KR101763084B1 - 신뢰의 하드웨어 루트를 사용하는 미디어 클라이언트 장치 인증 - Google Patents
신뢰의 하드웨어 루트를 사용하는 미디어 클라이언트 장치 인증 Download PDFInfo
- Publication number
- KR101763084B1 KR101763084B1 KR1020167004548A KR20167004548A KR101763084B1 KR 101763084 B1 KR101763084 B1 KR 101763084B1 KR 1020167004548 A KR1020167004548 A KR 1020167004548A KR 20167004548 A KR20167004548 A KR 20167004548A KR 101763084 B1 KR101763084 B1 KR 101763084B1
- Authority
- KR
- South Korea
- Prior art keywords
- signature
- firmware
- client
- client device
- key
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
- G06F21/12—Protecting executable software
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
- G06F21/106—Enforcing content protection by specific content processing
- G06F21/1064—Restricting content processing at operating system level
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/44—Program or device authentication
- G06F21/445—Program or device authentication by mutual authentication, e.g. between devices or programs
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/575—Secure boot
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/03—Indexing scheme relating to G06F21/50, monitoring users, programs or devices to maintain the integrity of platforms
- G06F2221/034—Test or assess a computer or a system
-
- G06F2221/0735—
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Software Systems (AREA)
- Theoretical Computer Science (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Multimedia (AREA)
- Technology Law (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Storage Device Security (AREA)
- Stored Programmes (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US201361857656P | 2013-07-23 | 2013-07-23 | |
| US61/857,656 | 2013-07-23 | ||
| PCT/US2014/047830 WO2015013412A1 (en) | 2013-07-23 | 2014-07-23 | Media client device authentication using hardware root of trust |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| KR20160105380A KR20160105380A (ko) | 2016-09-06 |
| KR101763084B1 true KR101763084B1 (ko) | 2017-07-28 |
Family
ID=52393816
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| KR1020167004548A Active KR101763084B1 (ko) | 2013-07-23 | 2014-07-23 | 신뢰의 하드웨어 루트를 사용하는 미디어 클라이언트 장치 인증 |
Country Status (8)
| Country | Link |
|---|---|
| US (2) | US9922178B2 (enExample) |
| EP (1) | EP3025226B1 (enExample) |
| KR (1) | KR101763084B1 (enExample) |
| CN (2) | CN105706048B (enExample) |
| BR (1) | BR112016001608B1 (enExample) |
| CA (1) | CA2919106C (enExample) |
| MX (1) | MX359837B (enExample) |
| WO (1) | WO2015013412A1 (enExample) |
Families Citing this family (23)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20150288659A1 (en) * | 2014-04-03 | 2015-10-08 | Bitdefender IPR Management Ltd. | Systems and Methods for Mutual Integrity Attestation Between A Network Endpoint And A Network Appliance |
| US9830479B2 (en) * | 2014-09-16 | 2017-11-28 | Nxp Usa, Inc. | Key storage and revocation in a secure memory system |
| US10474823B2 (en) * | 2016-02-16 | 2019-11-12 | Atmel Corporation | Controlled secure code authentication |
| US10305885B2 (en) * | 2016-03-03 | 2019-05-28 | Blackberry Limited | Accessing enterprise resources using provisioned certificates |
| US20180176192A1 (en) * | 2016-12-16 | 2018-06-21 | Amazon Technologies, Inc. | Secure data egress for sensitive data across networks |
| US10365908B2 (en) * | 2017-03-24 | 2019-07-30 | Flexera Software Llc | Secure reprogramming of smart devices to alter device functionality based on license rights |
| US11025627B2 (en) * | 2017-07-10 | 2021-06-01 | Intel Corporation | Scalable and secure resource isolation and sharing for IoT networks |
| US11159498B1 (en) | 2018-03-21 | 2021-10-26 | Amazon Technologies, Inc. | Information security proxy service |
| US11347861B2 (en) | 2018-04-10 | 2022-05-31 | Raytheon Company | Controlling security state of commercial off the shelf (COTS) system |
| US10887634B2 (en) * | 2018-07-26 | 2021-01-05 | Wangsu Science & Technology Co., Ltd. | Video resource file acquisition method and management system |
| US11423150B2 (en) * | 2018-09-07 | 2022-08-23 | Raytheon Company | System and method for booting processors with encrypted boot image |
| US11178159B2 (en) | 2018-09-07 | 2021-11-16 | Raytheon Company | Cross-domain solution using network-connected hardware root-of-trust device |
| EP3696698A1 (en) * | 2019-02-18 | 2020-08-19 | Verimatrix | Method of protecting a software program against tampering |
