Secure Micro Validity Verification for Unauthenticated Viewing Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing Conditional Access Systems (CAS) face challenges in preventing unauthenticated viewing when a Secure Micro (SM) client is leaked, leading to potential service provider damage due to lack of secure management and compatibility issues across different devices.

Innovation Solution

A method is introduced to verify the validity of an SM client using a validity verification message generated by a Trusted Authority (TA) based on unique information shared between the SM and TA, which includes a digital signature for reliable verification, preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a downloadable CAS (DCAS) with SM client is used to provide fee-based broadcasting service, then service flexibility and compatibility are improved, but security risk increases when SM client is leaked

Engineering Contradiction:
Improveservice compatibilityVSAvoidservice security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs preliminary authentication by verifying the SM client's validity before providing service. A validity verification message is pre-generated and stored in the SM, containing authentication information that is verified before allowing the SM client to access conditional access services, preventing unauthorized use even if the client is leaked

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary authentication mechanism using a validity verification message that mediates between the SM client and the service provider. This message contains authentication information that verifies the SM client's legitimacy, acting as a trusted intermediary that prevents direct unauthorized access while maintaining service compatibility

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of manufacture

If SM client is downloaded and installed in host SM to enable DCAS, then hardware dependency is reduced, but vulnerability to leakage increases

Engineering Contradiction:
Improvedeployment simplicityVSAvoidleakage vulnerability
Core Design Contradiction:
Ease of manufactureVSObject-affected harmful factors

Solution Approach 1:

The system applies preliminary anti-action by pre-storing validity verification information in the SM before the SM client is downloaded or executed. This pre-configured authentication data prevents unauthorized execution by verifying the SM's validity before the client can function, countering the potential harm of leakage

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The patent uses a validity verification message that can be copied and stored in the SM, containing authentication information that can be verified without requiring the original hardware. This allows the authentication mechanism to be replicated across different hosts while maintaining security through the verified uniqueness of the SM

Inventive Principle:
Principle #26Copying

Data Source

PatentUS8694773B2Method of preventing unauthenticated viewing using unique information of secure micro
Publication Date: 2014.04.08 ELECTRONICS & TELECOMM RES INST
  • US8694773B2 patent drawing
  • US8694773B2 patent drawing
  • US8694773B2 patent drawing

AI summary

A method of verifying a validity of a Secure Micro (SM) is provided. The method of verifying a validity of an SM, the method including: storing and maintaining a validity verification message used to verify the validity of the SM, the validity verification message being generated by a Trusted Authority (TA) based on unique information of the SM, and the SM and the TA sharing the unique information of the SM; and verifying the validity of the SM using the validity verification message and the unique information shared by the SM, when an SM client is executed.