WO2007045756A2 - Gravure et distribution securisee de donnees numeriques - Google Patents
Gravure et distribution securisee de donnees numeriques Download PDFInfo
- Publication number
- WO2007045756A2 WO2007045756A2 PCT/FR2006/002328 FR2006002328W WO2007045756A2 WO 2007045756 A2 WO2007045756 A2 WO 2007045756A2 FR 2006002328 W FR2006002328 W FR 2006002328W WO 2007045756 A2 WO2007045756 A2 WO 2007045756A2
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- secure
- domain
- digital data
- identifier
- multimedia content
- Prior art date
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/20—Servers specifically adapted for the distribution of content, e.g. VOD servers; Operations thereof
- H04N21/25—Management operations performed by the server for facilitating the content distribution or administrating data related to end-users or client devices, e.g. end-user or client device authentication, learning user preferences for recommending movies
- H04N21/254—Management at additional data server, e.g. shopping server, rights management server
- H04N21/2541—Rights Management
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F12/00—Accessing, addressing or allocating within memory systems or architectures
- G06F12/14—Protection against unauthorised use of memory or access to memory
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/00188—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which result in a restriction to authorised devices recording or reproducing contents to/from a record carrier
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/00188—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which result in a restriction to authorised devices recording or reproducing contents to/from a record carrier
- G11B20/00195—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which result in a restriction to authorised devices recording or reproducing contents to/from a record carrier using a device identifier associated with the player or recorder, e.g. serial numbers of playback apparatuses or MAC addresses
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/0021—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/0021—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier
- G11B20/0042—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier the copy protection scheme being related to a specific access protection standard
- G11B20/00449—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier the copy protection scheme being related to a specific access protection standard content scrambling system [CSS]
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/0021—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier
- G11B20/00485—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier characterised by a specific kind of data which is encrypted and recorded on and/or reproduced from the record carrier
- G11B20/00492—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier characterised by a specific kind of data which is encrypted and recorded on and/or reproduced from the record carrier wherein content or user data is encrypted
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/0071—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a purchase action
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/00731—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a digital rights management system for enforcing a usage restriction
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/00731—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a digital rights management system for enforcing a usage restriction
- G11B20/00746—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a digital rights management system for enforcing a usage restriction wherein the usage restriction can be expressed as a specific number
- G11B20/00797—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a digital rights management system for enforcing a usage restriction wherein the usage restriction can be expressed as a specific number wherein the usage restriction limits the number of times a content can be reproduced, e.g. using playback counters
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/00731—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a digital rights management system for enforcing a usage restriction
- G11B20/00847—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a digital rights management system for enforcing a usage restriction wherein the usage restriction is defined by a licence file
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/00855—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving a step of exchanging information with a remote server
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/10—Digital recording or reproducing
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/60—Network structure or processes for video distribution between server and client or between remote clients; Control signalling between clients, server and network components; Transmission of management data between server and client, e.g. sending from server to client commands for recording incoming content stream; Communication details between server and client
- H04N21/63—Control signaling related to video distribution between client, server and network components; Network processes for video distribution between server and clients or between remote clients, e.g. transmitting basic layer and enhancement layers over different transmission paths, setting up a peer-to-peer communication via Internet between remote STB's; Communication protocols; Addressing
- H04N21/633—Control signals issued by server directed to the network components or client
- H04N21/6332—Control signals issued by server directed to the network components or client directed to client
- H04N21/6334—Control signals issued by server directed to the network components or client directed to client for authorisation, e.g. by transmitting a key
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/80—Generation or processing of content or additional data by content creator independently of the distribution process; Content per se
- H04N21/83—Generation or processing of protective or descriptive data associated with content; Content structuring
- H04N21/835—Generation of protective data, e.g. certificates
Definitions
- the present invention relates to a method of burning, providing and securely distributing digital data representative of a multimedia content.
- an apparatus comprising a memory in which is recorded an identifier specific to each device and different identifiers of other devices.
- the apparatus is adapted to record digital data and its own identifier on a recording medium during each burning. Before reading the digital data, it is able to compare its identifier with the identifier read on the recording medium and to present the digital data only when the identifier recorded on the recording medium corresponds to its identifier.
- This device respects the rights of ownership but allows to present the digital data only on one and the same device.
- CSS content from the CSS: Content Scrambling System
- the digital data recorded on the secure DVD can be read by any authorized reader, but can not be copied or reproduced.
- this digital data can not be shared with anyone who does not have access to this domain. It is therefore not possible to share this digital data with a friend or acquaintance.
