Grouping authorization control method

A technology of authorization control and control parameters, which is applied to key distribution, can solve the problems of increasing device storage and network bandwidth consumption, and the inability to authorize users at different levels, so as to achieve good scalability and flexibility of use, the amount of secret information and authorized broadcasting The effect of small amount of information and reducing network bandwidth consumption

Inactive Publication Date: 2008-12-17
中电科网络安全科技股份有限公司
View PDF0 Cites 4 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0013] The purpose of the present invention is to solve the problem that the prior art cannot authorize users in different levels, and propose a group authorization control method based on multi-branch tree structure division of user sets. Permission levels are divided and covered by ordered subsets to enhance the system's group management and authorization control capabilities and application range without increasing device storage and network bandwidth consumption

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Grouping authorization control method
  • Grouping authorization control method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0054] The present invention will be further described below in conjunction with the accompanying drawings and specific embodiments.

[0055] In the digital copyright management system based on digital TV, for consumers who have reserved or purchased digital programs, the consumption content can be some or all programs within a certain period of time, or part of a certain program, etc., and permission to consume content is required certificate issuance or authorization. The system pre-allocates secret information to the user's equipment according to the user's authorization level and purchase behavior. When the consumer digital program time or content, the system needs to revoke the license or revoke the rights of the user equipment.

[0056] However, two extreme situations in the prior art show the contradiction between bandwidth consumption and the number of keys. One is that if a user set containing n terminals is not grouped, the bandwidth consumption when the center publ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

A packet authorization control method relates to a method of information safety processing, object to resolve the problem that the prior art can not hierarchically authorize users. The method includes: according to an aggregation N including n users, constructing a multi-branch tree including n leaves, each branch of the tree is taken as a node, and the leaf at the extreme end is denoted as a user apparatus u; each user is mapped as one leaf of the extreme end of the multi-branch tree; programming the ordered subaggregate sequence S1, S2,..., Sw of the user aggregation N; performing ordered subaggregate division and overlay to the user aggregation N according to different licensed authority levels, to perform packet authorization. The invention can adapt for requirement of multiple safety grades or licensed authority grades, and facilitate the system to realize differentiated packet management and authorization control, while the secret information quantity of users and authorization broadcast information quantity are both ensured to be minimal.

Description

technical field [0001] The invention relates to a group authorization control method for terminal users of an information security processing system, in particular to a group management and authorization control method for sub-set division and coverage of a user set according to a multi-branch tree structure. Background technique [0002] In digital media application systems, such as mobile entertainment (mobile games, mobile music, mobile TV, etc.), cartoons, digital media DTV and IPTV, etc., the terminals contain a large number of users, and how to securely carry out authorization, rights, etc. Security management and authorization control issues such as revocation and device revocation. Therefore, such applications need to establish an information security processing system for group management and authorization control for user sets, to ensure that the authorization messages sent by the system management center reach the designated recipients safely and efficiently, and ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/08H04L29/06
Inventor 王金波
Owner 中电科网络安全科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products