Token Management via Secure Removable Media for Multi-Terminal DRM
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In the OMA BCAST standard, tokens purchased for Digital Rights Management (DRM) can only be used in the terminal where they were initially purchased, limiting their usability across different devices.
Innovation Solution
A method and apparatus are developed to move tokens from a Rights Issuer to a Secure Removable Media (SRM), allowing tokens to be shared and used across multiple terminals through a token move request message, enabling token management and sharing between terminals.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If tokens are stored only in the purchasing terminal, then DRM security is maintained, but token usability is limited to a single terminal
Solution Approach 1:
The system segments token storage by separating tokens into two categories: mobile tokens that can be transferred to SRM for multi-terminal use, and stationary tokens that remain in the purchasing terminal. This segmentation allows tokens to be selectively moved based on usage requirements, improving versatility while maintaining clear management boundaries.
Solution Approach 2:
The patent introduces SRM (Secure Removable Media) as an intermediary storage device that acts as a bridge between the purchasing terminal and other terminals. The SRM receives mobile tokens from the purchasing terminal and enables their use in multiple terminals, thereby improving token usability without requiring direct terminal-to-terminal communication.
2Adaptability or versatility
If tokens are made transferable to multiple terminals, then token sharing is enabled, but security risks increase
Solution Approach 1:
The system applies different security qualities to different token types: mobile tokens are designed with transferability and stored in secure SRM with authentication mechanisms, while stationary tokens maintain strict local security constraints. This local quality differentiation enables token sharing where needed while maintaining high security where required.
Solution Approach 2:
The system performs preliminary authentication and authorization actions when tokens are moved to SRM and when terminals access tokens. The RI (Rights Issuer) authenticates the terminal and user before issuing mobile tokens, and the SRM authenticates the requesting terminal before allowing token usage, thereby ensuring security is established in advance of token transfer or access.
3Ease of operation
If tokens are purchased in advance, then service access is enabled, but token portability is restricted
Solution Approach 1:
The system introduces dynamic token portability by allowing tokens to change their storage location and accessibility based on user needs. Tokens are initially issued to the purchasing terminal but can be dynamically transferred to SRM, which can then be inserted into different terminals. This dynamic characteristic enables both advance purchase convenience and terminal flexibility.
Data Source
Figure 1~3
Figure 4~5
Figure 6~7
AI summary
A method and apparatus for managing tokens for Digital Rights Management (DRM) in a terminal are provided. In the method, at least one token is acquired from a Rights Issuer (RI), and the token is moved to a Secure Removable Media (SRM) through a token move request message. The token can be shared by several terminals.