- a management system for digital copies of data authorizing one or more reproductions / copies thereof by the same burner but prohibiting the copy by another burner includes a server accessible through the Internet and particular burners / readers intended for users. At each recording, each recorder / reader is adapted to transmit to the server an identifier of its own, a DVD identifier and an identifier of the content read on the DVD.
- the server contains a database, means for registering the identifiers received by the burner and means for comparing the identifiers stored in its database and identifiers received by the burner to check whether the identifiers sent by an engraver correspond to the identifiers already registered in the database.
- the aim of the invention is to propose a method for the secure distribution of digital data enabling a certain degree of digital data sharing while respecting the property rights attached thereto.
- the subject of the invention is a method for receiving and securely etching digital data representative of a multimedia content comprising a step of etching said digital data on a secure disk by an engraver / receiver belonging to a determined secure domain. comprising several devices and defined by an identifier specific to all the equipment in the domain, a step of burning on the secure disk of the domain identifier of the recorder / receiver to define this domain as the only domain in which the reproduction / copying of the multimedia content is authorized, characterized in that it further comprises a prior step of recovering a disk key from the secure disk, and in that the domain identifier is encrypted by said disk key and the etched digital data is scrambled by title keys, said key titles being encrypted by said disk key.
- the method of receiving and burning further comprises a step of burning on the secure disk of reproduction rights attached to the multimedia content, the reproduction rights defining whether the multimedia content is freely reproducible / copiable, if the multimedia content is reproducible / copiable in the determined domain only or if the multimedia content is not reproducible / copiable.
- the invention also relates, in a second aspect, to a method for securely distributing digital data representative of a multimedia content comprising the following steps:
- the distribution method comprises one or more of the following characteristics: when the digital data is made available so as to authorize a first mode of exploitation of the digital data, the provisioning step comprises a step of scrambling the digital data by the access device according to a protocol adapted for prohibiting the reproduction / copying of the multimedia content and authorizing the presentation of the multimedia content on a presentation device belonging to the specific domain only during the reading of the digital data by the access device;
- the provisioning step further comprises the following steps:
- the reproduction rights defining whether the multimedia content is freely reproducible / copyable, whether the multimedia content is reproducible / copiable in the determined domain only or whether the multimedia content is not reproducible / copiable;
- the provisioning stage comprises a step of scrambling the digital data by the access device according to a protocol adapted to authorize the reproduction / copying and presentation of the multimedia content only on equipment belonging to the specified domain;
- the provisioning step comprises a step of scrambling the digital data by the access device according to a protocol adapted to prohibit the reproduction / copying of the multimedia content , and only allow the presentation of the multimedia content on a presentation device belonging to the determined domain during the reading of the digital data by the access device;
- the provisioning step comprises a step of scrambling the digital data by the access device according to a protocol adapted to authorize the reproduction / copying and the reproduction. presentation of multimedia content on any equipment;
- It further comprises a step of transmitting the reproduction rights attached to the multimedia content of a remote server to said burner / receiver, the transmission step being prior to the step of burning the reproduction rights; and it comprises a step of encrypting the identifier and reproduction rights, said encryption step being prior to the etching step.
- the invention also relates, according to a third aspect, to a device for accessing a specific secure domain, the access device comprising: digital data reading means representative of a multimedia content etched on a secure disk; reading means being adapted to read on the secure disk an identifier of a determined secure domain;
- the access device further comprises:
- encryption / decryption means adapted to recover a disk key from the secure disk and to decrypt the domain identifier using the disk key; and scrambling / descrambling means capable of descrambling the digital data engraved on the secure disk with the aid of said disk key.
- the invention also relates, according to a fourth aspect, to a recorder / receiver belonging to a secure domain comprising several pieces of equipment and defined by an identifier specific to all the equipments of said domain, the writer / receiver being adapted to burn on a secure disk data digital images representative of a multimedia content, the recorder / receiver being able to write to the secure disk the identifier of the domain of the recorder / receiver to define this domain as the only domain in which reproduction / copying of the multimedia content is authorized, characterized in that the recorder / receiver is able to recover a disk key from the secure disk, to scramble the digital data by title keys, the title keys being encrypted by said disk key, to encrypt the identifier using the disk key and etching said scrambled digital data and said encrypted identifier.
- the burner / receiver comprises one or more of the following characteristics:
- reproduction rights defining whether the multimedia content is freely reproducible / copiable or whether the multimedia content is reproducible / copiable in a specific domain only or if the multimedia content is is not reproducible / copiable;
- the reproduction rights attached to a multimedia content include the number of authorized reproductions of the multimedia content.
