioned steps 407 to the process of step 410 is the better embodiment that the present invention obtains current decruption key.In concrete business realizing of the present invention, step 407 to the process of step 410 also can be: during live broadcast stream media data after at every turn receiving encryption, user terminal is all according to the content key corresponding sequence number of carrying in the live broadcast stream media data, from all the elements key that send at the copyright center, select a content key, derive the current decruption key of algorithm computation according to key random number entrained in the live broadcast stream media data, selected content key and the key that sets in advance then.
Step 411: the current decruption key that the user terminal use obtains is decrypted the live broadcast stream media data of the carrying program 1 after encrypting, and obtains the original contents of this program that receives 1.
So far then finished the live broadcast stream media data are promptly carried the process that the live broadcast stream media data of program 1 are decrypted, user terminal then can be play the original contents of the program 1 that decrypts to the user.
In a word, the above is preferred embodiment of the present invention only, is not to be used to limit protection scope of the present invention.Within the spirit and principles in the present invention all, any modification of being done, be equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (11)

1, a kind of the live broadcast stream media data are carried out method of encrypting, it is characterized in that this method may further comprise the steps:
A, encryption equipment produce the content key of program;
B, when need be encrypt the time to the live broadcast stream media data of carrying program, encryption equipment obtains current key random number;
C, encryption equipment derive the current encryption key of algorithm computation according to current key random number, the content key that is produced and the key that sets in advance, and use this current encryption key that calculates that the live broadcast stream media data of carrying program are encrypted.
2, method according to claim 1 is characterized in that, in step B, the step that described encryption equipment obtains the current key random number comprises: encryption equipment produces a current key random number in real time.
3, method according to claim 1 is characterized in that, this method further comprises: the security key change cycle is set, and whenever timing arrives security key change during the cycle, encryption equipment produces the key random number;
In step B, the step that described encryption equipment obtains the current key random number comprises: encryption equipment changes the key random number that produces in the cycle as the current key random number with current key.
4, method according to claim 3 is characterized in that, the described step that the security key change cycle is set comprises: according to the disposal ability of encrypting requirement and/or user terminal be set the security key change cycle.
5, method according to claim 1 is characterized in that, described steps A further comprises: encryption equipment is sent to the copyright center with the content key of the program that produced;
Described step C further comprises: encryption equipment is carried at the key random number of current use in the live broadcast stream media data after the encryption and is sent to the Media Delivery Network network;
After step C, further comprise:
After D, copyright center received the copyright request that user terminal sends, the content key of the program that encryption equipment is sent was sent to user terminal;
E, user terminal receive the live broadcast stream media data after the encryption of carrying the key random number from the Media Delivery Network network, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, the content key that send at the copyright center and the key that sets in advance;
F, user terminal are decrypted the live broadcast stream media data after encrypting according to resulting current decruption key.
6, method according to claim 5 is characterized in that, in steps A, encryption equipment produces and be sent to the number of content key at copyright center greater than 1;
In steps A, described encryption equipment comprises the step that content key is sent to the copyright center: encryption equipment is respectively each content key that is produced corresponding sequence number is set, and is sent to the copyright center after according to the pairing sequence number of each content key each content key being arranged in order;
In step C, the step that described encryption equipment calculates current encryption key comprises: encryption equipment is selected a content key from a plurality of content keys that produced, and derives the current encryption key of algorithm computation according to current key random number, selected content key and the key that sets in advance;
Described step C further comprises: encryption equipment is carried at selected content key corresponding sequence number in the live broadcast stream media data after the encryption and is sent to the Media Delivery Network network;
In step D, the content key that the copyright center is sent to user terminal be encryption equipment send arrange in order after all the elements key;
In step e, carry the content key corresponding sequence number in the live broadcast stream media data that user terminal receives from the Media Delivery Network network;
In step e, the step that described user terminal calculates current decruption key comprises: user terminal is according to the content key corresponding sequence number of carrying in the live broadcast stream media data, from all the elements key that send at the copyright center, select a content key, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, selected content key and the key that sets in advance then.
7, method according to claim 6, it is characterized in that, in step e, after the live broadcast stream media data that user terminal receives, and before calculating current decruption key, further comprise: user terminal judges that whether preserving this in self receives key random number entrained in the live broadcast stream media data
If do not preserve, then continue to carry out the step of the current decruption key of described calculating, and, user terminal is derived algorithm and is calculated respectively under the current key random number corresponding to the decruption key of this other each content key according to other content key and the key that sets in advance except that the selected content key that this receives that key random number entrained in the live broadcast stream media data, copyright center send, and preserves the current key random number then and corresponds respectively to the current key random number and the decruption key of each content key;
If preserve, user terminal then receives content key corresponding sequence number entrained in the live broadcast stream media data according to current, from all the elements key that send at the copyright center, select a content key, receive key random number entrained in the live broadcast stream media data according to current then, in all decruption keys of current entrained key random number corresponding to this of self preserving and each content key, decruption key that will be corresponding with the selected content key is as current decruption key, execution in step F.
8, method according to claim 6, it is characterized in that, in steps A, described encryption equipment comprises for the step that each content key is provided with corresponding sequence number: encryption equipment is provided with each content key corresponding sequence number respectively according to the sequencing that produces or the sequencing of each content key initial.
9, a kind of method that the live broadcast stream media data are decrypted is characterized in that, this method comprises:
After a, copyright center received the copyright request that user terminal sends, the content key of the program that encryption equipment is sent was sent to user terminal;
B, user terminal receive the live broadcast stream media data after the encryption of carrying the key random number from the Media Delivery Network network, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, the content key that send at the copyright center and the key that sets in advance;
C, user terminal are decrypted the live broadcast stream media data after encrypting according to resulting current decruption key.
10, method according to claim 9 is characterized in that,
In step a, the content key that the copyright center is sent to user terminal is a plurality of content keys after arranging in order;
In step b, carry the content key corresponding sequence number of using when encrypting in the live broadcast stream media data that user terminal receives;
In step b, the step that described user terminal calculates current decruption key comprises: user terminal is according to the content key corresponding sequence number of carrying in the live broadcast stream media data, from all the elements key that send at the copyright center, select a content key, derive the current decruption key of algorithm computation according to key random number entrained in these live broadcast stream media data, selected content key and the key that sets in advance then.
11, method according to claim 10, it is characterized in that, in step b, after user terminal receives the live broadcast stream media data, and before calculating current decruption key, further comprise: user terminal judges that whether preserving this in self receives key random number entrained in the live broadcast stream media data
If do not preserve, then continue to carry out the step of the current decruption key of described calculating, and, user terminal is derived algorithm and is calculated respectively under the current key random number corresponding to the decruption key of this other each content key according to other content key and the key that sets in advance except that the selected content key that this receives that key random number entrained in the live broadcast stream media data, copyright center send, and preserves the current key random number then and corresponds respectively to the current key random number and the decruption key of all the elements key;
If preserve, user terminal then receives content key corresponding sequence number entrained in the live broadcast stream media data select a content key from all the elements key that send at the copyright center according to current, receive key random number entrained in the live broadcast stream media data according to current then, in all decruption keys that self preserves corresponding to current entrained key random number and each content key, decruption key that will be corresponding with the selected content key is as current decruption key, execution in step c.
CNB2005101356527A 2005-12-27 2005-12-27 Method for enciphering and deciphering living-broadcasting flow-medium data Active CN100401769C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2005101356527A CN100401769C (en) 2005-12-27 2005-12-27 Method for enciphering and deciphering living-broadcasting flow-medium data

