On-Demand DRM Authorization for QuickTime Media Assets
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing digital rights management (DRM) technologies lack context-sensitivity and flexibility, failing to effectively protect digital media assets from unauthorized access and distribution, especially in collaborative digital production environments where media formats like QuickTime are used.
Innovation Solution
A DRM system that provides on-demand authorization based on the QuickTime file format, encrypting sensitive media portions and requiring re-authorization each time playback occurs, using a centralized system to manage access and employing plug-ins to integrate with existing media playback software, allowing flexible rules for access and distribution.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If digital media is distributed electronically to enable convenient access and collaboration, then ease of operation and productivity are improved, but the risk of unauthorized redistribution and piracy increases
Solution Approach 1:
The patent applies preliminary action by embedding authorization data and cryptographic keys directly into the media file during distribution. This pre-configured authorization information enables the media player to automatically verify permissions and enforce access controls without requiring real-time server validation, thus maintaining convenience while preventing unauthorized redistribution.
Solution Approach 2:
The patent introduces an intermediary authorization mechanism that acts between the media file and the player. The embedded authorization data serves as a mediator that carries permission information within the file itself, enabling the system to control access and trace unauthorized distribution without disrupting the electronic distribution workflow.
2Reliability
If traditional DRM encryption is applied to protect media files, then security against unauthorized access is improved, but flexibility to change access rules after distribution is lost
Solution Approach 1:
The patent applies dynamics by making the authorization data within the media file modifiable and adaptable. The embedded authorization information can be updated or changed after distribution, allowing rights holders to modify access rules dynamically. This enables the system to maintain strong encryption-based security while simultaneously allowing flexible changes to permissions, expiration dates, and access conditions without requiring re-distribution of the media file.
3Reliability
If context-sensitive authorization is implemented to control media playback, then security and reliability are improved, but device complexity and processing overhead increase
Solution Approach 1:
The patent applies self-service by enabling the media player to autonomously verify authorization information embedded in the media file without requiring constant communication with a central authorization server. The player independently checks the embedded authorization data against the playback context (device type, user credentials, time constraints), thus providing context-sensitive security while reducing system complexity and processing overhead compared to centralized validation architectures.
Data Source
AI summary
On-demand protection and authorization of playback of media assets includes receiving digital media at a server computer, storing intermediary data in a data store, and receiving a request from a client for the digital media. The method also includes generating a protected copy of the digital media from the digital media and the intermediary data. The method also includes storing a description of the protected copy in a database and sending the protected copy to the client. The method also includes receiving a request from the client to access the digital media and reading the description from the database based on information in the request. The method also includes sending a response to the client, the response indicating whether the client is authorized to access the digital media, and the response including cryptographic data to decrypt the protected digital media if the client is authorized to access the digital media.