- FIG. 1 is a diagram in the form of a functional block of a part of the system making it possible to implement the distribution method according to the invention
- FIG. 2 is a diagram in the form of a functional block of another part of the system allowing the implementation of the distribution method according to the invention; and - Figure 3 is a diagram illustrating the steps of the dispensing method according to the invention.
- FIGS. 1 and 2 The system 2 in which the method according to the invention is implemented is illustrated in FIGS. 1 and 2.
- This system 2 relates to a set of computer equipment having either a DVD burner or a reader of DVDs and owned by different users and likely to exchange DVDs. The equipment being distributed in different secure domains.
- the equipment belonging to a secure domain each has in a memory the same identifier representative of this domain and a domain key.
- the equipments of this domain are able to communicate through a network, digital data entangled by this domain key.
- Equipment not belonging to this secure domain or belonging to another secure domain is not able to read the scrambled data transiting through this network or the scrambled data stored on a network device.
- the system 2 comprises a content provider 4 capable of making digital data available to a receiving device 6 via a distribution network 8, such as the Internet network.
- the content provider 4 comprises a multimedia server 10 connected to a database 12.
- the database 12 is suitable for storing digital data representative of multimedia contents, such as, for example, audio, video or text data sequences or computer data files used for the implementation of software.
- the digital data is coded in the form of packets, for example according to the MPEG-2 standard (ISO / IEC 13818-1).
- each multimedia content is associated with one or more uses or reproduction rights and at a price that varies according to these uses or rights.
- the uses define whether the multimedia content is freely copiable / reproducible, if it is copiable on a secure DVD or if it is both copiable on a secure and copyable / reproducible DVD in a single domain corresponding to the domain to which belongs the engraver having engraved the content on the secure DVD.
- the multimedia server 10 comprises means 14 for sending or receiving digital data to the distribution network 8 or from this network, and a scrambling module 16 of these digital data.
- the scrambling module 16 is adapted to scramble the data according to the CSS system.
- the receiver device 6 is a computer or a digital decoder
- the receiver device 6 belongs to a secure domain by a protection system such as, for example, the SmartRight trademark system.
- the equipment belonging to this secure domain each has in one memory the same identifier IDD representative of this domain and a domain key DIK.
- the receiver device 6 has a processor 18, an encryption / decryption module 20, a user interface 22 of the keyboard, screen or remote control type and a network interface 24 for sending or receiving data.
- the processor 18 is capable of executing the protocols of the SmartRight data protection system as well as the protocols of the CSS protection system corresponding to the protection system used by the scrambling module 16. For this purpose, it notably comprises a master key MK and an IDD of the domain to which the receiving device 6 belongs.
- the interface 24 is adapted to receive data streams from the distribution network 8 by real-time downloading ("streaming" in English), that is to say by viewing the content as and when loading, or by prior downloading (“downloading” in English) allowing a delayed viewing of the content.
- the receiver device 6 is connected to a DVD burner 28, for example DVD-R, DVD-RW, DVD + R, DVD + RW or DVD-RAM.
- the DVD 30 includes a start area 32 prewritten by a set of secure disk keys according to the CSS protection system protocol, a storage area 34 and a digital data storage area 36.
- the storage area 34 is a particular area of the DVD that can be engraved by any recorder.
- the storage area 34 is constituted, for example, by a zone called 2 RMD field. This field is defined in the "DVD Specifications for Recordable Disc for General, Part 1, Physical Specifications, Version 2.0, May 2000" document.
- the system 2 according to the invention further comprises a DVD player 40 constituting a device for access to a secure domain by the SmartRight protection system.
- the reader 40 is connected to a smart card reader 42 intended to receive a smart card 44.
- the reader 40 comprises means 45 for reading DVDs and means 46 for storing a master key MK 'connected to an encryption / decryption module 48.
- the reader 40 further comprises a scrambling / descrambling module 50 and a network interface 52 for sending and receiving digital data via a distribution network 54 such as, for example, a home network, an intranet or a network. Internet network.
- a distribution network 54 such as, for example, a home network, an intranet or a network. Internet network.
- the smart card 44 contains a secure processor 56.
- This processor 56 is adapted to securely store a specific IDL identifier of the domain to which the reader 40 belongs and a DOK encryption key of this domain.
- the processor 56 is capable of comparing data, receiving and transferring data from and to the reader 40, generating random numbers and encoding them according to the SmartRight protection protocol.
