Output Authorization Token Binding Device Identity to Content
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing content output systems face challenges in preventing unauthorized access to content, as data elements used for authorization can be intercepted and misused by unauthorized devices, allowing them to access content without legitimate authorization.
Innovation Solution
The implementation of an output authorization token, which is specifically associated with a device and binds the device's identity with a content item, ensuring that even if the token is sideloaded, unauthorized access is denied by withholding digital rights management (DRM) data necessary for decryption.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a casting device stores data to establish authorization for accessing content, then the device can be authorized to access content, but the stored data may be intercepted or copied to unauthorized devices
Solution Approach 1:
The authorization mechanism is segmented into multiple components: device identity token (binding device to service), output authorization token (binding content to device), and DRM data (providing actual access). This segmentation ensures that no single intercepted element can compromise the entire authorization system.
Solution Approach 2:
The patent introduces intermediary tokens that act as mediators between the service, device, and content. The device identity token and output authorization token serve as intermediaries that verify authorization without exposing the actual DRM data, preventing unauthorized access even if tokens are intercepted.
2Ease of operation
If authorization data is transmitted to output devices, then authorized devices can access content, but the data may be intercepted during transmission
Solution Approach 1:
The patent applies preliminary anti-action by binding the device identity to the service and the content to the device through cryptographic tokens before transmission. This pre-binding creates inherent security that prevents successful interception and misuse, as the authorization tokens are useless without the corresponding device identity.
3Reliability
If DRM data is provided to devices for accessing content, then authorized devices can decrypt and access content, but unauthorized devices may also obtain and misuse the DRM data
Solution Approach 1:
The patent implements local quality by providing different authorization levels to different devices. Each device receives DRM data specifically bound to its identity, creating localized authorization that cannot be transferred or misused by other devices. This ensures content protection while maintaining device-specific adaptability.
Data Source
AI summary
Systems, apparatuses, and methods are described for causing output of content via an output device such as a casting device. The output device may be associated with a device identity token indicating an identity for the output device. Another computing device may obtain, based on the device identity token, an output authorization token indicating a content item and the identity of the output device. The output device may, based on the output authorization token, obtain authorization data for output of the content item.


