Claims
- 1. A method for sharing content between a first party and a second party in a secure communication session, comprising:
storing a content of the first party on a personal content server; distributing access information for the content from the first party to the second party, the access information allowing the second party to access the content; presenting the access information of the second party to the personal content server; verifying the access information from the second party in the personal content server; and processing the content for distribution to the second party upon verification of the access information.
- 2. The method according to claim 1, wherein the content comprises a streamed content, including a RTSP/RTP streamed content, and the step of processing comprises encrypting the content while it is being streamed.
- 3. The method according to claim 2, wherein the content may be accessed by using a ticket.
- 4. The method according to claim 2, wherein the streamed content is DRM protected content.
- 5. The method according to claim 4, wherein the personal content server is capable of manipulating the DRM content for the second party, further comprising the steps of:
authenticating a DRM module in a terminal of the second party; confirming a right of the first party to distribute the DRM content; manipulating the DRM content, if needed, to match the terminal of the second party; and creating a right specifically for the second party to access the manipulated content.
- 6. The method according to claim 5, wherein the step of manipulating comprises
decrypting the DRM content; reformatting the DRM content, if needed, to match the terminal of the second party; tagging the DRM content for the terminal of the second party; and re-encrypting the content with a specific key for the second party.
- 7. The method according to claim 4, wherein the personal content server has a pre-installed first DRM module and wherein the step of distributing comprises the steps of:
generating a second DRM module in the personal content server; and distributing the second DRM module from the personal content server to the second party.
- 8. The method according to claim 1, wherein the personal content server and each terminal of the parties share a predetermined function, further comprising the step of:
distributing a nonce from the personal content server to the terminals; and deriving a content key in the terminals and the personal content server based on the predetermined function, the nonce, and a session identity.
- 9. The method according to claim 1, wherein the content is encrypted prior to being stored on the personal content server.
- 10. A telecommunication system wherein content may be shared between a first party and a second party in a secure manner, comprising:
a first party terminal; a second party terminal connected to the first party terminal in a secure communication session, the first party terminal configured to distribute access information for a content to the second party, the access information allowing the second party to access the content; a personal content server connected to the first and second party terminals and storing a content of the first party thereon, the personal content server configured to verify the access information when it is presented to the personal content server by the second party, and to process the content for distribution to the second party upon verification of the access information.
- 11. The telecommunication system according to claim 10, wherein the content comprises a streamed content, including a RTSP/RTP streamed content, and the personal content server processes the content by encrypting the content while it is being streamed.
- 12. The telecommunication system according to claim 11, wherein the content may be accessed by using a ticket.
- 13. The telecommunication system according to claim 11, wherein the streamed content is DRM protected content.
- 14. The telecommunication system according to claim 13, wherein the personal content server is further configured to authenticate a DRM module in the second party terminal, confirm a right of the first party terminal to distribute the DRM content, manipulate the DRM content, if needed, to match the second party terminal, and create a right specifically for the second party terminal to access the manipulated content.
- 15. The telecommunication system according to claim 14, wherein the personal content server manipulates the content by decrypting the DRM content, reformatting the DRM content, if needed, to match the second party terminal, tagging the DRM content for the second party terminal, and re-encrypting the content with a specific key for the second party terminal.
- 16. The telecommunication system according to claim 13, wherein the personal content server has a pre-installed first DRM module and is further configured to generate a second DRM module, and to distribute the second DRM module to the second party terminal.
- 17. The telecommunication system according to claim 10, wherein the personal content server and first and second party terminals share a predetermined function and the personal content server is configured to distribute a nonce to the terminals, and both the personal content server and the terminals are configured to derive a content key based on the predetermined function, the nonce, and a session identity.
- 18. The telecommunication system according to claim 10, wherein the content is encrypted prior to storage on the personal content server.
- 19. A network node for facilitating secure sharing of content between a first party and a second party, said network node normally accessible by the first party only, comprising:
means for establishing a secure connection to the terminals of the first and second parties; means for storing a content of the first party; means for issuing access authorization to the second party terminal; means for receiving a request to access the content using the access authorization from the second party terminal; means for verifying the received access authorization; and means for distributing the content in a secure manner to the second party terminal upon verification of the access authorization.
- 20. The network node according to claim 19, wherein the content comprises a streamed content, including a RTSP/RTP streamed content, and the personal content server processes the content by encrypting the content while it is being streamed.
- 21. The network node according to claim 20, wherein the content may be accessed by using a ticket.
- 22. The network node according to claim 20, wherein the streamed content is DRM protected content.
- 23. The network node according to claim 22, further comprising means for authenticating a DRM module in the second party terminal, confirming a right of the first party terminal to distribute the DRM content, manipulating the DRM content, if needed, to match the second party terminal, and creating a right specifically for the second party terminal to access the manipulated content.
- 24. The network node according to claim 23, wherein the means for manipulating includes means for decrypting the DRM content, reformatting the DRM content, if needed, to match the second party terminal, tagging the DRM content for the second party terminal, and re-encrypting the content with a specific key for the second party terminal.
- 25. The network node according to claim 22, further comprising means for generating a DRM module, and distributing the DRM module to the second party terminal.
- 26. The network node according to claim 19, wherein the network node and the first and second party terminals share a predetermined function, further comprising means for distributing a nonce to the terminals, and for deriving a content key based on the predetermined function, the nonce, and a session identity.
- 27. The network node according to claim 19, wherein the content is encrypted prior to storing.
CROSS-REFERENCE TO RELATED APPLICATION
[0001] This application for patent claims the benefit of priority from, and hereby incorporates by reference, U.S. Provisional Patent Application Serial No. 60/381,425 entitled “SECURE CONTENT SHARING—PERSONAL DRM” filed with the U.S. Patent and Trademark Office on May 17, 2002.
Provisional Applications (1)
|
Number |
Date |
Country |
|
60381425 |
May 2002 |
US |