- System 2 further includes a TV-like presentation device 60, a burner 62, and storage equipment 64.
- the presentation device 60 and the burner 62 each include a network interface 70, 72 for receiving digital data from the reader 40. or search for digital data on the storage device 64. They belong to the same secure domain as the reader 40.
- the presentation device 60 comprises a descrambling module 66. It is connected to a smart card reader 43 receiving a smart card 47 storing the identifier IDL and the encryption key DOK of this domain in a secure processor 57.
- Storage equipment 64 is accessible by any equipment connected to the distribution network 54 and in particular by equipment not belonging to the domain defined by the identifier IDL.
- FIG. 3 vertical axes represent the axis of time and the horizontal lines illustrate the exchanges between the equipment of the system represented in FIGS. 1 and 2.
- a user selects via the user interface 22 of the receiving device, a video sequence, for example a film or a particular issue that he wants to burn to a DVD 30.
- the recorder 28 reads all the secure disk keys etched on the area of the departure 32 of the DVD and transmits this set of secure disk keys to the receiving device 6.
- the encryption / decryption module 20 of the receiving device 6 retrieves the disk key DK from this set of secure keys and the master key MK.
- the receiver device 6 then constructs a video content request message that it sends to the address of the multimedia server 10.
- This request contains an identifier of the video sequence controlled, an identifier of the receiver device 6, the disk key DK that comes to be obtained, an indication of the uses requested and a payment order.
- the multimedia server 10 searches the requested video content in the database 12, scrambles it with the title keys and encrypts the title keys with the aid of the disk key DK received according to the CSS protocol.
- the multimedia server 10 transmits to the receiving device 6 the video content scrambled by the title keys, the key titles encrypted by the disk key DK and an indication of the uses purchased by the user.
- the encryption / decryption module 20 of the receiving device determines and encrypts a domain information D1.
- This Domain information Dl comprises the usages purchased by the user as well as the IDD of the domain to which the receiving device belongs.
- DDK is a key adapted to the AES encryption standard, derived from the disk key DK, for example by concatenating O 'to the least significant bits of the key DK to obtain a key of the size required by AES;
- IDD is the identifier of the domain of the receiving device
- step 108 the burner 28 burns the scrambled video content on the data recording area 36 and the domain information D1 on the storage area 34.
- the user has a DVD 30 comprising a video content protected according to the CSS specification and an IDD identifier characterizing the particular domain in which this multimedia content has been etched and to which the DVD is attached.
- the user wishes to make the downloaded video content available to the equipment of the domain defined by the identifier IDL
- the DVD 30 is introduced into the reader 40 belonging to this domain.
- the reading means 45 of the reader read all the secure disk keys in the starting area 32 of the DVD as well as the domain information D1 stored in the storage area 34 of the DVD.
- the encryption / decryption module 48 retrieves the disk key DK from the set of secure disk keys and the master key MK 'which is contained in the reader 40 (according to the principle of the CSS specification). It deduces from this disk key DK a derived key DDK and decrypts, with the aid of this key DDK, the domain information D1 to retrieve the US usages and IDD ID of the domain in which the DVD 30 was burned.
- the reader 40 transmits the US usages and the IDD identifier to the smart card 44.
- the processor 56 of the smart card checks whether the IDD identifier engraved on the DVD corresponds to the identifier IDL that it memorizes. If the IDD identifier engraved on the DVD 30 does not correspond to the IDL identifier of the smart card, the DVD 30 has not been etched by a burner belonging to the same domain as the reader 40.
- control words generally denoted CW (of the English word “Control Word") and control messages denoted LECM (of the English "Local
- the LECM control messages comprise the CW control words encrypted so as to be decrypted only by virtue of the domain key DOK, the IDL of the domain of the reader 40, an integrity check and the US usages protected by a Integrity calculation. These LECM control messages can only be decrypted by the equipment belonging to the same domain as the reader 40.
- the CW control words contained in the LECM control messages are over-encrypted.
- LECM control messages including over-encrypted CW control words indicate to any equipment receiving these LECM control messages and digital data attached thereto that the received digital data can be presented only during DVD playback and can not be copied or played back.
- the processor 56 of the smart card transmits the LECM control messages and the control words CW generated to the reader 40.
- the scrambling / descrambling module 50 of the reader descrambles the digital data engraved on the zone 36 of the DVD with the aid of the key DK obtained in the step 112.
- the scrambling / descrambling module 50 of the reader scrambles the descrambled digital data in step 122, using the control words CW generated by the processor 56 of the smart card. .