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2005101356527A CN100401769C (en) 2005-12-27 2005-12-27 Method for enciphering and deciphering living-broadcasting flow-medium data

Publications (2)

Publication Number Publication Date
CN1852432A true CN1852432A (en) 2006-10-25
CN100401769C CN100401769C (en) 2008-07-09

Family

ID=37133899

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005101356527A Active CN100401769C (en) 2005-12-27 2005-12-27 Method for enciphering and deciphering living-broadcasting flow-medium data

Country Status (1)

Country Link
CN (1) CN100401769C (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101207794B (en) * 2006-12-19 2010-06-16 中兴通讯股份有限公司 Method for enciphering and deciphering number copyright management of IPTV system
CN101951315A (en) * 2010-09-10 2011-01-19 中国联合网络通信集团有限公司 Key processing method and device
CN1946018B (en) * 2006-10-26 2011-01-19 中兴通讯股份有限公司 Encrypting and de-encrypting method for medium flow
CN101051906B (en) * 2007-05-14 2011-11-23 北京大学 Method for transmitting and receiving stream type media and certifying system for stream type media
CN101345624B (en) * 2007-07-09 2012-02-29 李树德 Document access system and method
CN102571790A (en) * 2011-12-31 2012-07-11 上海聚力传媒技术有限公司 Method and device for implementing encrypted transmission of target files
CN102685592A (en) * 2012-02-17 2012-09-19 南京邮电大学 Streaming media player method supporting digital rights management
CN103248474A (en) * 2012-02-01 2013-08-14 华为技术有限公司 Encryption and decryption method and device for streaming media
CN104661082A (en) * 2015-02-04 2015-05-27 深圳创维数字技术有限公司 Program source data protecting method and relating devices
CN106571925A (en) * 2016-10-24 2017-04-19 北京云图科瑞科技有限公司 Method of carrying out proof of work on block in block chain system and device thereof

