Entitlement Management Messages for Rapid Authorization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current subscriber-based programming systems, such as cable television, face challenges in providing secure and rapid authorization for a large number of subscribers with highly variable programming options while maintaining high security levels, often limiting á la carte programming due to complex encryption and authorization processes.

Innovation Solution

The system employs a communication structure that uses entitlement management messages with high entropy to rapidly authorize programming selections by fluctuating primary service directives with secondary directives, allowing for secure and efficient transformation of service packages, enabling á la carte options across a large subscriber base.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If complex encryption processes are used to maintain security for a large subscriber base, then security level is improved, but total authorization time increases

Engineering Contradiction:
Improvesecurity levelVSAvoidtotal authorization time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The authorization process is segmented into multiple independent phases: conditional access information download, service entitlement verification, and program access authorization. Each phase can be processed independently and in parallel, reducing the total authorization time while maintaining security through layered verification

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Conditional access information and service entitlements are downloaded and cached in advance before actual program access is needed. This preliminary preparation allows the authorization process to proceed rapidly when a subscriber requests programming, as the complex verification data is already available locally

Inventive Principle:
Principle #10Preliminary action

2Adaptability or versatility

If a large number of programming options including á la carte selections are provided, then adaptability is improved, but authorization complexity increases

Engineering Contradiction:
Improveprogramming optionsVSAvoidauthorization complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

Programming options are segmented into service packages and individual entitlements, each with its own conditional access information. This segmentation allows the system to handle a vast number of programming options by processing only the relevant segments for each subscriber's specific selection, rather than managing all options as a single complex authorization

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A conditional access system acts as an intermediary layer between the subscriber and the programming content. This intermediary manages the complexity of numerous programming options by translating diverse service selections into standardized authorization tokens that can be efficiently verified without increasing overall system complexity

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If frequent reauthorization is performed to maintain security across the subscriber base, then security is improved, but loss of time increases

Engineering Contradiction:
ImprovesecurityVSAvoidreauthorization time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

Reauthorization is implemented as a periodic background process that occurs at scheduled intervals rather than continuously or on-demand. This periodic action allows the system to maintain security through regular updates while minimizing disruption to service, as the reauthorization occurs during predetermined maintenance windows rather than interrupting active viewing

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

Multiple authorization checks are merged into a single comprehensive reauthorization event. Rather than performing separate security verifications for different service types, the system combines all authorization validations into one unified process that can be completed more efficiently than multiple separate checks

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS9313534B2Efficient authorization system for multi-channel broadcast program options
Publication Date: 2016.04.12 PRETIUM PACKAGING LLC
  • US9313534B2 patent drawing
  • US9313534B2 patent drawing
  • US9313534B2 patent drawing

AI summary

A rapid authorization system (22) for subscriber programming authorization with high levels of security can include entitlement management messages (23) that direct fluctuation of an existing package with a communication structure that may involve a primary service directive indicator (3) that is altered, transformed, or fluctuated by a secondary service directive indicator (4) or more. Terse, high entropy directives and entitlement management messages can be transmitted and a multi-channel broadcast programming fluctuation processor (9) at a multichannel broadcast receiver (8) can act to achieve the proper authorization. A conditional access system can be provided through existing, even one-way or SSL, communication pathways with high levels of security. Large subscriber base a la carte options can be provided with rapid authorization that may include nonce programming collective storage (26) for use with a fluctuation entitlement management message transmission.