Claims
- 1. A method for securely transmitting multicast data, comprising:
encrypting at least one title T with at least title key KT; and encrypting the title key KT with at least one channel-unique key Kcu using at least one encryption function S to render a multicast data channel encrypted as SKcu(KT), SKT(T).
- 2. The method of claim 1, wherein the channel-unique key Kcu is the result of a combination of a channel key Kc and a session key Ks.
- 3. The method of claim 2, wherein the combination is a hash function of a concatenation of the channel key Kc and session key Ks.
- 4. The method of claim 2, wherein the session key Ks is encrypted with at least a first encryption scheme BRs1 to render a session key block.
- 5. The method of claim 4, comprising providing at least one player with device keys Kd to activate the player.
- 6. The method of claim 5, comprising providing the player with the channel key Kc.
- 7. The method of claim 6, wherein at least one of the providing acts is undertaken in a point-to-point communication.
- 8. The method of claim 6, wherein at least one of the providing acts is undertaken as part of a broadcast.
- 9. The method of claim 6, comprising providing the player with the session key block.
- 10. The method of claim 9, wherein the player can determine the session key Ks from the session key block using the device keys Kd.
- 11. The method of claim 10, comprising periodically refreshing the channel key Kc to enforce subscriptions.
- 12. The method of claim 10, comprising selectively updating the session key block.
- 13. The method of claim 12, comprising updating the session key block by encrypting an updated session key with at least the encryption scheme BRs1.
- 14. The method of claim 11, wherein a new channel key Kc′ is encrypted with at least a second encryption scheme BRs2.
- 15. The method of claim 14, wherein the new channel key Kc′ is sent in a message that is split.
- 16. The method of claim 14, wherein the new channel key Kc′ is refreshed using plural messages.
- 17. The method of claim 14, wherein the encryption scheme BRs2 includes:
assigning each player in a group of players respective private information Iu; partitioning players not in a revoked set R into disjoint subsets Si1, . . . Sim having associated subset keys Li1, . . . Lim; and encrypting the session key KS with the subset keys Li1, . . . Lim to render m encrypted versions of the session key KS.
- 18. The method of claim 17, wherein the encryption scheme BRs2 further includes partitioning the players into groups S1, . . . ,Sw, wherein “w” is an integer, and the groups establish subtrees in a tree.
- 19. The method of claim 18, wherein the tree includes a root and plural nodes, each node having at least one associated label, and wherein each subset includes all leaves in a subtree rooted at some node vi that are not in the subtree rooted at some other node vj that descends from v1.
- 20. The method of claim 19, wherein the revoked set R defines a spanning tree, and wherein the method includes:
initializing a cover tree T as the spanning tree; iteratively removing nodes from the cover tree T and adding nodes to a cover until the cover tree T has at most one node.
- 21. The method of claim 19, wherein each node has at least one label possibly induced by at least one of its ancestors, and wherein each player is assigned labels from all nodes hanging from a direct path between the player and the root but not from nodes in the direct path.
- 22. The method of claim 21, wherein labels are assigned to subsets using a pseudorandom sequence generator, and the act of decrypting includes evaluating the pseudorandom sequence generator.
- 23. The method of claim 1, wherein the data is streamed to players.
- 24. A method for enforcing copy protection compliance and subscription compliance, comprising:
providing players with respective device keys Kd useful for enabling copy protection compliance; and providing players with at least one channel key Kc useful for enabling subscription compliance, such that a player can decrypt content only if the player is both compliant with copy protection and the player is an active subscriber to a content channel.
- 25. The method of claim 24, wherein the content is streamed to players.
- 26. The method of claim 25, comprising:
encrypting at least one title T with at least title key KT; and encrypting the title key KT with at least one channel-unique key Kcu using at least one encryption function S to render a multicast data channel encrypted as SKcu(KT), SKT(T).
- 27. The method of claim 26, wherein the channel-unique key Kcu is the result of a combination of the channel key Kc and a session key Ks.
- 28. The method of claim 27, wherein the combination is a hash function of a concatenation of the channel key Kc and a session key Ks.
- 29. The method of claim 27, wherein the session key Ks is encrypted with at least a first encryption scheme BRs1 to render a session key block.
- 30. The method of claim 29, comprising providing at least one player with its respective device keys Kd to activate the player.
- 31. The method of claim 30, comprising providing the player with the channel key Kc upon or in response to subscription.
- 32. The method of claim 30, wherein at least one of the providing acts is undertaken in a point-to-point communication.
- 33. The method of claim 30, wherein at least one of the providing acts is undertaken as part of a broadcast.
- 34. The method of claim 30, comprising providing the player with the session key block.
- 35. The method of claim 34, wherein the player can determine the session key Ks from the session key block using the device keys Kd.
- 36. The method of claim 35, comprising periodically refreshing the channel key Kc to enforce subscriptions.
- 37. The method of claim 34, comprising selectively updating the session key block.
- 38. The method of claim 35, wherein the new channel key Kc′ is refreshed by encrypting a new channel key Kc′ with at least one encryption scheme.
- 39. The method of claim 38, wherein the new channel key Kc′ is sent in a message that is split.
- 40. The method of claim 38, wherein the new channel key is refreshed using plural messages.
- 41. A player for decrypting streamed content, comprising:
at least one device key Kd; means for decrypting a session key Ks using the device key Kd; means for decrypting a channel unique key Kcu using at least the session key Ks; and means for deriving a title key KT using at least the channel unique key Kcu, the title key KT being useful for decrypting content.
- 42. The player of claim 41, wherein the content is multicast to the player.
- 43. The player of claim 42, wherein the player includes means for receiving streamed content, and the content is streamed to the player.
- 44. A computer program device, comprising:
a computer program storage device including a program of instructions usable by a computer, comprising: logic means for receiving private information Iu upon registration with a content provider; logic means for subscribing to at least one content channel provided by the content provider; logic means for receiving at least one encrypted channel key Kc at least partially in response to subscribing to the channel; logic means for deriving the channel key Kc using the information Iu; and logic means for using at least the channel key Kc to decrypt content streamed over the channel.
- 45. The computer program device of claim 44, further comprising:
plural device keys Kd; logic means for receiving at least one session key block; logic means for deriving at least one session key Ks from the session key block using at least one device key Kd.
- 46. The computer program device of claim 45, further comprising:
logic means for using the session key Ks and channel key Kc to derive a channel unique key Kcu; and logic means for using the channel unique key Kcu to decrypt a title key KT useful for decrypting the content.
- 47. The method of claim 14, wherein the new channel key Kc′ is sent in-band with the title T.
- 48. The method of claim 38, wherein the new channel key Kc′ is sent in-band with the title T.
RELATED APPLICATIONS
[0001] This is a continuation-in-part of U.S. patent application Ser. No. 09/770,877, filed Jan. 26, 2001, incorporated herein by reference.
Continuation in Parts (1)
|
Number |
Date |
Country |
| Parent |
09770877 |
Jan 2001 |
US |
| Child |
10042652 |
Jan 2002 |
US |