Conditional Access Security Chip for Digital TV

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The traditional Conditional Access (CA) system architecture in digital television is vulnerable to hacker attacks and piracy due to bidirectional interfaces and complex software/hardware requirements, leading to increased costs and security risks, especially with the use of high-end SoC chips.

Innovation Solution

A secure CA terminal design that integrates a security chip with a demultiplexing module, CA module, secure storage, and connection protection module, eliminating the need for an external smart card and allowing all security processing to occur within the security chip, using Advanced Encryption Standard (AES) and Digital Rights Management (DRM) for enhanced security and flexibility.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If traditional CA system uses external smart card and bidirectional interfaces, then system functionality and service capability are improved, but security vulnerability and piracy risk increase

Engineering Contradiction:
Improveservice capabilityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent extracts the security-sensitive operations (descrambling and encryption) from the main SoC chip and places them in a dedicated security chip. This separation removes the vulnerability of external smart card interfaces and bidirectional data paths from the security-critical path, while preserving all service functionalities through the secure chip's controlled interfaces.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The security chip acts as an intermediary between the tuner and the main processing chip. It receives scrambled stream media from the tuner, performs secure descrambling using isolated security keys, encrypts the output, and transmits to the main chip. This intermediary architecture eliminates direct exposure of security keys to vulnerable interfaces while maintaining full system functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If high-end SoC chip with bidirectional interfaces is used, then processing capability and service diversity are improved, but security risk and system complexity increase

Engineering Contradiction:
Improveprocessing capabilityVSAvoidsystem complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system is segmented into distinct functional modules: a tuner for signal reception, a security chip for secure descrambling and encryption operations, and a main SoC chip for general processing. This segmentation allows each component to be optimized independently - the security chip for security and the main chip for processing capability - reducing overall system complexity while maintaining high functionality.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent replaces the traditional mechanical/card-based security system (external smart card insertion and removal) with an integrated security chip architecture. This substitution eliminates the physical interface vulnerabilities while maintaining security functionality, and allows the main SoC chip to be selected based on processing requirements rather than security interface requirements.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If external smart card is used for security, then authentication capability is provided, but system vulnerability to hacker attack increases

Engineering Contradiction:
Improveauthentication capabilityVSAvoidhacker attack vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent merges the authentication and security key storage functions directly into the security chip that also performs descrambling and encryption. This integration eliminates the need for external smart card interfaces, removing the attack surface for hackers while maintaining strong authentication capabilities through the chip's internal security mechanisms.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The security chip is designed with pre-built security measures including isolated key storage, secure cryptographic operations, and protected interfaces. By incorporating these anti-hacker measures into the chip's fundamental architecture before deployment, the system proactively prevents attacks rather than reacting to them, eliminating vulnerabilities associated with external card interfaces.

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentUS9479825B2Terminal based on conditional access technology
Publication Date: 2016.10.25 UNITEND TECH
  • US9479825B2 patent drawing
  • US9479825B2 patent drawing
  • US9479825B2 patent drawing

AI summary

The terminal comprises a tuner, a security chip and a digital television terminal main chip. The tuner is used to receive cable television broadcast data through a cable for cable televisions, and transmit the received cable television broadcast data to the security chip. A key message required by CA is stored in the security chip. The security chip is used to extract stream media of a program needing to be played from the received cable television broadcast data, descramble the stream media according to the stored key message required by the CA, encrypt the descrambled stream media, and transmit the encrypted stream media to the digital television terminal main chip. The digital television terminal main chip is used to decrypt the received encrypted stream media, decode the decrypted stream media to obtain audio and video data, and output the audio and video data.