KR20170016707A - System and method for indoor location based content use control - Google Patents

System and method for indoor location based content use control Download PDF

Info

Publication number
KR20170016707A
KR20170016707A KR1020150110156A KR20150110156A KR20170016707A KR 20170016707 A KR20170016707 A KR 20170016707A KR 1020150110156 A KR1020150110156 A KR 1020150110156A KR 20150110156 A KR20150110156 A KR 20150110156A KR 20170016707 A KR20170016707 A KR 20170016707A
Authority
KR
South Korea
Prior art keywords
content
user terminal
information
license
location
Prior art date
Application number
KR1020150110156A
Other languages
Korean (ko)
Inventor
권혁찬
김신효
문종식
안개일
이석준
정도영
정병호
Original Assignee
한국전자통신연구원
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 한국전자통신연구원 filed Critical 한국전자통신연구원
Priority to KR1020150110156A priority Critical patent/KR20170016707A/en
Publication of KR20170016707A publication Critical patent/KR20170016707A/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/02Services making use of location information
    • H04W4/023Services making use of location information using mutual or relative location information between multiple location based services [LBS] targets or of distance thresholds
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Theoretical Computer Science (AREA)
  • Software Systems (AREA)
  • Technology Law (AREA)
  • Computer Hardware Design (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Multimedia (AREA)
  • Telephonic Communication Services (AREA)
  • Two-Way Televisions, Distribution Of Moving Picture Or The Like (AREA)

Abstract

A step in which the content server generates a license for the content and the content and then encrypts the content and distributes the content to the user terminal using a license; And controlling the use of the contents of the user terminal by comparing the location of the user terminal with the license.

Description

BACKGROUND OF THE INVENTION Field of the Invention [0001] The present invention relates to an indoor location-

The present invention relates to control of location-based content usage in a room, and in the case where a user terminal attempts to use content, a specific user terminal uses the location information of the user terminal measured by a WIPS (Wireless Intrusion Prevention System) Based content usage control system and method.

As the Internet and communication technologies develop, the types and ranges of contents that users can access are gradually expanding, and many contents are distributed and distributed online. Computers, mobile communication terminals, and smart devices are used for distribution and distribution of such contents, and many users can easily access and utilize specific contents using such devices. Particularly, with the development of smart devices, contents that could be shared only by using a fixed device such as a computer due to the capacity of contents have been able to access and acquire them regardless of their location anywhere.

However, in sharing such contents, even a terminal that is not authorized to use can easily access a specific content, which sometimes causes copyright infringement of a content or use of a specific content even in a terminal having no use right .

In order to solve such a problem, there have been proposed methods of protecting contents according to preset authority information. However, there is a problem in that it can not effectively respond to the user's use of contents that are changed flexibly by using only the set authority information, There is a problem that the information can not be utilized as the usage right of contents.

Accordingly, there is a need for a method of using specific content at a specific location using the location information of a user terminal and controlling the use of the content at another location.

Korean Patent Publication No. 2014-0128497 (November 19, 2014)

SUMMARY OF THE INVENTION It is an object of the present invention to provide a method and apparatus for measuring a location of a specific user terminal using a wireless LAN in a room and using the location information of the user terminal In order to control the vehicle.

It is another object of the present invention to make it possible to use a content only when a new right is set even if the content is shared between user terminals, thereby preventing duplication of a specific content and using only a terminal that can use the content .

In order to achieve the above object, in a method of controlling indoor location based content usage according to an embodiment of the present invention, a content server generates a license for content and content, encrypts the content using a license and distributes the encrypted content to a user terminal , Measuring the location of the user terminal in response to an attempt to use the content of the user terminal, and controlling the use of the content of the user terminal by comparing the location of the user terminal with the license.

In the distributing step, the license includes limitation information and permission information. The format of the restriction information is a format indicating a gradually narrower area from left to right, and the permission information is a use level of contents usable by the user terminal .

At this time, the license restriction information and permission information are matched one to one.

In the measuring step, the wireless intrusion prevention system server measures the indoor position of the user terminal by three-dimensional information expressed in the x, y, z coordinate system, and then converts the three-dimensional information into the form of license restriction information .