- the reader 40 transmits to the presentation device 60 via the distribution network 54, the digital data scrambled using the control words CW and the LECM control messages generated by the processor 56.
- the processor 57 of the smart card connected to the presentation device 60 decrypts the LECM control messages and the descrambling module 66 descrambles the digital data received so that the device displays the video transmitted through the network 54.
- the presentation device 60 displays the video content simultaneously with the reading of the DVD 30 by the reader 40.
- the burner 62 also has access to these digital data transmitted via the distribution network 54. However, the burner
- 62 may, for the convenience of the user, prevent the reproduction or copying of this data on a DVD, because if such a copy is made, this copy will be unusable because CW control words are over-encrypted.
- the processor 56 of the smart card analyzes the US uses purchased during the burning of the DVD during a step 130.
- step 134 the LECM control messages and the CW control words are transmitted to the reader 40.
- step 136 the digital data read on the DVD is descrambled according to the same method as the method described in step 122.
- step 138 these digital data descrambled during the step 136 are scrambled by the control words CW generated during the step 132.
- the scrambled digital data and the LECM control messages are transmitted to the storage equipment 64 via the distribution network 54 for recording there. Only equipment belonging to the same domain as the reader
- step 130 the analyzed uses define that the digital data is freely copiable / reproducible, the processor 56 of the smart card generates LECM control messages containing unencrypted control words.
- step 130 the processor 56 determines that the digital data is not reproducible / copiable, then it generates LECM control messages and overcontrolled CW control words and steps 120-128 are repeated. In this case, the digital data will still be presentable by a presentation device belonging to the domain identified by the identifier IDL.
- the method according to the invention can also be implemented in a protected domain protection system according to the xCP (Extensible Content Protection) trademark method described in the "xCP: Extensible Content Protection” documents. 2003. IBM “and” xCP Cluster Protocol, IBM Presentation to Copy Protection Technical Working Group, JuIy 18, 2002 “. According to this domain protection method, each domain or group of devices is defined by an ID group ID called "cluster ID”.
- the burner includes means for storing the group identifier ID and is adapted to calculate the domain information D1.
- This information D1 is obtained by applying a hash function to the concatenated data comprising the DVD disk key DK, the ID group ID and a clean copy flag to take the value 0 or 1 depending on whether this copy is authorized or no.
- the burner is adapted to burn the domain information D1 on the
- the receiving device receiving the burned DVD determines if the DVD has been burned in its domain by building its own domain information
- Dl takes the identifier of its own domain, it sets the copy indicator to a value corresponding to an authorized copy and takes the disk key DK read on the DVD.
- the copying is allowed and the receiving device descrambles and then scrambles the digital data according to the xCP protocol of this domain.
- this secure distribution method can be used with a secure DVD according to the Content Protection for Precorded Media (CPPM) system, the Content Protection for Recordable Media (CPRM) system, the BD CPS system for blue ray disc (the "Blue-ray copy protection system") or the Vidi system for DVD + R / DVD + RW disc.
- the burner burns on the DVD only the digital data and the domain identifier but not the uses or rights of reproduction attached to the digital data.
- the smart card when the reader reads an identifier, the smart card generates control words and control messages according to a protocol allowing only the copy / reproduction in the identified domain on the disk.
- the smart card When the DVD does not include an identifier, the smart card generates control words and control messages over encrypted according to a protocol preventing the copy / reproduction by any equipment. In this case, the digital data is still presentable by a presentation device belonging to the domain.
- the DVD is put into the pre-written trade in a form in which it contains digital data representative of multimedia content and associated uses. Before the first use of this DVD and for the DVD to be read by a device, this DVD must be positioned in a burner suitable for engraving the identifier of the domain to which the burner belongs. In this case, the DVD or the player is conditioned to function only when the DVD contains a domain identifier.
- this secure distribution method allows a certain freedom of sharing digital data with friends or acquaintances as well as sharing with the equipment connected to the same domain while protecting the intellectual property rights attached to this digital data.
- the secure disks on which a copy / reproduction of the multimedia content has been burned are only readable and presentable in the domain defined by the identifier engraved on the secure disk on which the downloaded version of the multimedia content and the domain identifier have been engraved.
