Virtual Multimedia Playback Using Host TEE Decryption

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Virtual systems lack the capability to simulate a trusted execution environment, leading to inadequate security in decrypting digital rights management resources, which cannot meet the requirements of high copyright multimedia streaming.

Innovation Solution

Establish a secure communication channel between the virtual system and the host system, authenticate the application, acquire a license file, and decrypt encrypted multimedia data in the host system's trusted execution environment using a secure communication channel.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If virtual systems use software-based decryption for digital rights management resources, then the operation flexibility is improved, but the security level deteriorates and cannot meet high copyright requirements

Engineering Contradiction:
Improveoperation flexibilityVSAvoidsecurity level
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a host system as an intermediary between the virtual system and the encrypted multimedia data. The host system contains a trusted execution environment that performs the decryption operation, while the virtual system maintains its operational independence. This mediator resolves the contradiction by providing high-security decryption capabilities without compromising the virtual system's flexibility.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If virtual systems cannot simulate trusted execution environment, then the system compatibility is improved, but the data protection capability deteriorates

Engineering Contradiction:
Improvesystem compatibilityVSAvoiddata protection capability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The host system acts as an intermediary that provides trusted execution environment capabilities to the virtual system. The virtual system maintains its original architecture and compatibility, while the host system's trusted execution environment handles the security-critical decryption operations, thus resolving the contradiction between compatibility and data protection.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements a nested structure where the virtual system is contained within the host system. The trusted execution environment of the host system provides security services to the virtual system, allowing the less secure virtual environment to access high-security capabilities through the nested trusted execution environment, thereby achieving data protection without compromising compatibility.

Inventive Principle:
Principle #7Nested doll (Nesting)

3Productivity

If encrypted multimedia data is decrypted in the virtual system, then the processing efficiency is improved, but the copyright protection deteriorates due to low security level

Engineering Contradiction:
Improveprocessing efficiencyVSAvoidcopyright protection
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The host system serves as an intermediary that performs decryption in a trusted execution environment. This approach maintains copyright protection by ensuring decryption occurs in a secure environment, while still achieving efficient processing through the host system's cryptographic hardware capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS20250373452A1Method and device of multimedia playback for virtual system
Publication Date: 2025.12.04 SAMSUNG ELECTRONICS CO LTD
  • US20250373452A1 patent drawing
  • US20250373452A1 patent drawing
  • US20250373452A1 patent drawing

AI summary

A method and a device of multimedia playback for a virtual system are provided. The method of multimedia playback for a virtual system includes establishing a secure communication channel between the virtual system and a host system, acquiring a license file for acquiring encrypted multimedia data in a case that an application in the virtual system requesting access to the host system passes authentication of the host system, acquiring the encrypted multimedia data based on the license file, transmitting the encrypted multimedia data to the host system for decryption based on the secure communication channel, and acquiring decrypted multimedia data obtained by decryption by the host system, and playing back the decrypted multimedia data.