In the controlling step, the wireless intrusion prevention system server transmits the location information of the user terminal in the license restriction information format to the digital rights management agent of the user terminal through the mobile terminal management system server and the mobile terminal management agent of the user terminal .

The digital rights management agent of the user terminal compares the location information of the user terminal with the format of the license restriction information.

According to an embodiment of the present invention, there is provided an indoor location-based content usage control system including a content server for generating licenses for contents and contents, a digital rights management agent (DRM agent), and a mobile terminal management agent (MDM agent, a wireless anti-infringement system server that measures the position of the user terminal and provides the location of the user terminal to the mobile terminal management system server, and the location information of the user terminal transmitted from the wireless anti- To the mobile terminal management agent of the terminal.

The license includes limitation information and permission information, and the format of the restriction information is a format indicating a gradually narrower region from left to right, and the permission information is a use level of contents usable by the user terminal.

And the license limitation information and permission information are matched on a one-to-one basis.

The wireless intrusion prevention system server measures the indoor position of the user terminal as three-dimensional information expressed in the x, y, z coordinate system, and then converts the three-dimensional information into the form of license restriction information.

The wireless intrusion prevention system server transmits user terminal location information in the form of license restriction information to the digital rights management agent of the user terminal through the mobile terminal management system server and the mobile terminal management agent of the user terminal.

The digital rights management agent of the user terminal is characterized by comparing the location information of the user terminal with the format of the license restriction information.

According to the present invention, it is possible to control the content used by the user terminal by providing the function of controlling the connection of the content based on the location of the user terminal using the indoor location measurement of the user terminal using the wireless LAN.

In addition, according to the present invention, it is possible to control delicate content usage based on a location, and thus a user can control a user terminal so that only a user authorized to use the content can use a specific content in a specific area.

FIG. 1 is a diagram for explaining a configuration of an indoor location-based content use control system according to an embodiment of the present invention.
FIG. 2 is a view for explaining the format of protected content in the indoor location-based content usage control system according to the embodiment of the present invention.
3 is a diagram for explaining the format of a license in the indoor location-based content usage control system according to the embodiment of the present invention.
FIG. 4 is a flowchart illustrating a method for controlling indoor location-based content usage according to an embodiment of the present invention.

DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENTS Hereinafter, preferred embodiments of the present invention will be described in detail with reference to the accompanying drawings in order to facilitate a person skilled in the art to easily carry out the technical idea of the present invention. . In the drawings, the same reference numerals are used to designate the same or similar components throughout the drawings. In the following description of the present invention, a detailed description of known functions and configurations incorporated herein will be omitted when it may make the subject matter of the present invention rather unclear.

DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENTS Hereinafter, an indoor location-based contents usage control system and method according to an embodiment of the present invention will be described in detail with reference to the accompanying drawings.

1 is a view for explaining a configuration of an indoor location-based content use control system. 2 is a diagram for explaining the format of protected content in the indoor location-based content usage control system. 3 is a diagram for explaining the format of a license in the indoor location-based content use control system. 4 is a flowchart for explaining a method for controlling indoor location-based content use.

1, the indoor location-based content usage control system includes a contents server 100, a user terminal 200, a WIPS server 300, And a terminal management system server (MDM server) 400.

At this time, the content server 100 A license server and a service providing server. At this time, the license server encrypts the content according to the request of the service provider, and in order to control whether the content is used according to the location of the user terminal 200, the license server includes permission information, restriction information, content decryption key, A license is issued for each content, and a license is provided according to a content use request of the user terminal 200. [ The service providing server provides the encrypted content to the user terminal 200 according to the distribution request of the user terminal 200. [ At this time, the method of distributing the encrypted content to the user terminal 200 may include various methods such as distributing the content to the employees or the customers in a company or an organization for a fee or free of charge.

Further, the license may include a location policy, which may include the restriction information and the permission information, and the restriction information and the permission information will be described later.

The user terminal 200 may include a digital rights management agent (DRM agent) and a mobile terminal management agent (MDM agent), and the user terminal may include a mobile communication terminal including a smart phone and a smart pad, a notebook computer, .