- this last secure disk that is to say the disk containing the downloaded version of the multimedia content and the domain identifier, can be read and presented on any CSS presentation device authorized in any domain.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Signal Processing (AREA)
- Multimedia (AREA)
- Theoretical Computer Science (AREA)
- Power Engineering (AREA)
- Databases & Information Systems (AREA)
- Computer Networks & Wireless Communication (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Signal Processing For Digital Recording And Reproducing (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims
Priority Applications (5)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020087009168A KR101407139B1 (ko) | 2005-10-17 | 2006-10-17 | 디지털 데이터의 기록 및 안전한 분배 방법과 액세스 장치및 레코더 |
US12/083,279 US8724807B2 (en) | 2005-10-17 | 2006-10-17 | Method for etching and secure distribution of digital data, access device and writer |
CN2006800387338A CN101292292B (zh) | 2005-10-17 | 2006-10-17 | 记录并安全分发数字数据的方法、访问设备和记录器 |
EP06830969A EP1949374A2 (fr) | 2005-10-17 | 2006-10-17 | Methode de gravure et de distribution securisee de donnees numeriques, dispositif d'acces et graveur |
JP2008536080A JP5122468B2 (ja) | 2005-10-17 | 2006-10-17 | デジタルデータを記録し、セキュアに配信する方法、アクセス装置及びレコーダ |
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
FR0510566A FR2892222A1 (fr) | 2005-10-17 | 2005-10-17 | Methode de gravure, de mise a disposition et de distribution securisee de donnees numeriques, dispositif d'acces et graveur. |
FR0510566 | 2005-10-17 |
Publications (2)
Publication Number | Publication Date |
---|---|
WO2007045756A2 true WO2007045756A2 (fr) | 2007-04-26 |
WO2007045756A3 WO2007045756A3 (fr) | 2007-06-21 |
Family
ID=36763741
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
PCT/FR2006/002328 WO2007045756A2 (fr) | 2005-10-17 | 2006-10-17 | Gravure et distribution securisee de donnees numeriques |
Country Status (7)
Country | Link |
---|---|
US (1) | US8724807B2 (fr) |
EP (1) | EP1949374A2 (fr) |
JP (1) | JP5122468B2 (fr) |
KR (1) | KR101407139B1 (fr) |
CN (1) | CN101292292B (fr) |
FR (1) | FR2892222A1 (fr) |
WO (1) | WO2007045756A2 (fr) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2009104844A1 (fr) * | 2008-02-19 | 2009-08-27 | Samsung Electronics Co., Ltd. | Procédé et appareil pour enregistrer ou fournir un contenu |
EP2227807A1 (fr) * | 2008-01-09 | 2010-09-15 | Samsung Electronics Co., Ltd. | Procédé d'enregistrement de contenu sur un disque, procédé de fourniture de clé de titre, appareil pour enregistrer un contenu sur un disque, et serveur de fourniture de contenu |
Families Citing this family (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US9848236B2 (en) * | 2011-10-17 | 2017-12-19 | Mediapointe, Inc. | System and method for digital media content creation and distribution |
US9166976B2 (en) * | 2011-10-17 | 2015-10-20 | Stephen Villoria | Creation and management of digital content and workflow automation via a portable identification key |
US10721540B2 (en) * | 2015-01-05 | 2020-07-21 | Sony Corporation | Utilizing multiple dimensions of commerce and streaming data to provide advanced user profiling and realtime commerce choices |
US10901592B2 (en) | 2015-01-05 | 2021-01-26 | Sony Corporation | Integrated multi-platform user interface/user experience |
WO2016111872A1 (fr) | 2015-01-05 | 2016-07-14 | Sony Corporation | Expérience d'utilisateur vidéo intégrée personnalisée |
KR102286303B1 (ko) * | 2016-08-29 | 2021-08-06 | 한국전자통신연구원 | Dash 기반 미디어 서비스에서 drm 시스템을 위한 키 회전 |
Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20040230532A1 (en) | 2003-02-17 | 2004-11-18 | Sony Corporation | Contents copying management system, copying management device, copying management method, contents copying apparatus and contents copying method |
US20050169118A1 (en) | 2004-02-02 | 2005-08-04 | Samsung Electronics Co., Ltd. | Method of recording and/odr reproducing data under control of domain management system |
