Encryption Management via Decryption Key Segmentation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional techniques for managing encrypted content in network environments require decryption and re-encryption, which is time-consuming and undesirable, and lack effective control over improper use or distribution of decrypted content.
Innovation Solution
A method where user-operated communication devices receive content access information to retrieve and store encrypted content and corresponding decryption keys, with a remote server storing copies of the keys to control access and prevent unauthorized use, allowing for secure recording and playback of encrypted content.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If conventional techniques use trans-cryption to store encrypted content for later use, then content can be stored and played back later, but the process is time-consuming due to decryption and re-encryption operations
Solution Approach 1:
The patent extracts the decryption key information from the content access information structure. Instead of storing only encrypted content and requiring re-encryption, the system stores both the encrypted content segments and their corresponding decryption key information separately, eliminating the need for time-consuming trans-cryption operations while maintaining content security
Solution Approach 2:
The patent performs preliminary action by pre-storing decryption key information along with content access information before content playback is needed. This allows the playback device to directly use the stored key information for decryption without requiring time-consuming decryption and re-encryption operations, thus improving productivity
2Ease of operation
If conventional techniques provide decryption keys with encrypted content, then playback is enabled, but control over improper use or distribution of decrypted content is insufficient
Solution Approach 1:
The patent segments the content access information into separate components: encrypted content segments and corresponding decryption key information. This segmentation allows the system to provide playback capability while maintaining control, as the key information can be selectively provided to authorized devices without compromising the encrypted content
Solution Approach 2:
The patent introduces content access information as an intermediary structure that mediates between the encrypted content and decryption key information. This intermediary allows the system to control access by providing key information only to authorized playback devices while maintaining the integrity and security of the encrypted content
Data Source
AI summary
Management of key information as described herein enables a respective service provider to distribute encrypted content to subscribers, preventing improper use of the content without authorization. For example, the service provider can distribute encrypted content for recording by a subscriber at a remote location. At or around a time of recording the encrypted content, and on behalf of the user, the service provider initiates storage of the corresponding decryption information that is needed to decrypt the recorded encrypted content. In order to play back the recorded segments of the encrypted content, the subscriber communicates with a server resource to be authenticated. Subsequent to being authenticated, the server resource distributes a copy of decryption information needed to decrypt the previously recorded segments of encrypted content to the subscriber. Accordingly, the service provider retains control of playing back content via controlled distribution of the corresponding copy of decryption information.