Here, the digital rights management agent (DRM agent) manages the copyright of the contents using the digital rights management technology. That is, the digital rights management agent (DRM agent) not only allows the authorized user to use the content, but also uses the information including the permission and the restriction information to determine how to use the digital work, The period of use, and the like. Further, the digital rights management agent contacts the license server to use the protected content, obtains the license, and allows the content to be used under the given conditions based on the license.

At this time, the digital rights management agent (DRM agent) of the user terminal 200 compares the location information of the user terminal 200 with the restriction information of the license, and determines whether the content use range of the specific user terminal 200 is permitted .

The mobile terminal management agent (MDM agent) manages the firmware, the software distribution management, the use registration and the tracking management of the user terminal 200 so that the mobile terminal management system server 400 can manage the user terminal 200 remotely, The mobile terminal management system server 400 transmits the status information of the terminal such as terminal registration / approval / withdrawal, remote lock and factory reset upon loss / theft, camera and recording function control, terminal remote diagnosis and A / Receive. Further, the mobile terminal management agent can transmit the location information of the user terminal 200 from the mobile terminal management system server and transmit the received location information to the digital rights management agent.

At this time, the user terminals 200 can share licensed content, but even if the user terminals 200 share the licensed content, the user terminal 200, which receives the licensed content, Content may be available only after a procedure has been completed.

The WIPS server 300 measures the location of the user terminal 200 and provides it to the mobile terminal management system server 400. At this time, the wireless intrusion prevention system server 300 may use a plurality of sensors to measure the position of the user terminal 200. Here, the wireless anti-infringement system server 300 collects the RF signals of the user terminal 200 in the wireless LAN environment using the sensors, and analyzes the RF signals to determine whether the contents used by the user terminal 200 are licensed Standards. At this time, the wireless intrusion prevention system server 300 may measure the indoor position of the user terminal 200 based on the RSSI of each terminal collected by the sensors. At this time, the wireless anti-collision system server 300 can use triangulation, position fingerprint, etc. to measure the position. Furthermore, a location database and drawing data of a building may be stored in the wireless intrusion prevention system server 300.

Also, the wireless anti-infringement system server 300 can operate using an indoor position measurement method including a Bluetooth low energy (BLE) and a tag even if the wireless LAN environment is not used.

The mobile terminal management system server (MDM server) 400 manages the user terminal 200 remotely and manages the firmware of the user terminal 200, software distribution management, usage registration and tracking management, terminal registration / authorization / / Remote lock and factory reset in case of theft, control of camera and recording function, remote diagnosis of terminal, A / S etc. Further, the mobile terminal management system server (MDM server) 400 transmits the location information of the user terminal 200 received from the wireless intrusion prevention system server 300 to the mobile terminal management agent of the user terminal 200 again.

As shown in FIG. 2, the protected content is in a format including ID, metadata, encrypted content, and digital signature. Here, the ID means the ID of the content itself, the metadata can include the encryption method of the protected content, the URL of the issuer and the information of the content provider. The encrypted content means encrypted information. A digital signature is used by the person who provided the content, signed by a private key, to identify who the content provider is and to verify the integrity of the data.

As shown in Figure 3, the content server 100 The license server issues licenses for each content, wherein the license includes key information, identity, restriction information, and authorization information.

Here, the key information may include a master key, a right encryption key (REK), and a content encryption key (CEK). At this time, the master key can be configured differently according to the application of the digital rights management technology, and is used for encrypting the right encryption key (REK). The Right Encryption Key (REK) is used to encrypt the Content Encryption Key (CEK), and the Content Encryption Key (CEK) is used to encrypt the content.

The ID includes the ID of the license issuer, the ID of the content, and the like.

The permission information restricts the usage method of the content, and includes permission to play, view, output, copy, move, edit (edit) the content of the specific user terminal 200, ), Extract, Embed, and so on. Further, the permission information can determine whether or not the specific user terminal 200 can use the content unrestrictedly or not, depending on the condition of the restriction information, in response to the restriction information. Also, the permission information may include a usage period, a use frequency, and the like, and may also include a quality level of a content that can be provided.

At this time, the quality level of the content may include the image quality information of the HD class, the SD class, and the like.

The restriction information is information defining the use condition of the content, and includes a content usage condition such as a usage period of the content, a usage count of the content, a usage history of the user, and restriction of the content to a specific user or group or a specific region. do.

