TWI300928B - - Google Patents

Download PDF

Info

Publication number
TWI300928B
TWI300928B TW95119079A TW95119079A TWI300928B TW I300928 B TWI300928 B TW I300928B TW 95119079 A TW95119079 A TW 95119079A TW 95119079 A TW95119079 A TW 95119079A TW I300928 B TWI300928 B TW I300928B
Authority
TW
Taiwan
Prior art keywords
read
digital storage
storage medium
write
code
Prior art date
Application number
TW95119079A
Other languages
Chinese (zh)
Other versions
TW200744096A (en
Inventor
Yu Chiun Kuo
Tsang Yi Chen
Yu Chang Tseng
Liang Chen Wu
Hsieh Chun Chen
pei-ying Wu
You-Ren Chen
Original Assignee
Transcend Information Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Transcend Information Inc filed Critical Transcend Information Inc
Priority to TW095119079A priority Critical patent/TW200744096A/en
Publication of TW200744096A publication Critical patent/TW200744096A/en
Application granted granted Critical
Publication of TWI300928B publication Critical patent/TWI300928B/zh

Links

Landscapes

  • Storage Device Security (AREA)

Description

1300928 九、發明說明: 【發明所屬之技術領域】 本發明係為一種數位儲存媒體之權限管理方法,特別是關 於一種具微控制器之可被讀/寫的數位儲存媒體,可授權讀 寫裝置依權限讀/寫數位儲存媒體,以保護機密資料或數位 版權。 【先前技術】 按,由於數位科技的進步,目前電腦設備的儲存媒體, 以及消費電子產品的儲存媒體,其儲存容量不斷地擴大, 如電腦用硬碟機、光碟儲存媒體(MD、CD —RW、dvd±rw)、usb 儲存器(大拇哥或行動碟)或快閃記憶卡(Flash Card),而 快閃兄憶卡又有許多種類,如CF(C〇mpact Fiash)、 SM(Smart Media)、SD(Secure Digital)、MMC(Multi Media1300928 IX. Description of the Invention: [Technical Field] The present invention relates to a method for managing rights of a digital storage medium, and more particularly to a digital storage medium with a microcontroller that can be read/written, and can authorize a read/write device. Read/write digital storage media by permission to protect confidential information or digital rights. [Prior Art] According to the advancement of digital technology, the storage media of computer devices and the storage media of consumer electronic products continue to expand, such as computer hard disk drives and optical disk storage media (MD, CD-RW). , dvd±rw), usb storage (big thumb or mobile disc) or flash memory card (Flash Card), and flash flash memory card has many types, such as CF (C〇mpact Fiash), SM (Smart Media) , SD (Secure Digital), MMC (Multi Media

Card) xD(xD-Picture Card)及MS(Memory Stick)…等等。 然而上述的數位儲存媒體大都具有體積小、儲存容量 大的優點’且大都為開放式,意即可任意寫入或讀取儲存 媒體内的資料。為了保護機密資料,或者保護數位版權 (Digital Rights Management, DRM),坊間業者設計了許 多加/解密機制,或者身份認證的機制,以防止他人任意存 取數位資料。 但目别現有的保護機制大部份是針對數位資料本身 作保4 ’而非針對數位儲存媒體作保護,或是制定新硬體 規才儲存L式的方式保護,如SD記憶卡的CPRM(Content 1300928Card) xD (xD-Picture Card) and MS (Memory Stick)...etc. However, most of the above-mentioned digital storage media have the advantages of small size and large storage capacity, and most of them are open-type, so that the data in the storage medium can be arbitrarily written or read. In order to protect confidential information or to protect Digital Rights Management (DRM), the industry has designed many encryption/decryption mechanisms or identity authentication mechanisms to prevent others from accessing digital data. However, most of the existing protection mechanisms are for the digital data itself to protect 4' instead of protecting the digital storage medium, or to develop a new hardware program to store the L-style protection, such as the CPRM of the SD memory card ( Content 1300928

Protection for Recordable Media)保護機制,且主要使 用在符合CPRM授權的讀寫裝置所儲存的資料,因此無法與 其他讀寫裝置相容,形成無法普及的缺點。 另外’以數位出版品的版權保護(D⑽)來說,如電影 光碟或遊戲光碟,因光碟片本身並沒有控制及運算的機 制,且目前有許多的軟硬體可以破解版權保護,進行非法 稷製’實在很難有絲護,主要是因版權媒體本身益法判 定讀取裝置是否具合法授權,且以光碟片為主的數位 =目=壓片或燒錄後即無法再更新,無法達成資源再利用 職是’本案發明人即為解決上述現有數位儲存媒體益 配人ί保護㈣儲存資料的錢與缺失,乃特潛心研究i 法::Γί運用’提出一種數位儲存媒體之權限管理方 穿置盘==於現有具微控制器的數位儲存媒體,利用讀寫 再授權讀寫裝置依權限進行讀或广寫裝 算功能之, w的動作,以期取代無運 的目的 錄獅護或個人機好料保護 【發明内容】 法,主要可由該-種數位儲存媒體的權限管理2 護數位版權或保護個人讀寫*置,作為荷 寫裝置讀/寫權限的方式確數位儲存媒體授權部 確保貝料不會被非法複製。 1300928 數位述目的:本發明之技術特徵係在於提供-種 控制器及記恃限:理方法’該數位儲存媒體内設有微 在該數⑽ΐ 可爐—讀寫裝置,該方法首先需 ^八 子媒體中預儲一分級授權代碼表及複數分級運 曰々,並且針對不同的讀寫裝置設定識別碼,當數位儲 :媒體與讀寫裝置進軸接時,該微控制器會與讀寫裝置Protection for Recordable Media) is mainly used in data stored in read/write devices that are authorized by CPRM, and therefore cannot be compatible with other read/write devices, resulting in the disadvantage of being unpopular. In addition, in the case of copyright protection (D(10)) for digital publications, such as movie discs or game discs, there is no mechanism for controlling and computing the disc itself, and there are many software and hardware that can crack copyright protection and illegally It is difficult to have silk protection, mainly because the copyright media itself determines whether the reading device is legally authorized, and the number of the disc-based digits = the target = tablet or can not be updated after burning, can not be achieved The resource re-use is 'the inventor of this case is to solve the above-mentioned existing digital storage media. 保护 保护 ( ( ( ( ( ( 四 四 四 四 四 储存 储存 储存 储存 储存 储存 储存 储存 储存 储存 储存 储存 储存 : : : : : : : 运用 运用 运用 运用 运用 运用 运用 运用 运用 运用 运用Wear the disk == in the existing digital storage media with a microcontroller, use the read and write re-authorization of the reading and writing device according to the authority to read or write the function of the operation, w action, in order to replace the purpose of the recordless lion protection or Personal machine good material protection [invention content] The law can be mainly managed by the authority of the digital storage medium 2 protects the digital copyright or protects the personal reading and writing * as the writing device / Write permissions to determine the way digital storage media authorization department to ensure that shellfish is not expected to be illegally copied. 1300928 Digital Description: The technical feature of the present invention is to provide a controller and a recording limit: the method of 'the digital storage medium is provided with the number (10) ΐ oven-reading device, the method first requires eight The media pre-stores a hierarchical authorization code table and a plurality of hierarchical operations, and sets an identification code for different read/write devices. When the digital storage: the media and the read/write device are connected, the microcontroller and the read/write device