Family Cites Families (18)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
EP0936774A1 (fr) * | 1998-02-13 | 1999-08-18 | CANAL+ Société Anonyme | Enrégistrement de données numériques brouillées |
US6523113B1 (en) * | 1998-06-09 | 2003-02-18 | Apple Computer, Inc. | Method and apparatus for copy protection |
US6385727B1 (en) * | 1998-09-25 | 2002-05-07 | Hughes Electronics Corporation | Apparatus for providing a secure processing environment |
EP1256950A4 (fr) * | 1999-12-28 | 2011-03-16 | Panasonic Corp | Appareil d'enregistrement, appareil de reproduction, appareil de traitement de donnees, appareil d'enregistrement/de reproduction et appareil de transmission de donnees |
US20020157002A1 (en) * | 2001-04-18 | 2002-10-24 | Messerges Thomas S. | System and method for secure and convenient management of digital electronic content |
US7155609B2 (en) * | 2001-06-14 | 2006-12-26 | Microsoft Corporation | Key exchange mechanism for streaming protected media content |
US7487363B2 (en) * | 2001-10-18 | 2009-02-03 | Nokia Corporation | System and method for controlled copying and moving of content between devices and domains based on conditional encryption of content key depending on usage |
FR2836609A1 (fr) * | 2002-02-25 | 2003-08-29 | Thomson Licensing Sa | Procede de traitement de donnees chiffrees pour un premier domaine et recues dans un reseau appartenant a un second domaine |
JP4625695B2 (ja) * | 2002-05-22 | 2011-02-02 | コーニンクレッカ フィリップス エレクトロニクス エヌ ヴィ | デジタル著作権の管理方法およびシステム |
TW588275B (en) * | 2002-09-11 | 2004-05-21 | Ind Tech Res Inst | System, method and device against CD duplication |
BR0315550A (pt) * | 2002-10-22 | 2005-08-23 | Koninkl Philips Electronics Nv | Método para autorizar uma operação solicitada por um primeiro usuário em um item de conteúdo, e, dispositivo arranjado para executar uma operação solicitada por um primeiro usuário em um item de conteúdo |
WO2004059451A1 (fr) * | 2002-12-30 | 2004-07-15 | Koninklijke Philips Electronics N.V. | Droits divises en domaine autorise |
US9009308B2 (en) * | 2003-07-24 | 2015-04-14 | Koninklijke Philips N.V. | Hybrid device and person based authorized domain architecture |
KR100567822B1 (ko) * | 2003-10-01 | 2006-04-05 | 삼성전자주식회사 | 공개 키 기반 구조를 이용한 도메인 형성 방법 |
KR101022465B1 (ko) * | 2003-11-13 | 2011-03-15 | 삼성전자주식회사 | 암호화된 디지털 데이터의 복사 및 복호화 방법 및 장치 |
US7676846B2 (en) * | 2004-02-13 | 2010-03-09 | Microsoft Corporation | Binding content to an entity |
JP2007529968A (ja) * | 2004-03-18 | 2007-10-25 | トムソン ライセンシング | コンテンツへのアクセスを選択的に提供する方法及びシステム |
NZ550080A (en) * | 2004-03-26 | 2008-06-30 | Koninkl Philips Electronics Nv | Method of and system for generating an authorized domain |
-
2005
- 2005-10-17 FR FR0510566A patent/FR2892222A1/fr active Pending
-
2006
- 2006-10-17 JP JP2008536080A patent/JP5122468B2/ja not_active Expired - Fee Related
- 2006-10-17 WO PCT/FR2006/002328 patent/WO2007045756A2/fr active Application Filing
- 2006-10-17 EP EP06830969A patent/EP1949374A2/fr not_active Withdrawn
- 2006-10-17 US US12/083,279 patent/US8724807B2/en not_active Expired - Fee Related
- 2006-10-17 KR KR1020087009168A patent/KR101407139B1/ko not_active IP Right Cessation
- 2006-10-17 CN CN2006800387338A patent/CN101292292B/zh not_active Expired - Fee Related
Patent Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20040230532A1 (en) | 2003-02-17 | 2004-11-18 | Sony Corporation | Contents copying management system, copying management device, copying management method, contents copying apparatus and contents copying method |
US20050169118A1 (en) | 2004-02-02 | 2005-08-04 | Samsung Electronics Co., Ltd. | Method of recording and/odr reproducing data under control of domain management system |
Cited By (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
EP2227807A1 (fr) * | 2008-01-09 | 2010-09-15 | Samsung Electronics Co., Ltd. | Procédé d'enregistrement de contenu sur un disque, procédé de fourniture de clé de titre, appareil pour enregistrer un contenu sur un disque, et serveur de fourniture de contenu |