More specifically, as shown in FIG. 3, the type of the restriction information is' left-side 'based on' - 'including' institution-building number-floor-room number ',' company-branch number-building number- You can have a format that means increasingly narrower areas as you go to the right. At this time, the restriction information and the permission information can be matched in a one-to-one relationship, and the user terminal 200 can determine whether or not the content can be used up to a preset level according to predetermined conditions. At this time, the predetermined condition may mean the location information, and the predetermined level means the content use level.

For example, if the restriction information 'A-07- *' is matched with the permission information 'all', it means that the contents can be used without limitation in the 7th building of the institution A. Also, if the restriction information 'A-07-04- *' is matched with the permission information 'reproduction only', this means that the content can be reproduced only in the fourth layer of the 7th building of the organization A. Further, if the restriction information 'A-07-04-451' is matched with the permission information 'not allowed', it means that the contents can not be used in the fourth layer 451 of the 7th building of the organization A.

At this time, as shown in FIG. 3, a collision may occur between the restriction information. In this case, priority information may be given to each restriction information. An example of a priority may be something defined later, or the lowest information may take precedence.

In the example of FIG. 3, if the user terminal 200 in the fourth floor 451 of the A building is to use a specific content, the seventh building of the A building, the fourth building of the A building, The user terminal 200 is in a state of satisfying all the restriction information of the fourth layer 451 of the seventh building of the institution and the user terminal 200 is in a state of satisfying all the conditions of the permission information, The fourth layer 451 takes precedence, so that the user terminal 200 may be disabled to use the content.

4, in the indoor location-based content use control method, a content server generates a license for content and content, and then encrypts the content using the license to distribute the encrypted content to the user terminal (S100 A step S200 of measuring the position of the user terminal in response to a content use attempt of the user terminal, and a step S300 of controlling the use of the content by comparing the position of the user terminal with the license do.

In the step of generating and distributing contents and licenses (SlOO), the license server of the contents server 100 encrypts the contents in accordance with the request of the service provider for the contents, . The encrypted and encrypted content is distributed in accordance with the request of the user terminal 200 through the service providing server of the content server 100. At this time, the user terminal 200 may request the service providing server to purchase and distribute the content. At this time, when the user terminal 200 distributes the content through the service providing server, the user terminal 200 simultaneously receives the protected content and the license. At this time, the license may include a location-based content usage control function. Further, the content server 100 may provide an ID of the content in providing the encrypted content to the user terminal 200. [

If the user terminal 200 attempts to use the content in step S200 of measuring the position of the user terminal, the wireless anti-infringement system server 300 starts to measure the position of the user terminal 200. [ The wireless anti-infringement system server 300 may use sensors to measure the position of the user terminal 200, where the sensors collect RSSI (radio signal strength) of the user terminal 200, The server 300 measures the indoor position of the user terminal 200 as three-dimensional information expressed in the x, y, and z coordinate system using the radio signal strength information. The wireless intrusion prevention system server 300 then uses the x, y, and z coordinates of the location of the user terminal 200 to determine the location of the user terminal 200 in the format of the license restriction information, The fourth floor of the fourth building. In order to convert the coordinates of the location of the user terminal 200 into the format of license restriction information, the wireless intrusion prevention system server 300 is provided with a location database, Data may be stored. Further, the location database, the drawing data of the building, and the like may be shared with the mobile terminal management system server (MDM server) 400 and the user terminal 200 as needed.

In the step S300 of controlling the use of the content by using the location of the user terminal, the wireless intrusion prevention system server 300 transmits to the mobile terminal management system server (MDM server) 400, And transmits the location information of the user terminal 200. The mobile terminal management system server 400 then transmits the location information of the user terminal 200 to the mobile terminal management agent (MDM agent) of the user terminal 200 in the form of a callback event, The management agent (MDM agent) transmits the location information of the transmitted user terminal (200) to the digital rights management agent (DRM agent) in the user terminal (200).

At this time, the location information of the user terminal 200 transmitted from the digital rights management agent (DRM agent) is compared with the format of the license restriction information, and the user terminal 200 ) Of the content.