| US11595411B2 (en) | 2019-04-01 | 2023-02-28 | Raytheon Company | Adaptive, multi-layer enterprise data protection and resiliency platform |
| WO2020205497A1 (en) | 2019-04-01 | 2020-10-08 | Raytheon Company | Root of trust assisted access control of secure encrypted drives |
| US11397816B2 (en) * | 2019-07-08 | 2022-07-26 | Dell Products L.P. | Authenticated boot to protect storage system data by restricting image deployment |
| US11379588B2 (en) | 2019-12-20 | 2022-07-05 | Raytheon Company | System validation by hardware root of trust (HRoT) device and system management mode (SMM) |
| CN112232814B (zh) * | 2020-10-14 | 2023-10-27 | 深圳市百富智能新技术有限公司 | 支付密钥的加密和解密方法、支付认证方法及终端设备 |
| US11775690B2 (en) * | 2020-12-02 | 2023-10-03 | Dell Products L.P. | System and method for supporting multiple independent silicon-rooted trusts per system-on-a-chip |
| US12452072B2 (en) * | 2021-09-22 | 2025-10-21 | Hewlett-Packard Development Company, L.P. | Encrypted storage |
| US20250068715A1 (en) * | 2022-01-13 | 2025-02-27 | Hewlett-Packard Development Company, L.P. | Firmware authentication |
| US12238392B2 (en) * | 2022-01-31 | 2025-02-25 | Roku, Inc. | Computing system with device attestation feature |
| EP4221295A1 (en) * | 2022-01-31 | 2023-08-02 | Thales Dis France SAS | Injection of cryptographic material during application delivery |
Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20130152180A1 (en) * | 2011-12-07 | 2013-06-13 | Azuki Systems, Inc. | Device using secure processing zone to establish trust for digital rights management |
Family Cites Families (11)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20040193722A1 (en) | 1999-08-30 | 2004-09-30 | Donovan Kevin Remington Joseph Bartholomew | Universal instant messaging system for the internet |
| KR100744531B1 (ko) * | 2003-12-26 | 2007-08-01 | 한국전자통신연구원 | 무선 단말기용 암호키 관리 시스템 및 방법 |
| US20050154889A1 (en) * | 2004-01-08 | 2005-07-14 | International Business Machines Corporation | Method and system for a flexible lightweight public-key-based mechanism for the GSS protocol |
| GB0514492D0 (en) * | 2005-07-14 | 2005-08-17 | Ntnu Technology Transfer As | Secure media streaming |
| RU2419235C2 (ru) | 2006-05-05 | 2011-05-20 | Интердиджитал Текнолоджиз Корпорейшн | Управление цифровыми правами с использованием методик доверительной обработки |
| DE102006046456B4 (de) * | 2006-09-29 | 2009-11-05 | Infineon Technologies Ag | Schaltkreis-Anordnung, Verfahren zum Hochfahren einer Schaltkreis-Anordnung, Verfahren zum Betreiben einer Schaltkreis-Anordnung und Computerprogrammprodukte |
| DE102008021567B4 (de) | 2008-04-30 | 2018-03-22 | Globalfoundries Inc. | Computersystem mit sicherem Hochlaufmechanismus auf der Grundlage einer Verschlüsselung mit symmetrischem Schlüssel |
| WO2009154526A1 (en) * | 2008-06-19 | 2009-12-23 | Telefonaktiebolaget Lm Ericsson (Publ) | A method and a device for protecting private content |
| US20100082960A1 (en) * | 2008-09-30 | 2010-04-01 | Steve Grobman | Protected network boot of operating system |
| US20120204254A1 (en) * | 2011-02-04 | 2012-08-09 | Motorola Mobility, Inc. | Method and apparatus for managing security state transitions |
| US9184917B2 (en) * | 2011-05-27 | 2015-11-10 | Google Technology Holdings LLC | Method and system for registering a DRM client |
-
2014
- 2014-07-23 CA CA2919106A patent/CA2919106C/en active Active
- 2014-07-23 MX MX2016000881A patent/MX359837B/es active IP Right Grant
- 2014-07-23 US US14/907,152 patent/US9922178B2/en active Active
- 2014-07-23 KR KR1020167004548A patent/KR101763084B1/ko active Active
- 2014-07-23 CN CN201480052380.1A patent/CN105706048B/zh active Active
- 2014-07-23 CN CN201910408869.2A patent/CN110287654B/zh active Active
- 2014-07-23 WO PCT/US2014/047830 patent/WO2015013412A1/en not_active Ceased
- 2014-07-23 BR BR112016001608-4A patent/BR112016001608B1/pt active IP Right Grant
- 2014-07-23 EP EP14829574.4A patent/EP3025226B1/en active Active
-
2018
- 2018-03-19 US US15/925,482 patent/US10395012B2/en active Active
Patent Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20130152180A1 (en) * | 2011-12-07 | 2013-06-13 | Azuki Systems, Inc. | Device using secure processing zone to establish trust for digital rights management |
Also Published As
| Publication number | Publication date |
|---|---|
| US20180211016A1 (en) | 2018-07-26 |
| CN110287654A (zh) | 2019-09-27 |
| US20160162669A1 (en) | 2016-06-09 |
| MX2016000881A (es) | 2016-07-18 |