提Γ:=議,執行分級運算指令,依該讀寫裝置 八碼計算出—分級授權碼,最後再依該 刀、、及杈權碼開放該讀寫裝置可讀/寫權限以及範圍。 ,達成上述目的’本發明之另—技術特徵係在於 一種數位儲存媒體,係可_一讀寫裝置,其内設定有一 =碼,該數位儲存舰包括至少—記憶單元及至少一微 =表及複數分級運算指令;該微控制=該= ΐ 二,讀寫裝置提供之識別料算出分級授權 馬’以授權該頃寫襄置之可靖/寫權卵 寫該記憶單之動作及^ *寫權限,並依權限控制讀/ 【實施方式】 〜日η 委瞭解本發明為達化 疋目的所採取之技術、手段及功效,請夾 明之詳細說明與附圖,相信本發明 /下有關本$ 當可由此得-深人且且體之睁的、特徵與特點 ,、體之瞭解然而所附圖式僅接供j 考與說明用,並非用來對本發明加以限制者。 ’、」 1300928 /請參閱第一圖所示,係為本發明以汕記憶卡為實施例 之系統示意圖。本發明主要是揭露一種數位儲存媒體 (Digital Media Storage)10,可讓數位出版品Raise: =, the implementation of the hierarchical operation instruction, according to the read and write device eight yards to calculate - hierarchical authorization code, and finally open the read / write device read / write permissions and scope according to the knife, and the right code. The other object of the present invention is to provide a digital storage medium, which is a read/write device, which has a code set therein, and the digital storage ship includes at least a memory unit and at least one micro table. The multi-level operation instruction; the micro-control = the = ΐ two, the identification material provided by the reading and writing device calculates the hierarchical authorization horse 'to authorize the write-on/write right of the write-only device to write the action of the memory list and ^ * write Permission, and read control according to the authority / [Implementation] ~ η The committee understands the technology, means and effects of the invention for the purpose of Dahua, please specify the detailed description and the drawings, I believe the invention / under the relevant $ It is to be understood that the invention is not limited by the scope of the invention. </ RTI> 1300928 / Please refer to the first figure, which is a schematic diagram of a system with a memory card as an embodiment. The invention mainly discloses a digital media storage (Digital Media Storage) 10, which can make digital publications

Rights)廠商保護其數位版權(DRM),亦可讓個人使用者保 濩其機选資料,而該數位儲存媒體10可以耦接至一讀寫裝 置(Access Device)2〇,以便讀取(Read)或寫入(Write)^ 料至該數位儲存媒體10。 、 本發明之數位儲存媒體1 〇可以為具快閃記憶體 (Flash Memory)之記憶卡、具快閃記憶體之usb儲存器或者 硬碟機…等體積小、易於攜帶的儲存媒體,而該讀寫裝置 20則可以為s己憶卡讀卡機(Fiash Card Reader)或具USB介 面之裝置或電腦等。 其中該數位儲存媒體1〇為記憶卡時,該記憶卡又可以 為 CF(Compact Flash) 、 SM(Smart Media) 、 SD(Secure Digital)、MMC(Multi Media Card)、xD(xD-Picture Card) 或MS(Memory Stick)…等。 本發明主要可配合讀寫裝置2〇的不同,針對各種的讀 寫裝置20設定各自的識別碼41,該識別碼41可由一代表該 讀寫裝置20之裝置代碼,以及代表其讀寫權限之一分級授 權碼43加密組成。而該數位儲存媒體1〇可由該讀寫裝置2〇 所提供之該識別碼41解密後,計算出該裝置代碼及該分級 授權碼43,讓該數位儲存媒體1〇可認識該讀寫裝置2〇,並 授權該讀寫裝置20可讀/寫權限。 例如一儲存有電影的數位儲存媒體,僅供影音播放器 1300928 a (Media P1ayer)讀取而播放電影,其它如電腦(ρ〇或繞錄 . 機(Media Recorder)等都無法讀取電影資料,如此即可保 護數位出版品。 又例如本發明可針對一特定廠商之GPS導航裝置,提 供其專用的儲存媒體,其内儲設有該導航軟體及相關資 訊,除非該廠商之GPS導航裝置才可讀取,它牌的GPS導銳 裝置或其它裝置皆無法讀取。 該數位儲存媒體1 〇内包含有至少一微控制器11及至 泰 少一記憶單元12 ;該微控制器11主要可用以控制與該讀寫 裝置20間耦接的傳輸協議(Transmission Protocol),亦可 用以控制該記憶單元12的讀/寫動作以及讀/寫範圍。 該記憶單元12係可以為快閃記憶體或硬碟機之礤碟 - 片,該記憶單元12中設有一或一個以上可讀/寫區31以及一 隱藏區32 ,其中該可讀/寫區31係用以儲存資料,可依權限 開放讀取及寫入,或者依權限開放讀取及防止寫入,或者 依權限防止讀取及寫入。 籲 如第二圖所示,係為該數位儲存媒體之分級授權方塊 示意圖。該記憶單元12中之隱藏區32僅提供原廠商透過特 定應用程式或特定硬體裝置才能夠讀取、寫入及修改,其 他設備一概無法看到及讀取,其内預儲有一分級授權代碼 表(CAC Index)44、一身分碼(ID Code,IDC)45及複數分級 運算指令(Classification Operation Command, C0C)43, 該隱藏區32内所預儲之資料是在數位儲存媒體1〇出廠前即 已預儲完成’或者提供原廠商以升級的方式完成預儲。 1300928 ^ ,中該分級授權代碼表(CAC Index)44主要是記錄有 複數頃寫裝㈣的裝置代碼及其分級授權碼43,而該身分 碼(IDC)45主要代表該儲位儲存媒體1〇一不重覆之序號代 碼,而該些分級運算指令(C0C)46則係為用以運算出該裝置 代碼及該分級授權碼的程式指令。 當該數位儲存媒體1〇與該讀寫裝置2〇進行耦接時,或 者已耦接雙方開機時,雙方會進行初始的傳輸協議,此時 忒頊寫裝置20傳送一識別碼41至該數位儲存媒體1〇,而該 數位儲存體10會執行該分級運算指令46將該識別碼41作解 密運算,得出該讀寫裝置20之裝置代碼及分級授權碼43, 再比較該分級授權代碼表44中所記錄的裝置代碼是否相 符,若相符,再依分級授權碼43找出其讀寫權限,以授權 該璜寫裝置20可讀寫該數位儲存媒體之讀寫權限。 本發明為保護識別碼41遭到冒用,因此需要另一種雙 方同時運算的機制,由於該讀寫裝置2〇與該數位儲存媒體 皆具運算處理能力,因此可同步將該識別碼41及該身分碼 (IDC)45加以混合編碼(Ciphering)計算出得出一混合碼 (Hyrid Code,HC)47,並比較該混合碼47相符才能授權該 讀寫裝置20之可讀/寫權限,讓該讀寫裝置2〇依權限讀/寫 該記憶單元12之動作及範圍’因此僅冒用該識別碼41,而 無法計算出混合碼47,則該讀寫裝置2〇仍然無法獲得授 權,即使識別碼41遭冒用、運算指令(〇c〇)46遭破解,只要 該身分碼(IDC)45不符合(僅特定一批序號符合),亦無法計 算出該混合碼47’如此才能有效保護數位出版品(DRM)的目 1300928 的。 、,請參閱第三圖所示,係為本發明之授權流程示意圖。 首先本發明f在該讀寫裝謂内設定—識別碼4卜並在該 數位儲存媒體1Q之隱藏區32巾預儲該分級授權代碼表Μ、 一身^碼45及複數分級運算指令46(S100)。 ,當本發明之該數位儲存媒體10在與該讀寫裝置20進 行,接時,或者已耦接且雙方開機時,該微控制器u會與 該讀寫裝置2Git行初始的傳輸協議(S1()5),以決定該讀寫 裝置20的可讀取或可寫人該可讀/寫區的權限、雙方的傳輸 速率以及可讀/寫的範圍。 此時’該微控制器11會傳送該身分碼45至該讀寫裝置 20,以及該微控制器丨丨會讀取該讀寫裝置2〇之識別碼“ (siio),以便進行該裝置代碼及該分級授權碼45的運算。 由於該讀寫裝置2〇亦具有計算能力,可依該微控制器 傳來的該身分碼同步進行運算,將該識別碼44與該身分碼 加以混合編碼,產生一混合碼47,如第四圖所示,係為本 發明混合編碼之方塊示意圖。 接著,再比較該讀寫裝置20與該微控制器丨丨所產生之 該混合碼47是否相符?比較相符才進行授權,否則防止讀/ 寫該可讀/寫區。若比較相符,則該微控制器丨丨執行該些分 級運算指令43,將該識別碼44解密運算出該裝置代碼及該 分級授權碼43(S115)。 該微控制器11會比較該裝置代碼及分級授權碼43與 該分級授權代碼表44 (S120),以決定該讀寫裝置2〇之可讀 -11- 1300928 /寫權限,此時,該微控制器11會依權限,限制該讀寫裝置 20項寫該記憶早元12之可f買/寫區(S125) ’或依權限開放該 讀寫裝置20讀取該記憶單元12之可讀/寫區31 (S130),或依 權限開放該讀寫裝置2 0寫入該記憶單元12之可讀/寫區 31 (S135),並於寫入完畢後設定已寫入資料的讀/寫權限以 保護個人機密(S140)。 舉例來說本發可提供一批S D記憶卡1 〇給一特定G P S導 航裝置20作為其儲存地圖及導航軟體用,此時可將該gps 導航裝置20之裝置代碼及分級授權碼43經加密運算後產生 一識別碼41設定在該GPS導航裝置20中,並在該SD記憶卡10 之分級授權代碼表44中記錄該裝置代碼及分級授權碼43, 以及其所對應之讀寫權限,並預儲此批SD記憶卡10不重複 序號之身分碼45,及用以解碼運算出該裝置代碼及分級授 權碼43之分級運算指令46,此時即可將該GPS導航裝置20 的地圖及導航軟體儲存於該SD記憶卡10中。 當該SD記憶卡10與該GPS導航裝置20進行耦接時,雙 方會進行初始的傳輸協議,此時該GPS導航裝置20傳送一識 別碼41至該SD記憶卡10,而該SD記憶卡1〇會傳送一身分碼 45至該GPS導航裝置20,雙方同步將該識別碼41及該身分碼 作混合運算,得出一混合碼47,並比較該混合碼47是否相 符,若相符,則該SD記憶卡10執行該分級運算指令46將該 識別碼41作解密運算,得出該GPS導航裝置20之裝置代碼及 分級授權碼43,再依分級授權碼43找出其讀寫權限,以授 權該讀寫裝置20可讀寫該SD記憶卡10之讀寫權限。 -12- 1300928 本發明亦可將該數位儲存媒㈣之記憶單元12 晝成多個不同權限的記憶區,再依運算出之分級授權 放不同權限的記憶區,以容量_的遊戲記憶卡為例,复 中I能有讀唯讀遊戲資料區,魏遊戲主程式 ,150M的 靖衫θ區’心存放冑介杨晝’其餘觸M開放使用者 權Γ用以存放多名使用者的遊戲過程記錄、分數 或寶藏…等等。 然不發明確絲上述所揭露之技術,提供一種迴 :° 0者的設計,堪能提高整體之使用價值,又立 申請前未見於刊物 &lt; 公_ :心體之❹仏值,又其 件,爱依法以誠已符合發明專利之要 而已惟凡:Ϊ:揭露之圖式、說明,僅為本發明之實施例 之改良,而^項技藝者當可依據上述之說明作其他種種 定之專利改變仍屬於本發明之發明精神及以下所界 -13- 1300928 【圖式簡單說明】 第一圖係為本發明以SD記憶卡為實施例之系統示意 圖; 第二圖係為該數位儲存媒體之隱藏區方塊示意圖; 第三圖係為本發明之授權流程示意圖;及 第四圖係為本發明混合編碼之方塊示意圖。 【主要元件符號說明】Rights) The manufacturer protects its digital rights (DRM) and allows individual users to secure their machine-selected data. The digital storage medium 10 can be coupled to a Read Device 2 for reading (Read). Or write to the digital storage medium 10. The digital storage medium 1 of the present invention can be a small-sized, easy-to-carry storage medium such as a memory card with a flash memory, a usb storage device with a flash memory, or a hard disk drive. The reading and writing device 20 can be a Fiash Card Reader or a USB interface device or a computer. When the digital storage medium 1 is a memory card, the memory card can be CF (Compact Flash), SM (Smart Media), SD (Secure Digital), MMC (Multi Media Card), and xD (xD-Picture Card). Or MS (Memory Stick)...etc. The present invention can be configured with different identification codes 41 for various read/write devices 20, which can be represented by a device code representing the read/write device 20 and on behalf of the read and write permissions. A hierarchical authorization code 43 is encrypted. The digital storage medium 1 can be decrypted by the identification code 41 provided by the reading and writing device 2, and the device code and the hierarchical authorization code 43 are calculated, so that the digital storage medium 1 can recognize the read/write device 2 And authorize the read/write device 20 to read/write permissions. For example, a digital storage medium storing a movie can only be played by the video player 1300928 a (Media P1ayer), and other movies such as a computer (such as a computer or a media recorder) cannot read the movie material. In this way, the digital publication can be protected. For example, the present invention can provide a dedicated storage medium for a specific manufacturer's GPS navigation device, and the navigation software and related information are stored therein, unless the manufacturer's GPS navigation device can be used. Read, the GPS navigation device or other device of the card cannot be read. The digital storage medium 1 includes at least one microcontroller 11 and one memory unit 12; the microcontroller 11 is mainly used to control The transmission protocol coupled to the read/write device 20 can also be used to control the read/write operation and the read/write range of the memory unit 12. The memory unit 12 can be a flash memory or a hard disk. The memory unit 12 is provided with one or more readable/writable areas 31 and a hidden area 32, wherein the readable/writable area 31 is used for storing data, and can be opened according to the authority. Read and write, or read and prevent writing according to the authority, or prevent reading and writing according to the authority. As shown in the second figure, it is a hierarchical authorization block diagram of the digital storage medium. The hidden area 32 in 12 can only be read, written and modified by the original manufacturer through a specific application or a specific hardware device, and other devices cannot be seen and read at all, and a hierarchical authorization code table (CAC is pre-stored therein). Index) 44, ID code (IDC) 45 and Complex Operation Command (C0C) 43. The data stored in the hidden area 32 is pre-stored in the digital storage medium. The storage is completed or the original manufacturer is provided with an upgrade to complete the pre-storage. 1300928 ^, the hierarchical authorization code table (CAC Index) 44 is mainly for recording the device code of the plural (4) and its hierarchical authorization code 43, and the The ID code 45 mainly represents the serial number code of the storage medium 1 , and the hierarchical operation instruction (C0C) 46 is used to calculate the device code and the hierarchical code. Program instructions of the code. When the digital storage medium 1 is coupled to the read/write device 2, or when both of the coupled devices are powered on, the two parties perform an initial transfer protocol, and the write device 20 transmits an identification. The code 41 to the digital storage medium 1〇, and the digital storage unit 10 performs the hierarchical operation instruction 46 to decrypt the identification code 41, and obtains the device code of the read/write device 20 and the hierarchical authorization code 43, and then compares Whether the device codes recorded in the hierarchical authorization code table 44 match, if they match, the read/write permission is found according to the hierarchical authorization code 43 to authorize the writing device 20 to read and write the read and write rights of the digital storage medium. In the present invention, the protection identification code 41 is fraudulently used. Therefore, another mechanism for simultaneous operation of both parties is required. Since the read/write device 2 and the digital storage medium have arithmetic processing capabilities, the identification code 41 and the The identity code (IDC) 45 is mixed and encoded (Ciphering) to calculate a Hybrid Code (HC) 47, and the mixed code 47 is compared to authorize the read/write permission of the read/write device 20, so that The reading and writing device 2 reads/writes the action and range of the memory unit 12 according to the authority. Therefore, only the identification code 41 is used, and the mixed code 47 cannot be calculated, and the read/write device 2 is still unable to obtain authorization even if it is recognized. The code 41 is fraudulently used, and the operation command (〇c〇) 46 is cracked. As long as the identity code (IDC) 45 does not match (only a specific batch number is matched), the mixed code 47' cannot be calculated to effectively protect the digit. Publication (DRM) for the purpose of 1300928. Please refer to the third figure for a diagram of the authorization process of the present invention. First, the present invention f sets an identification code 4 in the read/write device and pre-stores the hierarchical authorization code table, a body code 45, and a plurality of hierarchical operation instructions 46 in the hidden area 32 of the digital storage medium 1Q (S100). ). When the digital storage medium 10 of the present invention is connected to the read/write device 20, or is coupled, and both are powered on, the microcontroller u and the read/write device 2Git perform an initial transmission protocol (S1). () 5) to determine the readable or writable authority of the read/write device 20, the transfer rate of both parties, and the range of read/write. At this time, the microcontroller 11 transmits the identity code 45 to the read/write device 20, and the microcontroller reads the identification code "(siio) of the read/write device 2" to perform the device code. And the operation of the hierarchical authorization code 45. Since the read/write device 2〇 also has a computing capability, the identity code can be synchronously calculated according to the micro-controller, and the identification code 44 and the identity code are mixed and encoded. A mixed code 47 is generated, as shown in the fourth figure, which is a block diagram of the hybrid coding of the present invention. Next, whether the read/write device 20 matches the mixed code 47 generated by the microcontroller ? is compared. The authorization is performed, otherwise the read/write area is prevented from being read/written. If the comparison is consistent, the microcontroller executes the hierarchical operation instruction 43, decrypting the identification code 44 to calculate the device code and the rating. Authorization code 43 (S115). The microcontroller 11 compares the device code and the hierarchical authorization code 43 with the hierarchical authorization code table 44 (S120) to determine the readability of the read/write device 2-11-1300928/write Permission, at this time, the microcontroller 11 will Depending on the authority, the read/write device 20 is limited to write the f-buy/write area (S125) of the memory early element 12 or the read/write device 20 is read by the authority to read the read/write area 31 of the memory unit 12 ( S130), or open the read/write device 20 to the read/write area 31 of the memory unit 12 (S135), and set the read/write permission of the written data to protect the personal secret after the writing is completed. (S140) For example, the present invention can provide a batch of SD memory card 1 to a specific GPS navigation device 20 as its storage map and navigation software, and the device code and hierarchical authorization code of the GPS navigation device 20 can be used at this time. After the encryption operation, an identification code 41 is generated in the GPS navigation device 20, and the device code and the hierarchical authorization code 43 are recorded in the hierarchical authorization code table 44 of the SD memory card 10, and the corresponding reading and writing is performed. Privilege, and pre-storing the batch of SD memory card 10 does not repeat the serial number of the code 45, and the hierarchical operation instruction 46 for decoding and calculating the device code and the hierarchical authorization code 43, at this time, the GPS navigation device 20 can be The map and navigation software are stored in the SD memory card 10. When the When the SD memory card 10 is coupled to the GPS navigation device 20, the two parties perform an initial transmission protocol. At this time, the GPS navigation device 20 transmits an identification code 41 to the SD memory card 10, and the SD memory card 1 Sending a code 45 to the GPS navigation device 20, the two parties synchronously combine the identification code 41 and the identity code to obtain a mixed code 47, and compare whether the mixed code 47 matches, and if they match, the SD memory The card 10 executes the hierarchical operation instruction 46 to decrypt the identification code 41, and obtains the device code and the hierarchical authorization code 43 of the GPS navigation device 20, and then finds the read/write authority according to the hierarchical authorization code 43 to authorize the reading. The writing device 20 can read and write the read and write authority of the SD memory card 10. -12- 1300928 The invention can also divide the memory unit 12 of the digital storage medium (4) into a plurality of memory areas with different rights, and then according to the calculated hierarchical authorization to put different memory areas, the capacity memory card is For example, Fuzhong I can read and read the game data area, Wei game main program, 150M Jingshen θ area 'heart storage 胄介杨昼', the rest of the M open user rights to store multiple users of the game Process records, scores or treasures...etc. However, it does not invent the technology disclosed above, and provides a design that returns to: ° 0, which can improve the overall use value, and is not found in the publication before the application &lt; public _: the value of the heart, and its pieces The love of the law has been in line with the requirements of the invention patent: Ϊ: the drawings and descriptions of the disclosure are only improvements of the embodiments of the present invention, and the skilled person can make other patents according to the above description. The change still belongs to the spirit of the invention and the following boundaries - 13-1300928 [Simplified description of the drawings] The first figure is a schematic diagram of the system with the SD memory card as an embodiment; the second figure is the digital storage medium The block diagram of the hidden area; the third figure is a schematic diagram of the authorization process of the present invention; and the fourth figure is a block diagram of the hybrid coding of the present invention. [Main component symbol description]

10 數位儲存媒體 11 微控制器 12 記憶單元 20 讀寫裝置 31 可讀/寫區 32 隱藏區 41 識別碼 43 分級授權碼 44 分級授權代碼表 45 身分碼 46 分級運算指令 47 混合碼10 Digital storage media 11 Microcontroller 12 Memory unit 20 Read/write device 31 Read/write area 32 Hidden area 41 Identification code 43 Hierarchical authorization code 44 Hierarchical authorization code table 45 Identity code 46 Hierarchical operation instructions 47 Mixed code

Claims (1)

1300928 h 一種數位儲存媒體之權 媒體内設有至少—微控制“理方法,其中該數位儲存 -讀寫裝置,該方法包括下列::7己憶單元,並可耦接 h,y 又疋减碩寫裝置一識別碼; :執行該些分級運算指令,依該讀寫裝置提供之識別 碼彳异出一分級授權碼;及 兮二依該,權碼開放該讀寫裝置可讀取或可寫入 遺Z憶早TL之權限以及範圍。 2.如申請專職圍第丨項所叙數㈣細體之權限管 理方法,其中該數㈣存媒_可為記,It卡、USB儲存器或 硬碟機。 •如申睛專利範圍第2項所述之數位儲存媒體之權限管 理方法’其中該記憶卡可為CF(c〇mpact Flash)、SM(Smart Media) 、 SD(Secure Digital) 、 MMC(Multi Media Card)、 鲁 xD(xD-Picture Card)或MS(Memory Stick)。 4·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中該微控制器係用以控制與該讀寫裝置耦接的 傳輸協議。 5·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中該微控制器係用以控制讀/寫該記憶單元之動 作及範圍。 6·如申請專利範圍第1項所述之數位儲存媒體之權限管1300928 h A digital storage medium is provided with at least a micro-control method, wherein the digital storage-reading device comprises the following:: 7 memory unit, and can be coupled with h, y and subtraction The master device writes an identification code; executes the hierarchical operation instructions, and generates a hierarchical authorization code according to the identification code provided by the read/write device; and according to the code, the read/write device can be read or Write the rights and scope of the legacy Z 早 early TL. 2. If you apply for the full-time 丨 丨 item (4) fine-grained privilege management method, where the number (4) storage _ can be remembered, It card, USB storage or Hard disk drive. • The method for managing the rights of digital storage media as described in item 2 of the scope of the patent application, wherein the memory card can be CF (c〇mpact Flash), SM (Smart Media), SD (Secure Digital), MMC (Multi Media Card), Lu xD (XD-Picture Card) or MS (Memory Stick). 4. The method for managing rights of a digital storage medium according to claim 1, wherein the microcontroller is used Controlling a transmission protocol coupled to the read/write device. The method for managing rights of a digital storage medium according to Item 1, wherein the microcontroller is configured to control the action and range of reading/writing the memory unit. 6. The digital storage as described in claim 1 Media authority -15--15- 曰修正替換頁丨 1300928 理方法,其中該記憶單元係可為快閃記憶體或硬碟機之磁 碟片。 7·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中該記憶單元中設有一或一個以上可讀/寫區及 一隱藏區,其中該可讀/寫區係用以儲存數位資料,該隱藏 區係用以預儲該分級授權代碼表及該些複數分級運算指 令0 8·如申請專利範圍第7項所述之數位儲存媒體之權限管 φ 理方法,其中該可讀/寫區係可依權限開放讀取及寫入、開 放讀取及防止寫入、或防止讀取及寫入。 9·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中該讀寫裝置係可為具有數位儲存媒體插槽之 電腦、記憶卡讀卡機或具USB介面控制晶片之讀寫裝置。 10·如申請專利範圍第1項所述之數位儲存媒體之權限管 ' 理方法,其中a.步驟之預儲動作係於該數位儲存媒體出廠 前即已完成,或由原廠升級方式完成。 Φ 11·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中a.步驟之設定動作係於該讀寫裝置出廠前即 已完成,或由原廠升級方式完成。 12.如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中該分級授權代碼表主要是記錄有複數讀寫裝 置之裝置代碼及其分級授權碼,而該些分級運算指令係用 以運算出該裝置代碼及該分級授權碼的程式指令。 13·如申請專利範圍第1項所述之數位儲存媒體之權限管 (S ) -16- 1300928 理方法 媒體。 ,甘 97 5 21 昇中a·步驟更H 預儲一身分碼於該數位儲存 管理方 1 申請專利範圍第13項所述之數位儲存媒體之權限 覆之序鱿代其中該身分碼主要代表該數位儲存媒體一不重 管理5方如/請專利範圍第13項所述之數位儲存媒體之權限 寫骏置,其中更包括··該微控制器傳送該身分碼至該讀曰Revision replacement page 1300 1300928, where the memory unit can be a flash memory or a hard disk of a hard disk drive. 7. The method for managing rights of a digital storage medium according to claim 1, wherein the memory unit is provided with one or more read/write areas and a hidden area, wherein the read/write area is used The digital data is stored, and the hidden area is used for pre-storing the hierarchical authorization code table and the plurality of hierarchical operation instructions. The method for managing the digital storage medium according to claim 7 of the patent application scope, wherein The read/write area can open read and write, open read and write prevention, or prevent reading and writing depending on the authority. 9. The method for managing rights of a digital storage medium as claimed in claim 1, wherein the reading and writing device is a computer having a digital storage medium slot, a memory card reader or a USB interface control chip. Write device. 10. The method for managing the digital storage medium as described in item 1 of the patent application scope, wherein the pre-storage operation of the step a. is completed before the digital storage medium is shipped from the factory, or is completed by the original factory upgrade method. Φ 11· The method for managing the rights of the digital storage medium as described in claim 1, wherein the setting operation of the step is completed before the reading and writing device is shipped from the factory, or is completed by the original factory upgrade method. 12. The method for managing rights of a digital storage medium according to claim 1, wherein the hierarchical authorization code table is mainly a device code for recording a plurality of read/write devices and a hierarchical authorization code thereof, and the hierarchical operation instruction system is A program instruction for computing the device code and the hierarchical authorization code. 13. The authority for digital storage media as described in item 1 of the scope of patent application (S) -16- 1300928 Methodology Media. , Gan 97 5 21 liters a · step more H pre-storage a body code in the digital storage management party 1 patent application scope of the digital storage media mentioned in the 13th paragraph of the order of the code The digital storage medium does not manage the 5 parties, such as the permission of the digital storage medium described in item 13 of the patent scope, which includes the fact that the microcontroller transmits the identity code to the reading. 16如φ主 理方·、申請專利範圍第1項所述之數位儲存媒體之權限管 法,其中a·步驟後更包括下列步驟: &quot;亥微控制器讀取該讀寫裝置之識別碼。 次、17·如申請專利範圍第1或第13項所述之數位儲存媒體之 貝料保護方法,其中a•步驟後更包括下列步驟: 該讀寫褒置與該微控制器同步將該分級授權碼及該 身刀碼加以混合編碼,並分別產生一混合碼; 比較雙方所產生之該混合碼是否相符;及 比較相符才執行該c•步驟,否則防止讀取及寫入該記 憶單元。 18·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中b·步驟係於該微控制器在與該讀寫裝置耦接 時作初始傳輸協議時執行之。 19·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中b·步驟係於開機時,該微控制器與該讀寫裝 置作初始傳輸協議時執行之。 c S ) -17-16 For example, the authority management method of the digital storage medium described in the first application of the patent scope, wherein the step a) further comprises the following steps: &quot;Hui microcontroller reads the identification code of the read/write device . The method for protecting a digital storage medium according to claim 1 or claim 13, wherein the step a-step further comprises the following steps: the reading and writing device synchronizes the level with the microcontroller The authorization code and the body cutter code are mixedly coded, and a mixed code is separately generated; whether the mixed code generated by the two parties is matched; and the comparison step is performed to execute the c• step, otherwise the reading and writing of the memory unit is prevented. 18. The method of managing a digital storage medium as claimed in claim 1, wherein the step b is performed when the microcontroller is in an initial transmission protocol when coupled to the read/write device. 19. The method of managing a digital storage medium as claimed in claim 1, wherein the step b is performed when the microcontroller and the read/write device make an initial transmission protocol when the device is powered on. c S ) -17- ,月日修正替換頁 1300928 20·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中b.步驟更包括:依該讀寫裝置提供之識別碼 計算出一裝置代碼。 21·如申請專利範圍第20項所述之數位儲存媒體之權限 管理方法,其中該裝置代碼係用以讓該數位儲存媒體識別 該讀寫裝置。 22·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中c.步驟後更包括下列步驟: 比較該分級授權代碼表中該分級授權碼之權限;及 決定該讀寫裝置之可讀取或可寫入該記憶單元之權 限。 23·如申請專利範圍第1項所述之數位儲存媒體之權限管 理方法,其中c.步驟後更包括下列步驟: 該讀寫裝置依權限至該記憶單元之可讀/寫區讀取資 - 料。 24. 如申請專利範圍第1項所述之數位儲存媒體之權限管 # 理方法,其中l步驟後更包括下列步驟: 該讀寫裝置依權限至該記憶單元之可讀/寫區寫入資 料,並於寫入完畢後設定已寫入可讀/寫區之讀/寫權限。 25. —種數位儲存媒體,係可耦接一讀寫裝置,其内設定 有一識別碼,該數位儲存媒體包括: 至少一記憶單元,係可用以儲存資料,並預儲有一分 級授權代碼表及複數分級運算指令;及 至少一微控制器,該微控制器係執行該些分級運算指 1300928 广—— • 5月修正替換頁 令’可依該讀寫裝置提供之識別碼計算出一分級授權碼, 以授權$亥讀寫裝置之可讀/寫權限,並依權限控制讀/寫該 記憶單元之動作及範圍。 26·如申請專利範圍第25項所述之數位儲存媒體,其中該 數位儲存媒體係可為記憶卡、USB儲存器或硬碟機。 27·如申請專利範圍第26項所述之數位儲存媒體,其中該The method for managing the digital storage medium as described in claim 1, wherein the step b. further comprises: calculating a device code according to the identification code provided by the reading and writing device. 21. The method for managing rights of a digital storage medium according to claim 20, wherein the device code is for the digital storage medium to identify the read/write device. 22. The method for managing rights of a digital storage medium as claimed in claim 1, wherein the step c. further comprises the steps of: comparing the authority of the hierarchical authorization code in the hierarchical authorization code table; and determining the read/write device The right to read or write to the memory unit. 23. The method for managing rights of a digital storage medium according to claim 1, wherein the step c. further comprises the following steps: the read/write device reads the read/write area according to the right to the memory unit - material. 24. The method for processing a digital storage medium according to claim 1, wherein the step further comprises the following steps: the read/write device writes data according to the read/write area of the memory unit. And set the read/write permission that has been written to the read/write area after writing. 25. The digital storage medium is coupled to a reading and writing device, and is provided with an identification code. The digital storage medium includes: at least one memory unit, which can be used to store data, and pre-stored a hierarchical authorization code table and a plurality of hierarchical operation instructions; and at least one microcontroller that performs the hierarchical operation instructions 1300928 wide - • May correction replacement page command 'calculates a hierarchical authorization according to the identification code provided by the read/write device Code, to authorize the read/write permission of the $hai reading and writing device, and control the action and range of reading/writing the memory unit according to the authority. 26. The digital storage medium of claim 25, wherein the digital storage medium is a memory card, a USB storage device or a hard disk drive. 27. The digital storage medium of claim 26, wherein the 記憶卡可為 CF(Compact Flash)、SM(Smart Media)、 SD(Secure Digital) 、 MMC(Multi Media Card)、 xD(xD-Picture Card)或MS(Memory Stick)等。 28·如申請專利範圍第25項所述之數位儲存媒體,其中該 讀寫裝置係可為具有數位儲存媒體插槽之電腦、記憶卡讀 卡機或具USB介面控制晶片之讀寫裝置。 29.如申請專利範圍第25項所述之數位儲存媒體,其中該 識別碼係由-絲該讀寫裝置之裝置代㉟,以&amp;代表其讀 寫權限之該分級授權碼加密組成。 “ 3 〇 ·Λ申請專利範圍第2 5項所述之數位儲存媒體,其中該 記憶單元係可為快閃記憶體或硬碟機之磁碟片。八人 如二:專利範圍第25項所述之數位儲存媒體,其中該 寫= 用或一個以上可讀/寫區及-隱藏區,其中 打頌/寫㈣用叫存資料,該_區 授權代碼表及該些複數分級運算指令。 職為刀級 項所述之數傾存㈣,其中該 存媒體-不重覆之序號代碼。 表她_ •19- &lt; S ) 1300928 33·如申請專利範圍第31項所述之數位儲存媒體,其中該 記憶單元之隱藏區中所預儲之該分級授權代碼表,係記錄 有複數讀寫裝置的裝置代碼及其分級授權碼。 34·如申請專利範圍第31項所述之數位儲存媒體,其中該 記憶單元之隱藏區中所預儲之該些分級運算指令,係為用 以運算出該裝置代碼及該分級授權碼的程式指令。 35. 如申請專利範圍第31項所述之數位儲存媒體,其中該 記憶單元之可讀/寫區係可依權限開放讀取及寫入、開放讀 ^ 取及防止寫入、或防止讀取及寫入。 36. 如申請專利範圍第25項所述之數位儲存媒體,其中該 微控制器係用以控制與該讀寫裝置耦接的傳輸協議。 37. 如申請專利範圍第36項所述之數位儲存媒體,其中該 微控制器與該讀寫裝置的傳輸協議,係包含有由該微控制 器讀取該讀寫裝置之識別碼的動作。 ^ 38.如申請專利範圍第36項所述之數位儲存媒體,其中該 微控制器與該讀寫裝置的傳輸協議,係包含由該微控制器 Φ 執行該些分級運算指令,依該識別碼解密運算出一裝置代 碼及該分級授權碼。 39.如申請專利範圍第36項所述之數位儲存媒體,其中該 微控制器與該讀寫裝置的傳輸協議,係包含由該微控制器 傳送一身分碼至該讀寫裝置,並雙方同步將該分級授權碼 及該身分碼加以混合編碼,產生一混合碼,並比較該讀寫 裝置與該微控制器所產生之該混合碼是否相符,比較相符 才進行授權,否則防止讀/寫該記憶單元。 1300928 97. 5. 2 i .,- 一一,- •… 40.如申請專利範圍第36項所述之數位儲存媒體,其中該 微控制器與該讀寫裝置的傳輸協議,係包含有比較該分級 授權碼與該分級授權代碼表,以決定該讀寫裝置之可讀取 或可寫入該記憶單元權限的動作。 (S )The memory card can be CF (Compact Flash), SM (Smart Media), SD (Secure Digital), MMC (Multi Media Card), xD (xD-Picture Card), or MS (Memory Stick). 28. The digital storage medium of claim 25, wherein the read/write device is a computer having a digital storage media slot, a memory card reader, or a read/write device having a USB interface control chip. 29. The digital storage medium of claim 25, wherein the identification code is composed of a device 35 of the device for reading and writing, and is encrypted by the hierarchical authorization code representing the read and write authority. "3 〇 Λ Λ Λ Λ Λ Λ Λ Λ , , , , , , , , , , , , , , , , , 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数 数The digital storage medium, wherein the write = use or more than one readable/writable area and - hidden area, wherein slap/write (four) uses the called data, the _ area authorization code table and the plurality of hierarchical operation instructions. For the number described in the knife level item (4), wherein the storage medium - the serial number code is not repeated. Table _ 19 - &lt; S ) 1300928 33 · The digital storage medium as described in claim 31 The hierarchical authorization code table pre-stored in the hidden area of the memory unit is a device code for recording a plurality of read/write devices and a hierarchical authorization code thereof. 34. The digital storage medium as described in claim 31 The hierarchical operation instructions prestored in the hidden area of the memory unit are program instructions for calculating the device code and the hierarchical authorization code. 35. The digital number as described in claim 31 Storage medium, where The read/write area of the unit can be read and written according to the authority, open read and write prevention, or prevent reading and writing. 36. Digital storage as described in claim 25 The medium, wherein the microcontroller is configured to control a transmission protocol coupled to the read/write device. 37. The digital storage medium of claim 36, wherein the microcontroller and the read/write device transmit The protocol includes an operation of reading, by the microcontroller, the identification code of the read/write device. The digital storage medium of claim 36, wherein the microcontroller and the read/write device The transmission protocol includes executing, by the microcontroller Φ, the hierarchical operation instructions, and decrypting and calculating a device code and the hierarchical authorization code according to the identification code. 39. The digital storage medium according to claim 36, The transmission protocol of the microcontroller and the read/write device includes transmitting, by the microcontroller, a body code to the read/write device, and simultaneously synchronizing the hierarchical authorization code and the identity code to generate a Mixing the code and comparing whether the read/write device and the hybrid code generated by the microcontroller match, and the authorization is performed only if the comparison is matched, otherwise the memory unit is prevented from being read/written. 1300928 97. 5. 2 i ., - one by one 40. The digital storage medium of claim 36, wherein the transmission protocol of the microcontroller and the read/write device comprises comparing the hierarchical authorization code with the hierarchical authorization code table to Determining the action of the read/write device to read or write to the memory unit. (S) -21--twenty one-
TW095119079A 2006-05-30 2006-05-30 Authority limit management method of digital storage media TW200744096A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW095119079A TW200744096A (en) 2006-05-30 2006-05-30 Authority limit management method of digital storage media

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW095119079A TW200744096A (en) 2006-05-30 2006-05-30 Authority limit management method of digital storage media

Publications (2)

Publication Number Publication Date
TW200744096A TW200744096A (en) 2007-12-01
TWI300928B true TWI300928B (en) 2008-09-11

Family

ID=45070092

Family Applications (1)

Application Number Title Priority Date Filing Date
TW095119079A TW200744096A (en) 2006-05-30 2006-05-30 Authority limit management method of digital storage media

Country Status (1)

Country Link
TW (1) TW200744096A (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI448134B (en) * 2007-12-12 2014-08-01 Hui Lin A method for reading a portable data storage device for a playback platform

Also Published As

Publication number Publication date
TW200744096A (en) 2007-12-01

Similar Documents

Publication Publication Date Title
US20080022415A1 (en) Authority limit management method
JP4690600B2 (en) Data protection method
TW558903B (en) System, method, and device for playing back recorded audio, video or other content from non-volatile memory cards, compact disks or other media
US9292714B2 (en) Storage device and host device for protecting content and method thereof
EP2732399B1 (en) Method and apparatus for using non-volatile storage device
JP2010268417A (en) Recording device, and content-data playback system
TW201203092A (en) Recording apparatus, writing apparatus, reading apparatus, and method of controlling recording apparatus
US8533807B2 (en) Methods for accessing content based on a session ticket
TW201248637A (en) Secure removable media and the method for managing secure removable media
KR101468258B1 (en) Portable data storage device for protecting illegal replica
TWI644229B (en) Data center with data encryption and operating method thererfor
CN102844765B (en) The encapsulation of digital content disposal system, digital content disposal route, digital content and utilize approval apparatus
US20080112566A1 (en) Apparatuses for accessing content based on a session ticket
JP2010171920A (en) Key management apparatus and key management method
KR20010043582A (en) Copy-protection on a storage medium by randomizing locations and keys upon write access
JP2005505853A (en) Apparatus and method for reading or writing user data
US20080114686A1 (en) Apparatuses for linking content with license
JP2010092202A (en) Storage device using usb interface
TWI300928B (en)
US20080112562A1 (en) Methods for linking content with license
JP5180362B1 (en) Content reproduction apparatus and content reproduction program
TWI820242B (en) Structure and method of digital data memory card encryption
JP5537477B2 (en) Portable storage media
JP2006018335A (en) Content storage preparation method, content storage method, content usage method, terminal system, and terminal device connectable to storage medium
TWI441037B (en) Methods and apparatuses for accessing content based on a session ticket