3, the location of the user terminal 200 measured by the wireless anti-infringement system server 300 through the sensor is (x1, y1, z1) and The wireless infringement prevention system server 300 compares coordinates of a user terminal 200 with a previously inputted location database and drawing data of a building to determine whether the current user terminal 200 It can be measured that it is on the fourth floor 451 of the 7th building of the A agency. The location information of the user terminal 200 is then transmitted to the digital rights management agent of the user terminal 200 through the mobile terminal management system server 400 and the mobile terminal management agent (MDM agent) DRM agent. Then, the digital rights management agent (DRM agent) compares the location of the terminal with the license restriction information and the license information. If the user terminal 200 is located in the 4 th layer 451 of the 7th building of the institution A, It is determined that the use is not permitted and the user terminal 200 can not reproduce the content.

While the present invention has been described in connection with what is presently considered to be practical exemplary embodiments, it is to be understood that the invention is not limited to the disclosed embodiments, but many variations and modifications may be made without departing from the scope of the present invention. It will be understood that the invention may be practiced.

100: content server 200: user terminal
300: Wireless Intrusion Prevention System Server
400: mobile terminal management system server

Claims (1)

After the content server generates the content and the license for the content, encrypting the content using the license and distributing the encrypted content to the user terminal;
Measuring a position of the user terminal in response to an attempt to use the content of the user terminal; And
And comparing the license with the location of the user terminal to control usage of the content of the user terminal.
A method for controlling indoor location based content usage.
KR1020150110156A 2015-08-04 2015-08-04 System and method for indoor location based content use control KR20170016707A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
KR1020150110156A KR20170016707A (en) 2015-08-04 2015-08-04 System and method for indoor location based content use control

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
KR1020150110156A KR20170016707A (en) 2015-08-04 2015-08-04 System and method for indoor location based content use control

Publications (1)

Publication Number Publication Date
KR20170016707A true KR20170016707A (en) 2017-02-14

Family

ID=58121212

Family Applications (1)

Application Number Title Priority Date Filing Date
KR1020150110156A KR20170016707A (en) 2015-08-04 2015-08-04 System and method for indoor location based content use control

Country Status (1)

Country Link
KR (1) KR20170016707A (en)

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20140128497A (en) 2013-04-25 2014-11-06 경기대학교 산학협력단 Apparatus and method for security service

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20140128497A (en) 2013-04-25 2014-11-06 경기대학교 산학협력단 Apparatus and method for security service

Similar Documents

Publication Publication Date Title
US8447986B2 (en) Accessing restricted content based on proximity
CN107211019B (en) Method and apparatus for processing data based on automatically detecting a secure environment
KR100847399B1 (en) Digital rights management using a triangulating geographic locating device
KR100567827B1 (en) Method and apparatus for managing digital rights using portable storage device
TWI411274B (en) Method and apparatus for generating a license
US8230087B2 (en) Enforcing geographic constraints in content distribution
TWI286275B (en) License source apparatus, license destination apparatus, license transfer method, and computer-readable medium for digital content rights
WO2014045699A1 (en) Sensor share control device, method, and computer program
EP1667045B1 (en) Method for managing digital rights using portable storage device
KR20130022846A (en) System and method for sharing content suing nfc in cloud circumstance
CN104008324A (en) Terminal and server for applying security policy, and method of controlling the same
CN103368740A (en) Digital rights managment system, devices, and methods for binding content to an intelligent storage device
KR101590781B1 (en) Method and system for digital contents lending
CN105900398A (en) Systems and methods for fuel dispenser security
JP4847301B2 (en) Content protection system, content protection device, and content protection method
US20100161974A1 (en) Master terminal capable of registering and managing terminals of personal use scope, and method and system using the same
US20060064387A1 (en) Systems and methods for software licensing
JP4826449B2 (en) Information processing system, electronic permission information issuing device, rights issuing device
US20130326591A1 (en) Wireless communication device and wireless communication method
US20120131682A1 (en) Method and apparatus for protecting digital contents
KR20170016707A (en) System and method for indoor location based content use control
US20190362056A1 (en) Information processing apparatus, information processing method, and program
JP4197291B2 (en) COMMUNICATION SYSTEM, COMMUNICATION TERMINAL DEVICE AND COMMUNICATION METHOD
EP2728504A1 (en) License administration device and license administration method
KR101432977B1 (en) System and method for protecting illegal copy of software