Virtual Multimedia Playback Using Host TEE Decryption
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Virtual systems lack the capability to simulate a trusted execution environment, leading to inadequate security in decrypting digital rights management resources, which cannot meet the requirements of high copyright multimedia streaming.
Innovation Solution
Establish a secure communication channel between the virtual system and the host system, authenticate the application, acquire a license file, and decrypt encrypted multimedia data in the host system's trusted execution environment using a secure communication channel.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If virtual systems use software-based decryption for digital rights management resources, then the operation flexibility is improved, but the security level deteriorates and cannot meet high copyright requirements
Solution Approach 1:
The patent introduces a host system as an intermediary between the virtual system and the encrypted multimedia data. The host system contains a trusted execution environment that performs the decryption operation, while the virtual system maintains its operational independence. This mediator resolves the contradiction by providing high-security decryption capabilities without compromising the virtual system's flexibility.
2Adaptability or versatility
If virtual systems cannot simulate trusted execution environment, then the system compatibility is improved, but the data protection capability deteriorates
Solution Approach 1:
The host system acts as an intermediary that provides trusted execution environment capabilities to the virtual system. The virtual system maintains its original architecture and compatibility, while the host system's trusted execution environment handles the security-critical decryption operations, thus resolving the contradiction between compatibility and data protection.
Solution Approach 2:
The patent implements a nested structure where the virtual system is contained within the host system. The trusted execution environment of the host system provides security services to the virtual system, allowing the less secure virtual environment to access high-security capabilities through the nested trusted execution environment, thereby achieving data protection without compromising compatibility.
3Productivity
If encrypted multimedia data is decrypted in the virtual system, then the processing efficiency is improved, but the copyright protection deteriorates due to low security level
Solution Approach 1:
The host system serves as an intermediary that performs decryption in a trusted execution environment. This approach maintains copyright protection by ensuring decryption occurs in a secure environment, while still achieving efficient processing through the host system's cryptographic hardware capabilities.
Data Source
AI summary
A method and a device of multimedia playback for a virtual system are provided. The method of multimedia playback for a virtual system includes establishing a secure communication channel between the virtual system and a host system, acquiring a license file for acquiring encrypted multimedia data in a case that an application in the virtual system requesting access to the host system passes authentication of the host system, acquiring the encrypted multimedia data based on the license file, transmitting the encrypted multimedia data to the host system for decryption based on the secure communication channel, and acquiring decrypted multimedia data obtained by decryption by the host system, and playing back the decrypted multimedia data.