EP2227807A4 (fr) * | 2008-01-09 | 2014-01-08 | Samsung Electronics Co Ltd | Procédé d'enregistrement de contenu sur un disque, procédé de fourniture de clé de titre, appareil pour enregistrer un contenu sur un disque, et serveur de fourniture de contenu |
WO2009104844A1 (fr) * | 2008-02-19 | 2009-08-27 | Samsung Electronics Co., Ltd. | Procédé et appareil pour enregistrer ou fournir un contenu |
KR100965888B1 (ko) | 2008-02-19 | 2010-06-24 | 삼성전자주식회사 | 콘텐츠 제공 또는 기록 방법 및 그 방법을 수행하는 장치 |
Also Published As
Publication number | Publication date |
---|---|
KR101407139B1 (ko) | 2014-06-13 |
JP5122468B2 (ja) | 2013-01-16 |
CN101292292A (zh) | 2008-10-22 |
WO2007045756A3 (fr) | 2007-06-21 |
FR2892222A1 (fr) | 2007-04-20 |
CN101292292B (zh) | 2012-12-12 |
EP1949374A2 (fr) | 2008-07-30 |
JP2009512085A (ja) | 2009-03-19 |
KR20080056217A (ko) | 2008-06-20 |
US20090070600A1 (en) | 2009-03-12 |
US8724807B2 (en) | 2014-05-13 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US9081972B2 (en) | Method of distributing a decryption key in fixed-content data | |
US7499550B2 (en) | System and method for protecting a title key in a secure distribution system for recordable media content | |
RU2290767C2 (ru) | Приемное устройство для защищенного сохранения единицы контента и устройство воспроизведения | |
KR20050086552A (ko) | 복제가 제어되는 저장 디바이스를 위한 기록 시스템 및방법 | |
EP1949374A2 (fr) | Methode de gravure et de distribution securisee de donnees numeriques, dispositif d'acces et graveur | |
KR20060106654A (ko) | 콘텐츠 정보제공시스템, 콘텐츠 정보제공서버, 콘텐츠재생장치, 콘텐츠 정보제공방법, 콘텐츠 재생방법 및컴퓨터 프로그램 | |
US7874004B2 (en) | Method of copying and reproducing data from storage medium | |
KR20090076606A (ko) | 컨텐츠 기록 방법, 타이틀 키 제공 방법, 컨텐츠 기록 장치및 컨텐츠 제공 서버 | |
EP1393317B1 (fr) | Chiffrement et le déchiffrement de données sur un support d'enregistrement | |
US20070143594A1 (en) | Method for distributing digital data and burning them on a DVD, client device and remote server associated | |
KR20010069723A (ko) | 암호화된 디지털 컨텐츠를 포함하는 디지털 기록매체와이의 배포방법, 그리고 이를 이용한 디지털 기록매체 제작시스템 | |
CN101375334B (zh) | 用于记录和分发数字数据的方法及相关设备 | |
FR2896076A1 (fr) | Methode de mise a disposition, de distribution et de gravure donnees numeriques et serveur de distribution associe. | |
US20050125356A1 (en) | Method and apparatus for decrypting encrypted data by suing copy control information and computer readable recording medium for storing program for implementing the apparatus and method | |
JP4663242B2 (ja) | コンテンツ配信・再生方法、コンテンツ配信・再生システム、その管理装置及び再生装置 | |
US20050100315A1 (en) | Method of and apparatus for copying AV stream, and method of copying AV contents | |
KR100513280B1 (ko) | Av데이터 복제 방지 시스템 및 복제방지 방법 | |
EP1930895A1 (fr) | Enregistrement de contenu protégé par CSS sur disques DVD | |
EP1683149A1 (fr) | Procede et systeme de decryptage de disque | |
JP2006172041A (ja) | コンピュータ・プログラムおよびコンテンツ配信方法 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
WWE | Wipo information: entry into national phase |
Ref document number: 200680038733.8 Country of ref document: CN |
|
121 | Ep: the epo has been informed by wipo that ep was designated in this application | ||
WWE | Wipo information: entry into national phase |
Ref document number: 2556/DELNP/2008 Country of ref document: IN |
|
WWE | Wipo information: entry into national phase |
Ref document number: 12083279 Country of ref document: US |
|
REEP | Request for entry into the european phase |
Ref document number: 2006830969 Country of ref document: EP |
|
WWE | Wipo information: entry into national phase |
Ref document number: 2006830969 Country of ref document: EP |
|
ENP | Entry into the national phase |
Ref document number: 2008536080 Country of ref document: JP Kind code of ref document: A |
|
WWE | Wipo information: entry into national phase |
Ref document number: 1020087009168 Country of ref document: KR |
|
NENP | Non-entry into the national phase |
Ref country code: DE |
|
WWP | Wipo information: published in national office |
Ref document number: 2006830969 Country of ref document: EP |