Secure Digital Content Delivery via Broadcast Key Distribution

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current security systems for digital media content delivery over packet-based networks, such as the Internet, face challenges in providing secure and efficient distribution without requiring inherent network security or one-to-one key exchange, particularly in multicast scenarios, where scalability and key management become complex issues.

Innovation Solution

A system and method for secure digital content delivery that broadcasts keys and necessary information through the network, allowing only authorized end-user devices to access the content, using a combination of secure hardware and software, including a security module with renewable submodules like smart cards, to scramble and unscramble content, enabling flexible distribution models while preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional one-to-one key exchange is used for secure content delivery, then security is improved, but device complexity and scalability deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoidkey management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the key management function by introducing a separate Key Distribution Center (KDC) that handles all key exchange operations. This centralizes security management and allows multiple users to access content without complex peer-to-peer key exchange, resolving the contradiction between security and key management complexity

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The KDC acts as an intermediary between content providers and users, facilitating secure key exchange without requiring direct communication between users. This mediator approach simplifies the system architecture while maintaining security, addressing both scalability and complexity issues

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If broadcast/multicast is used for efficient content delivery, then productivity is improved, but security deteriorates due to lack of access control

Engineering Contradiction:
Improvedelivery efficiencyVSAvoidaccess security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies local quality by enabling each user to have customized access rights and content entitlements while receiving the same broadcast content. Users can selectively access different content based on their individual permissions, maintaining broadcast efficiency while providing personalized security control

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system dynamically manages user access rights and content entitlements in real-time. Access permissions can be changed, revoked, or granted dynamically without affecting the broadcast transmission itself, allowing the system to adapt security requirements while maintaining delivery efficiency

Inventive Principle:
Principle #15Dynamics

3Adaptability or versatility

If key information is broadcast to multiple users, then scalability is improved, but security deteriorates due to potential key interception

Engineering Contradiction:
ImprovescalabilityVSAvoidkey security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent applies preliminary action by having users pre-establish secret keys with the KDC before accessing content. These pre-shared keys are used to secure subsequent communications and content access, allowing scalable key distribution while maintaining security through prior security establishment

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system uses cryptographic copying mechanisms where the KDC generates and distributes encrypted key information to multiple users simultaneously. Each user receives a copy of the key information encrypted for their specific decryption capability, enabling scalable distribution without compromising key security

Inventive Principle:
Principle #26Copying

4Reliability

If content is scrambled for secure delivery, then unauthorized access is prevented, but ease of operation deteriorates for users

Engineering Contradiction:
Improvecontent protectionVSAvoiduser access convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements self-service by enabling users to automatically retrieve and apply the necessary decryption keys through the KDC without manual intervention. The key management and content decryption processes are automated, maintaining strong content protection while making the system user-friendly and easy to operate

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS7995603B2Secure digital content delivery system and method over a broadcast network
Publication Date: 2011.08.09 SYNAMEDIA LTD
  • US7995603B2 patent drawing
  • US7995603B2 patent drawing
  • US7995603B2 patent drawing

AI summary

A system and a method for secure distribution of digital media content through a packet-based network such as the Internet. The security of the present invention does not require one-to-one key exchange, but rather enables keys, and/or information required in order to build the key, to be broadcast through the packet-based network. The digital media content is then also preferably broadcast, but cannot be accessed without the proper key. However, preferably only authorized end-user devices are able to access the digital media content, by receiving and/or being able to access the proper key. Thus, the present invention is useful for other types of networks in which digital media content is more easily broadcast rather than unicast, in addition to packet-based networks.