| EP3025226B1 (en) | 2019-12-04 |
| MX359837B (es) | 2018-10-12 |
| KR20160105380A (ko) | 2016-09-06 |
| CN110287654B (zh) | 2023-09-05 |
| WO2015013412A1 (en) | 2015-01-29 |
| CA2919106A1 (en) | 2015-01-29 |
| BR112016001608A2 (enExample) | 2017-08-29 |
| CN105706048B (zh) | 2019-06-04 |
| US10395012B2 (en) | 2019-08-27 |
| EP3025226A4 (en) | 2017-04-05 |
| BR112016001608B1 (pt) | 2022-11-01 |
| US9922178B2 (en) | 2018-03-20 |
| CN105706048A (zh) | 2016-06-22 |
| EP3025226A1 (en) | 2016-06-01 |
| CA2919106C (en) | 2018-07-17 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| KR101763084B1 (ko) | 신뢰의 하드웨어 루트를 사용하는 미디어 클라이언트 장치 인증 | |
| JP7416775B2 (ja) | 周辺デバイス | |
| JP5314016B2 (ja) | 情報処理装置、暗号鍵の管理方法、コンピュータプログラム及び集積回路 | |
| US9436804B2 (en) | Establishing a unique session key using a hardware functionality scan | |
| US10496811B2 (en) | Counterfeit prevention | |
| US11575501B2 (en) | Preserving aggregation using homomorphic encryption and trusted execution environment, secure against malicious aggregator | |
| US10567362B2 (en) | Method and system for an efficient shared-derived secret provisioning mechanism | |
| CN109328352A (zh) | 靶向安全软件部署 | |
| JP2013514587A (ja) | 証明書失効リストを用いたコンテンツ管理方法 | |
| US9003197B2 (en) | Methods, apparatus and system for authenticating a programmable hardware device and for authenticating commands received in the programmable hardware device from a secure processor | |
| JP2009543208A5 (enExample) | ||
| US7739505B2 (en) | Linking Diffie Hellman with HFS authentication by using a seed | |
| KR20070122502A (ko) | 디바이스 인증을 위한 하드웨어 기능 스캔을 하는 컴퓨터판독가능 매체, 방법 및 시스템 | |
| KR102199464B1 (ko) | 컨소시엄 블록체인 참가 노드 간의 인증 방안 | |
| Martin | Designing Secure IoT Devices with the Arm Platform Security Architecture and Cortex-M33 | |
| Delaune et al. | Formal Security Analysis of Widevine through the {W3C}{EME} Standard | |
| CN113902431B (zh) | 区块链交易方法、装置、存储介质及电子设备 | |
| Chaki et al. | Verification across intellectual property boundaries | |
| Salem | Authentication of Configuration Updates for Remote Field Programmable Gate Arrays with the use of Physical Unclonable Function | |
| WO2025210819A1 (ja) | 処理装置、処理方法、およびプログラム | |
| CN117335991A (zh) | 可执行程序的无证书认证 | |
| Lee | Schemes and Applications for Binding Hardware and Software in Computing Devices | |
| Kim | Formal Analysis and Automatic Code Generation of Security Protocols |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| A201 | Request for examination | ||
| PA0105 | International application |
St.27 status event code: A-0-1-A10-A15-nap-PA0105 |
|
| PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| T12-X000 | Administrative time limit extension not granted |
St.27 status event code: U-3-3-T10-T12-oth-X000 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| N231 | Notification of change of applicant | ||
| PN2301 | Change of applicant |
St.27 status event code: A-3-3-R10-R13-asn-PN2301 St.27 status event code: A-3-3-R10-R11-asn-PN2301 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-3-3-R10-R18-oth-X000 |
|
| PG1501 | Laying open of application |
St.27 status event code: A-1-1-Q10-Q12-nap-PG1501 |
|
| D13-X000 | Search requested |
St.27 status event code: A-1-2-D10-D13-srh-X000 |
|
| D14-X000 | Search report completed |
St.27 status event code: A-1-2-D10-D14-srh-X000 |
|
| E902 | Notification of reason for refusal | ||
| PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| E13-X000 | Pre-grant limitation requested |
St.27 status event code: A-2-3-E10-E13-lim-X000 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| E701 | Decision to grant or registration of patent right | ||
| PE0701 | Decision of registration |
St.27 status event code: A-1-2-D10-D22-exm-PE0701 |
|
| GRNT | Written decision to grant | ||
| PR0701 | Registration of establishment |
St.27 status event code: A-2-4-F10-F11-exm-PR0701 |
|
| PR1002 | Payment of registration fee |
St.27 status event code: A-2-2-U10-U12-oth-PR1002 Fee payment year number: 1 |
|
| PG1601 | Publication of registration |
St.27 status event code: A-4-4-Q10-Q13-nap-PG1601 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 4 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 5 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 6 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 7 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 8 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 9 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |