WO2004081706A2 - Procede et appareil pour controler la fourniture de contenu numerique - Google Patents

Procede et appareil pour controler la fourniture de contenu numerique Download PDF

Info

Publication number
WO2004081706A2
WO2004081706A2 PCT/SG2004/000024 SG2004000024W WO2004081706A2 WO 2004081706 A2 WO2004081706 A2 WO 2004081706A2 SG 2004000024 W SG2004000024 W SG 2004000024W WO 2004081706 A2 WO2004081706 A2 WO 2004081706A2
Authority
WO
WIPO (PCT)
Prior art keywords
storage device
content
data storage
authentication data
authentication
Prior art date
Application number
PCT/SG2004/000024
Other languages
English (en)
Other versions
WO2004081706A3 (fr
Inventor
Andrew Chow
Ser Yen Lee
Puay Hui Lau
Boon Quee Chia
Teck Weng Paul Tan
Chee We Ng
Hin Meng Timothy Soo
Venkateswara Rao Gattameni
Whye Ho Jamez Loo
Original Assignee
Digisafe Pte Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Digisafe Pte Ltd filed Critical Digisafe Pte Ltd
Publication of WO2004081706A2 publication Critical patent/WO2004081706A2/fr
Publication of WO2004081706A3 publication Critical patent/WO2004081706A3/fr

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/86Secure or tamper-resistant housings
    • G06F21/87Secure or tamper-resistant housings by means of encapsulation, e.g. for integrated circuits
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints

Definitions

  • the present invention relates to @. digital security method and apparatus, of particular but by no means exclusive application in controlling the distribution of electronic content such as software (and, in one particular example, software drivers) , the distribution of digital content or media with copy protection, digital personal identification devices (typically carrying personal identity and other data) , data management and portable devices for the secure storage of electronic content (such as data or software) .
  • electronic content such as software (and, in one particular example, software drivers)
  • digital personal identification devices typically carrying personal identity and other data
  • data management and portable devices for the secure storage of electronic content (such as data or software) .
  • PDAs Personal Digital Assistants
  • WO 01/61692 There also exist a number of mass storage USB tokens, including that of Trek Technology (Singapore) Pte Ltd as described in WO 01/61692. Further, WO 00/42491 (Rainbow Technologies Inc) describes a cryptographic USB token.
  • an apparatus for controlling the provision of digital content comprising: a data storage device controller for receiving a data storage device on which is provided said content; an authentication data storage device for storing authentication data; a data port connectable to a host device so that said apparatus can be placed into electronic communication with said host device; and a communications hub to mediate electronic communication between said data storage device controller, said authentication data storage device and said data port; wherein said apparatus is configured to permit content provided on said data storage device to be outputted from said data port according to said authentication data.
  • said data storage device is a non-volatile data storage device. More preferably said data storage device is a flash memory device.
  • the data storage device controller is preferably a controller suitable for the respective device.
  • content (which could comprise software, audio. video, personal or other information, etc.) can be provided on the data storage device (such as a flash memory device, for example a flash card) , but only copied to the data port (and thence to, for example, a computer or a playback device) if a suitable correspondence exists between the authentication data and the content.
  • the content may be configured to be read from the data storage device only if a particular password, security key or digital certificate is provided: that password or security key would be stored as the authentication data on the authentication data storage device.
  • the authentication data storage device could take any suitable form, as will be understood by those in the art, such as a smart card chip or a biometric device.
  • the apparatus - though configured to permit content provided on said data storage device to be outputted from the data port according to said authentication data - may be configured so that this outputting is limited in a predetermined way.
  • the data storage device may include a first storage portion for storing at least one software viewer or player for viewing or playing said content, and a second storage portion for storing said content, wherein said apparatus is configured to permit the accessing of said software viewer or player and of said content (such as by a computer when said apparatus is connected to that computer) such that said content can be viewed or played by means of said software viewer or player without allowing said content to be copied (such as to another device, storage medium or printer) .
  • the apparatus includes a cryptographic processor that is operable to encrypt or decrypt said content by means of at least one cryptographic key stored in said authentication data storage device.
  • the cryptographic key may comprise or be derived from the authentication data.
  • the authentication data (whether comprising a password, a secret key and/or a digital certificate, or otherwise) can additionally be used for encryption and copy protection, and the apparatus is preferably operable to encrypt and/or decrypt said content on the basis of the authentication data (i.e. using the authentication data as a cryptographic key, or deriving a cryptographic key from the authentication data) .
  • the authentication data storage device may also comprise a combination of secure microcontrollers and EEPROM chips .
  • the invention thereby provides an apparatus that can be used as both a mass storage token and as a cryptographic token (the latter preferably in the form of a cryptographic processor) .
  • said communications hub comprises a Universal
  • USB Serial Bus
  • the data port comprises a USB connector.
  • said content comprises software
  • said content comprises software device drivers .
  • said apparatus includes a communications port for connecting said apparatus to a hardware device associated with said content.
  • said apparatus is provided in a hardware device and in electronic communication with said hardware device.
  • the hardware device would typically be a hardware peripheral that the software device drivers will be working with.
  • the data storage device is then used to contain the software drivers for the hardware device, or digital media, personal data and other data to be secured.
  • the authentication data storage device can then also store unique secret keys for identifying the hardware device and/or for ensuring the authenticity and .originality of the hardware .
  • the data storage device when the content comprises digital media for distribution with copy protection, contains software portions or drivers for reading, displaying or playing said digital media.
  • these software components would typically be designed to prevent unauthorized duplication of the digital media stored on the data storage device by using techniques such as encryption and capturing operating system functions.
  • further authentication data is stored on said data storage device.
  • the content comprises software modules for the host device that are designed to be incorporated into software applications so that personal identity data, such as secret keys and digital certificates, may be stored in the data storage device as well as in the authentication data storage device.
  • personal identity data such as secret keys and digital certificates
  • Other personal data such as email and personal calendar, can be stored in the data storage device.
  • the data storage device contains said digital data in encrypted form while the authentication data storage device contains secret keys for the encryption.
  • the data in the data storage device may be in clear or in encrypted form, depending on the application.
  • the present also provides, in a second broad aspect, a method for controlling the provision of digital content, comprising: providing said content on a data storage device readable by means of a data storage device controller; providing authentication data on an authentication data storage device; placing said data storage device controller and authentication data storage device in data communication with a host device; controlling the provision of said content to said host device according to at least said authentication data.
  • the present provides, in a third broad aspect, a method for controlling access to digital content, comprising: providing said content on a computing or other electronic device; providing authentication data and control software on an authentication apparatus comprising: a control software storage device controller for receiving a control software storage device on which is provided control software; an authentication data storage device for storing authentication data; a data port connectable to said computing or other electronic device so that said apparatus can be placed into electronic communication with said computing or other electronic device; and a communications hub to mediate electronic communication between said authentication data storage device controller, said authentication data storage device and said data port; wherein said apparatus is configured to permit said control software provided on said control software storage device storage device to be used to control application software on said computing or other electronic device according to said authentication data.
  • the electronic device could be a computer peripheral, such as a printer, a scanner or a digital camera.
  • the software drivers can be distributed with the electronic device itself, rather than on a separate CD-ROM or the like.
  • the authentication apparatus includes a cryptographic processor that is operable to encrypt or decrypt said content by means of at least one cryptographic key stored in said authentication data storage device. More preferably, the cryptographic key comprises or is derived from the authentication data.
  • Figure 1 is a schematic diagram of an apparatus for distributing content associated with a hardware device according to a preferred embodiment of the present invention, together with the hardware device;
  • Figure 2 is a schematic diagram of an apparatus for distributing software device drivers associated with a hardware device according to another preferred embodiment of the present invention, together with the hardware device;
  • Figure 3 is a schematic diagram of an apparatus for distributing digital storage media with copy protection according to a further preferred embodiment of the present invention.
  • FIG. 4 is a schematic diagram of an authentication apparatus for personal identity and data management and for portable secure storage of digital data according to another preferred embodiment of the present invention
  • Figure 5 is a schematic diagram of a system for centrally programming and managing the apparatus of figure 4.
  • Figure 6 is a perspective view of an example of the apparatus of figure 4.
  • FIG. 1 An apparatus 10 for distributing digital content associated with a hardware device according to an embodiment of the present invention, together with the hardware device 12, is shown in figure 1.
  • the apparatus 10 comprises a Universal Serial Bus (USB) hub 14, an authentication device in the form of a smart card chip 16 or a biometric device 18, a flash controller 20 for reading flash memory 22 and a USB connector 24.
  • USB Universal Serial Bus
  • the authentication device 16,18 and the flash controller 20 communicate via USB hub 14 with a host device (not shown: typically a computer) by means of USB connector 24.
  • the apparatus 10 is in fact incorporated within the hardware device 12 and connected thereto by means of a further USB connector (not shown) to the USB hub 14.
  • the USB hub 14 in this embodiment will typically be the USB hub of the hardware device 12 itself.
  • the content on flash memory 22 (provided with the hardware device 12) to the host device is permitted only if the correct and corresponding authentication data is detected on the authentication device 16,18.
  • Figure 2 is a schematic diagram of an apparatus 30 for distributing software device drivers associated with a hardware device according to an embodiment of the present invention, together with the hardware device 32.
  • the apparatus 30 comprises USB hub 34, an authentication device in the form of a smart card chip 36, a flash controller 40 for reading flash memory 42 and a USB connector 44.
  • Flash memory 42 contains the content (here in the form of the software device drivers for hardware device 32) that are needed for the operating system of the host device (not shown, but connected at USB connector 44) to operate with the hardware device 32.
  • the hardware device 32 could be a computer peripheral such as a printer, or scanner, or it could represent a smart card that itself acts as the authentication device.
  • the smart card chip 36 contains secret keys, etc., for establishing authenticity of the hardware device 32 and the software device driver: the software device driver performs authentication with the smart card chip 36 to ensure that the device driver has not been modified and the hardware device 32 is original.
  • FIG. 3 is a schematic diagram of an apparatus 50 for distributing digital storage media with copy protection according to an embodiment of the present invention.
  • the content in this example may be digitised music and video such as MP3 and MPEG or software packages .
  • the apparatus 50 comprises USB hub 54, an authentication device in the form of a smart card chip 56, a flash controller 60 for reading flash memory 62 and a USB connector 64.
  • Flash memory 62 contains the content, in this example in the form of audio/video digital content to be distributed, and software applications to view, play and install the content on the host device (not shown, but connected at USB connector 64) .
  • the content stored in the flash memory 62 is in encrypted form to prevent unauthorised duplication.
  • Software viewers, players or installers also reside in the flash memory. The viewers, players and installers ' are written in a way that they only allow the media and applications to be viewed, played or installed, but do not allow them to be duplicated. Strong cryptographic protocols are used in these viewers, players and installers to prevent unauthorized duplication.
  • the smart card chip 56 contains secret keys or other parameters to prove the authenticity and originality of the media. Other information regarding the number of times a digital data has been accessed or the identity of the computer or player can be recorded in the smart card chip. This allows the number of times or the location the digital data or the software package has been accessed or installed can be restricted.
  • FIG 4 is a schematic diagram of an authentication apparatus 70 for personal identity and data management and for portable secure storage of digital data in the form of personal identity data according to an embodiment of the present invention.
  • the authentication data is in the form of personal identity data such as digital certificates and passwords while the content (or personal data) could be electronic mail, personal documents, passwords, and other data.
  • the apparatus 70 comprises USB hub 74, an authentication device in the form of a smart card chip 76, a flash controller 80 for reading flash memory 82 and a USB connector 8 .
  • Flash memory 82 contains the content which, as mentioned above, in this example is in the form of electronic mail, personal documents, passwords and other data.
  • the flash memory 82 is used to store these data in clear or encrypted form.
  • the more sensitive data (together with the digital certificates or passwords for proving identity or the secret keys used to sign, encrypt and decrypt the data in the flash card 82) is securely stored in the smart card chip 76.
  • Digital certificates are used for secure computer applications such as secure email (S/MIME) and secure internet connection (Secure Socket Layer, SSL) , for signing and encrypting email.
  • S/MIME secure email
  • SSL Secure Socket Layer
  • Figure 5 is a schematic diagram of a system 90 for centrally programming and managing the authentication apparatus 70 of figure 4, in use with such the authentication apparatus 70 and a computer network 92.
  • the system 90 comprises a central management system 94 and a programmer 96.
  • the programmer 96 includes a USB port for connecting to the USB port of USB connector 84 of authentication apparatus 70, so that the system 90 can be used to program each such authentication apparatus 70 bj installing in an authentication apparatus 70 keys belonging to each user.
  • the keys are held in a Public Key Depository 98, which holds such keys for secure applications such as S/MIME.
  • the Public Key Depository 98 is accessible by the central management system 94 by computer network.
  • the system 90 installs - into the flash memory 82 of each authentication apparatus 70 - installation and configuration programs for subsequently configuring the software applications on networked computers 100 (each running secure applications such as S/MIME) on computer network 92; a user can take an authentication apparatus that has been programmed in this manner (such as authentication apparatus 70') and use it to gain ready access to those applications on any of computers 100.
  • This enables each user to use these applications easily without the necessity of a system administrator installing applications or performing configuration for the user.
  • the user also does not need to carry along another medium (such as an installation disk) , and is free to perform this installation at all the computers that the user is authorized to use.
  • This system thus reduces the complexity of deployment by incorporating all the installation program and information within the device itself.
  • Figure 6 is a perspective view of an example of an authentication apparatus 102 according to this embodiment
  • the authentication apparatus 102 includes a UBS plug 104 (for plugging into a USB port) and a body 106 that encases the data storage and processing components of the apparatus.
  • the apparatus 102 is designed to be hand-held, so it is of appropriate dimensions and provided with finger grips 108 for ease of manipulation.
  • the present invention allows device drivers to be distributed together with the hardware device itself, and for a single architecture to be used for multiple application .

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Storage Device Security (AREA)
  • Signal Processing For Digital Recording And Reproducing (AREA)

Abstract

La présente invention concerne un appareil contrôlant la fourniture de contenu numérique. Il est constitué d'un contrôleur de mémoire de données destiné à l'accueil d'une mémoire de données contenant le contenu numérique. Il est également constitué d'une mémoire d'authentification servant au stockage de données d'authentification, et d'un port numérique. Ce port se connecte à un hôte avec lequel l'appareil se met en communication électronique. Une plate-forme d'échange permet les communications électroniques entre le contrôleur de mémoire de données, la mémoire d'authentification et le port numérique. L'appareil est configuré pour permettre la production en sortie du contenu de la mémoire de données depuis le port numérique en conformité avec les données d'authentification.
PCT/SG2004/000024 2003-03-11 2004-01-27 Procede et appareil pour controler la fourniture de contenu numerique WO2004081706A2 (fr)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
AU2003901095 2003-03-11
AU2003901095A AU2003901095A0 (en) 2003-03-11 2003-03-11 Method and apparatus for controlling the provision of digital content

Publications (2)

Publication Number Publication Date
WO2004081706A2 true WO2004081706A2 (fr) 2004-09-23
WO2004081706A3 WO2004081706A3 (fr) 2004-11-25

Family

ID=31500139

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/SG2004/000024 WO2004081706A2 (fr) 2003-03-11 2004-01-27 Procede et appareil pour controler la fourniture de contenu numerique

Country Status (2)

Country Link
AU (1) AU2003901095A0 (fr)
WO (1) WO2004081706A2 (fr)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7213766B2 (en) 2003-11-17 2007-05-08 Dpd Patent Trust Ltd Multi-interface compact personal token apparatus and methods of use
EP1902421A2 (fr) * 2005-05-12 2008-03-26 Cyberflow Solutions, Inc. Systeme et appareil de publication numerique
EP1975839A3 (fr) * 2007-03-30 2009-05-13 Sony Corporation Appareil de traitement d'informations et procédé, programme et système de traitement d'informations
WO2009062965A2 (fr) * 2007-11-12 2009-05-22 Gemalto Sa Système et procédé de mise à jour sûre de micrologiciel d'un jeton sécurisé présentant un contrôleur de mémoire flash et une carte à puce intelligente
WO2009062972A1 (fr) * 2007-11-12 2009-05-22 Gemalto Sa Système et procédé pour redimensionner une partition du lecteur de disque dur et échanger les tailles de la partition entre un contrôleur de mémoire flash et une carte intelligente
US7597250B2 (en) 2003-11-17 2009-10-06 Dpd Patent Trust Ltd. RFID reader with multiple interfaces
US7762470B2 (en) 2003-11-17 2010-07-27 Dpd Patent Trust Ltd. RFID token with multiple interface controller
US20130097689A1 (en) * 2011-10-17 2013-04-18 Stephen Villoria Creation and management of digital content and workflow automation via a portable identification key

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5584043A (en) * 1991-06-26 1996-12-10 Smartdiskette Gmbh Apparatus having a smart card accomodated by a diskette frame containing processor memory and battery power for interfacing with a standard diskette drive
US5887145A (en) * 1993-09-01 1999-03-23 Sandisk Corporation Removable mother/daughter peripheral card
WO2000001138A2 (fr) * 1998-06-26 2000-01-06 Fotonation, Inc. Dispositif de communication en reseau par camera
WO2000042491A1 (fr) * 1999-01-15 2000-07-20 Rainbow Technologies, Inc. Cle personnelle compatible avec le bus serie universel, a dispositifs integres d'entree et de sortie
US20020073340A1 (en) * 2000-12-12 2002-06-13 Sreenath Mambakkam Secure mass storage device with embedded biometri record that blocks access by disabling plug-and-play configuration
US20030043485A1 (en) * 2001-07-27 2003-03-06 Storcard, Inc. Apparatus for reading and writing cards having rotating memory

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5584043A (en) * 1991-06-26 1996-12-10 Smartdiskette Gmbh Apparatus having a smart card accomodated by a diskette frame containing processor memory and battery power for interfacing with a standard diskette drive
US5887145A (en) * 1993-09-01 1999-03-23 Sandisk Corporation Removable mother/daughter peripheral card
WO2000001138A2 (fr) * 1998-06-26 2000-01-06 Fotonation, Inc. Dispositif de communication en reseau par camera
WO2000042491A1 (fr) * 1999-01-15 2000-07-20 Rainbow Technologies, Inc. Cle personnelle compatible avec le bus serie universel, a dispositifs integres d'entree et de sortie
US20020073340A1 (en) * 2000-12-12 2002-06-13 Sreenath Mambakkam Secure mass storage device with embedded biometri record that blocks access by disabling plug-and-play configuration
US20030043485A1 (en) * 2001-07-27 2003-03-06 Storcard, Inc. Apparatus for reading and writing cards having rotating memory

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7597250B2 (en) 2003-11-17 2009-10-06 Dpd Patent Trust Ltd. RFID reader with multiple interfaces
US7213766B2 (en) 2003-11-17 2007-05-08 Dpd Patent Trust Ltd Multi-interface compact personal token apparatus and methods of use
US7762470B2 (en) 2003-11-17 2010-07-27 Dpd Patent Trust Ltd. RFID token with multiple interface controller
EP1902421A2 (fr) * 2005-05-12 2008-03-26 Cyberflow Solutions, Inc. Systeme et appareil de publication numerique
EP1902421A4 (fr) * 2005-05-12 2010-08-04 Cyberflow Solutions Inc Systeme et appareil de publication numerique
EP1975839A3 (fr) * 2007-03-30 2009-05-13 Sony Corporation Appareil de traitement d'informations et procédé, programme et système de traitement d'informations
WO2009062965A2 (fr) * 2007-11-12 2009-05-22 Gemalto Sa Système et procédé de mise à jour sûre de micrologiciel d'un jeton sécurisé présentant un contrôleur de mémoire flash et une carte à puce intelligente
WO2009062965A3 (fr) * 2007-11-12 2009-07-09 Gemalto Sa Système et procédé de mise à jour sûre de micrologiciel d'un jeton sécurisé présentant un contrôleur de mémoire flash et une carte à puce intelligente
WO2009062972A1 (fr) * 2007-11-12 2009-05-22 Gemalto Sa Système et procédé pour redimensionner une partition du lecteur de disque dur et échanger les tailles de la partition entre un contrôleur de mémoire flash et une carte intelligente
US8307131B2 (en) 2007-11-12 2012-11-06 Gemalto Sa System and method for drive resizing and partition size exchange between a flash memory controller and a smart card
US8898477B2 (en) 2007-11-12 2014-11-25 Gemalto Inc. System and method for secure firmware update of a secure token having a flash memory controller and a smart card
US20130097689A1 (en) * 2011-10-17 2013-04-18 Stephen Villoria Creation and management of digital content and workflow automation via a portable identification key
US9166976B2 (en) * 2011-10-17 2015-10-20 Stephen Villoria Creation and management of digital content and workflow automation via a portable identification key