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2004034634A1 (en) * 2002-10-09 2004-04-22 Matsushita Electric Industrial Co., Ltd. Encryption apparatus, decryption apparatus and encryption system
KR100813954B1 (en) * 2003-01-16 2008-03-14 삼성전자주식회사 Data Encryption apparatus and method
CN100362444C (en) * 2005-07-08 2008-01-16 北京影立驰技术有限公司 Digital copyright protection method and system

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1946018B (en) * 2006-10-26 2011-01-19 中兴通讯股份有限公司 Encrypting and de-encrypting method for medium flow
CN101207794B (en) * 2006-12-19 2010-06-16 中兴通讯股份有限公司 Method for enciphering and deciphering number copyright management of IPTV system
CN101051906B (en) * 2007-05-14 2011-11-23 北京大学 Method for transmitting and receiving stream type media and certifying system for stream type media
CN101345624B (en) * 2007-07-09 2012-02-29 李树德 Document access system and method
CN101951315A (en) * 2010-09-10 2011-01-19 中国联合网络通信集团有限公司 Key processing method and device
CN102571790B (en) * 2011-12-31 2015-11-25 上海聚力传媒技术有限公司 A kind of method and apparatus of the encrypted transmission for realize target file
CN102571790A (en) * 2011-12-31 2012-07-11 上海聚力传媒技术有限公司 Method and device for implementing encrypted transmission of target files
CN103248474A (en) * 2012-02-01 2013-08-14 华为技术有限公司 Encryption and decryption method and device for streaming media
CN103248474B (en) * 2012-02-01 2016-08-10 华为技术有限公司 A kind of encryption and decryption method and device of Streaming Media
CN102685592A (en) * 2012-02-17 2012-09-19 南京邮电大学 Streaming media player method supporting digital rights management
CN104661082A (en) * 2015-02-04 2015-05-27 深圳创维数字技术有限公司 Program source data protecting method and relating devices
CN106571925A (en) * 2016-10-24 2017-04-19 北京云图科瑞科技有限公司 Method of carrying out proof of work on block in block chain system and device thereof
CN106571925B (en) * 2016-10-24 2020-07-10 北京云图科瑞科技有限公司 Method and device for carrying out workload certification on blocks in block chain system

Also Published As

Publication number Publication date
CN100401769C (en) 2008-07-09

Similar Documents

Publication Publication Date Title
CN1852432A (en) Method for enciphering and deciphering living-broadcasting flow-medium data
CN1287595C (en) Content distribution/protecing method and apparatus
CN1310463C (en) Method for tracing traitor receivers in a broadcast encryption system
CN1174578C (en) Process for data certification by scrambling and certification system using such process
CN1852420A (en) Method for realizing digital copyright management of altermative network TV system
CN1859084A (en) Enciphering and deenciphering method for request broadcast stream media data of mocro soft media format
CN101061666A (en) Method for managing digital rights in broadcast/multicast service
CN101035255A (en) System, protection method and server for realizing the virtual channel service
CN1961370A (en) Method and apparatus for playing back content based on digital rights management, and portable storage
CN101040275A (en) Contents encryption method, system and method for providing contents through network using the encryption method
CN1527529A (en) Information video-audio system and information broadcasting machine and information providing device
CN101032167A (en) Method for broadcasting digital data to a targeted set of reception terminals
CN1777274A (en) Flow media content protection method based on motion audio-video stardard file format
CN101040526A (en) Digital rights management of a digital device
CN1929369A (en) Method and apparatus for securely transmitting and receiving data in peer-to-peer manner
CN1728633A (en) Method of providing access to encrypted content, device for providing access to encrypted content and method of generating a secure content package
CN1812416A (en) Method for managing consumption of digital contents within a client domain and devices implementing this method
CN1296789C (en) Method and apparatus for secure content distribution
CN1874218A (en) Method, system and equipment for license management
CN1863041A (en) Method for implementing network television programme preview
CN1851604A (en) Digital copyright protection system and method
CN1549595A (en) Information transmitting method and apparatus for interactive digital broadcast television system
CN1817040A (en) Method of broadcasting multimedia content via a distribution network
CN1258920C (en) Secure digital content delivery system and method over broadcast network
CN1607831A (en) Bidirectional real-time authentication digital television conditional receiving system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant