Security Application for Streaming Media Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Unmanaged networks, such as 3G and WiFi hotspots, pose challenges in content security and authentication for mobile devices, as they lack robust user/device authentication and are vulnerable to attacks like jail-breaking or rooting, leading to unauthorized access and difficulty in tracking user devices.

Innovation Solution

A security application on user devices manages access to streaming content by interacting with a registration server for authentication, a security server for access data, and a content server for playlist and content requests, using modified Uniform Resource Identifiers and multiple encryption keys to ensure secure playback, even on unmanaged networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If content is distributed over unmanaged networks to mobile devices, then user access flexibility and location independence are improved, but security and authentication control deteriorate

Engineering Contradiction:
Improveuser access flexibilityVSAvoidsecurity control
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

A security application acts as an intermediary component on the mobile device that mediates between the unmanaged network environment and the content protection system. This security application implements Conditional Access (CA) and Digital Rights Management (DRM) functionality directly on the device, enabling authentication and security control without relying on the network infrastructure to provide these services.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If device authentication and security features are implemented on mobile devices, then content security is improved, but device complexity and resource requirements worsen

Engineering Contradiction:
Improvecontent securityVSAvoidsecurity implementation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The security application is designed to provide multiple security functions (authentication, encryption, key management, clone detection) within a single integrated software component. This multi-functional approach consolidates what would otherwise require multiple separate security modules, reducing overall device complexity while maintaining comprehensive content protection capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Object-affected harmful factors

If security applications implement CA and DRM features on mobile devices, then unauthorized access prevention is improved, but processing overhead and energy consumption worsen

Engineering Contradiction:
Improveunauthorized access preventionVSAvoidprocessing energy consumption
Core Design Contradiction:
Object-affected harmful factorsVSUse of energy by moving object

Solution Approach 1:

Authentication and security credentials are verified and established in advance before content delivery begins. The security application performs preliminary authentication checks, key establishment, and device verification prior to content playback, allowing the actual content streaming to proceed with minimal ongoing security processing overhead.

Inventive Principle:
Principle #10Preliminary action

4Measurement precision

If two-way content protection systems collect device information, then clone detection capability is improved, but user privacy and data collection concerns worsen

Engineering Contradiction:
Improveclone detection accuracyVSAvoiduser data privacy
Core Design Contradiction:
Measurement precisionVSLoss of information

Solution Approach 1:

The security application collects and analyzes device-specific information (hardware identifiers, software configurations, security state) locally on the device to create a unique security profile. This localized approach enables clone detection by comparing local device characteristics without requiring extensive centralized data collection or transmission of sensitive user information.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS9900306B2Device authentication for secure key retrieval for streaming media players
Publication Date: 2018.02.20 VERIMATRIX INC
  • US9900306B2 patent drawing
  • US9900306B2 patent drawing
  • US9900306B2 patent drawing

AI summary

Systems and methods are disclosed that authenticate devices or users, and enable playback of secured streaming content through a media player. In one embodiment, the invention is a system for receiving secure content over an unmanaged network, including a security application configured operate on a user device with access to a network, where the security application is configured to receive a request for playlist data from the media player, send a playlist request to a content server, receive playlist data from the content server, send playlist data to a media player, receive a security access request from the media player, send a security access request to a security server, receive security access data from the security server; and send security access data to a media player.