Also Published As

Publication number Publication date
AU2003901095A0 (en) 2003-03-27
WO2004081706A3 (fr) 2004-11-25

Similar Documents

Publication Publication Date Title
JP3389186B2 (ja) 半導体メモリカード及び読み出し装置
US8528096B2 (en) Secure universal serial bus (USB) storage device and method
US10592641B2 (en) Encryption method for digital data memory card and assembly for performing the same
JP4610557B2 (ja) データ管理方法、そのプログラム及びプログラムの記録媒体
US8694799B2 (en) System and method for protection of content stored in a storage device
US20090268906A1 (en) Method and System for Authorized Decryption of Encrypted Data
US20070156587A1 (en) Content Protection Using Encryption Key Embedded with Content File
JP2003067256A (ja) データ保護方法
US20090052671A1 (en) System and method for content protection
CN101578608A (zh) 用于基于会话票证存取内容的方法及设备
JP2009526472A (ja) 実時間鍵生成を含むデータ・セキュリティ
US8261076B2 (en) Method and device for agreeing shared key between first communication device and second communication device
WO2004081706A2 (fr) Procede et appareil pour controler la fourniture de contenu numerique
JP4673150B2 (ja) デジタルコンテンツ配信システムおよびトークンデバイス
KR101043255B1 (ko) Usb 허브 보안 장치 및 이를 이용한 데이터 보안 방법
EP1163659A1 (fr) Protection de contenu compresse apres separation de la source d'origine
JP5180362B1 (ja) コンテンツ再生装置およびコンテンツ再生プログラム
JP2008191851A (ja) 電子機器、および情報処理方法
KR101450131B1 (ko) 세션 티켓을 바탕으로 콘텐트에 액세스하기 위한 방법과 장치
JP4546128B2 (ja) 外部記録媒体の不正使用防止方法および装置
JP2004110588A (ja) 記憶メディアアクセスシステム
KR20080032786A (ko) D r m이 적용된 컨텐츠를 안전하게 저장 및 사용하기 위한포터블 저장매체
KR20090108690A (ko) 라이센스와 콘텐트를 연결하기 위한 방법과 장치

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A2

Designated state(s): AE AG AL AM AT AU AZ BA BB BG BR BW BY BZ CA CH CN CO CR CU CZ DE DK DM DZ EC EE EG ES FI GB GD GE GH GM HR HU ID IL IN IS JP KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX MZ NA NI NO NZ OM PG PH PL PT RO RU SC SD SE SG SK SL SY TJ TM TN TR TT TZ UA UG US UZ VC VN YU ZA ZM ZW

AL Designated countries for regional patents

Kind code of ref document: A2

Designated state(s): BW GH GM KE LS MW MZ SD SL SZ TZ UG ZM ZW AM AZ BY KG KZ MD RU TJ TM AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HU IE IT LU MC NL PT RO SE SI SK TR BF BJ CF CG CI CM GA GN GQ GW ML MR NE SN TD TG

121 Ep: the epo has been informed by wipo that ep was designated in this application
122 Ep: pct application non-entry in european phase
DPEN Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed from 20040101)