Decentralized Blockchain Broadcast Encryption Key Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current broadcast encryption and key generation systems are centralized, leading to single points of failure, requiring significant human oversight, and posing risks to confidential information due to their vulnerability and need for disaster recovery measures.

Innovation Solution

A decentralized blockchain framework is implemented for broadcast encryption and key generation, utilizing a distributed storage system with multiple nodes that communicate to validate transactions and maintain an immutable ledger, allowing for secure and tamper-proof storage and management of media access keys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a centralized key generation facility is used, then key distribution is simplified and centralized control is achieved, but the system has single points of failure and requires significant human oversight

Engineering Contradiction:
Improvekey distributionVSAvoidsystem availability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent divides the centralized key generation facility into multiple distributed key generation nodes across a blockchain network. Each node independently generates and stores keys, eliminating the single point of failure while maintaining coordinated key distribution through blockchain consensus mechanisms.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The blockchain acts as an intermediary layer between key generation nodes and users. It provides automated trustless verification and distribution of keys, replacing manual oversight while ensuring reliable key delivery without requiring human intervention at each step.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If a centralized facility manages all keys, then key management is centralized and simple to control, but the facility becomes vulnerable and requires disaster recovery measures

Engineering Contradiction:
Improvekey managementVSAvoidvulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent segments the centralized key management function into multiple distributed key generation nodes. Each node holds a portion of the key management responsibility, and the blockchain distributes key information across all nodes. This segmentation eliminates the vulnerability of a single centralized facility while maintaining coordinated key management through consensus protocols.

Inventive Principle:
Principle #1Segmentation

3Reliability

If multiple nodes are used for decentralized storage, then security is enhanced and single points of failure are eliminated, but system complexity increases

Engineering Contradiction:
Improvesystem resilienceVSAvoidsystem architecture
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent makes each blockchain node multi-functional, serving both as a storage node for key information and as a verification node for key distribution. This universality reduces overall system complexity compared to having separate dedicated storage and verification systems, while maintaining the security benefits of distributed architecture.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11876903B2Decentralized broadcast encryption and key generation facility
Publication Date: 2024.01.16 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11876903B2 patent drawing
  • US11876903B2 patent drawing
  • US11876903B2 patent drawing

AI summary

A processor may incorporate one or more keys in a media. The one or more keys may each be associated with a specific instance and the one or more keys may be included in a blockchain. The processor may identify that a first specific instance has been encountered. The processor may provide a first key associated with the first specific instance. The processor may determine to allow access to content of the media.