会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 31. 发明公开
    • A METHOD TO CREATE A SECURE CHANNEL BETWEEN A HOST DEVICE AND AN EXTERNAL DEVICE
    • 一种在主机设备和外部设备之间创建安全通道的方法
    • EP3293980A1
    • 2018-03-14
    • EP16188208.9
    • 2016-09-09
    • Nagravision S.A.
    • DESARZENS, PhilippeGREMAUD, FabienFISCHER, Jean-BernardFISCHER, NicolasHUNACEK, Didier
    • H04N21/436H04N21/4367H04N21/418
    • H04N21/4367H04N21/4181H04N21/43607
    • The present disclosure is in the field the access control to multimedia content by a home device, in particular the access to encrypted multimedia content.
      It is proposed a method to create a secure channel between a host device and a external device, said external device being in charge of receiving encrypted multimedia content from the host device, to decrypt said multimedia content, re-encrypt it and returning it via the secure channel to the host device, said host device comprising a system on chip (SoC) comprising at least a secure execution environment and a memory, a host processing platform (HPD) comprising at least a central unit, a reception module, a video processing unit and a storage unit, said system on chip comprising a SoC private key and a SoC certificate comprising a SoC type ID, a SoC Binding unique ID and a SoC public key, said host processing platform (HPD) comprising a HPD certificate comprising a HPD type ID, the SoC binding unique ID, the SoC certificate and the HPD certificate being trusted by a common root authority, said method comprising :
      - initializing a communication between the external device and the host device,
      - receiving, by the external device, the SoC certificate, the Soc unique Binding ID of the Soc and the HPD certificate from the host device,
      - checking the binding of the SoC cand the HPD by verifying that the HPD certificate contains the SoC Binding unique ID of the SoC,
      - in response to a positive verification, creating a secure channel between the external device and the host device.
    • 本公开在本领域中是家庭设备对多媒体内容的访问控制,特别是对加密多媒体内容的访问。 提出了一种在主机设备和外部设备之间创建安全通道的方法,所述外部设备负责从主机设备接收加密的多媒体内容,解密所述多媒体内容,对其进行重新加密并通过 所述主机设备包括至少包括安全执行环境和存储器的片上系统(SoC),包括至少一个中央单元的主处理平台(HPD),接收模块,视频处理 单元和存储单元,所述片上系统包括SoC私钥和SoC证书,所述SoC证书包括SoC类型ID,SoC绑定唯一ID和SoC公钥,所述主机处理平台(HPD)包括HPD证书,所述HPD证书包括HPD 所述SoC绑定唯一ID,所述SoC证书和所述HPD证书由公共根机构信任,所述方法包括: - 初始化所述外部设备与所述主机之间的通信 设备, - 由外部设备接收SoC证书,Soc的Soc唯一绑定ID和来自主机设备的HPD证书, - 通过验证HPD证书包含SoC来检查SoC和HPD的绑定 绑定SoC的唯一ID, - 为了响应肯定的验证,在外部设备和主机设备之间创建安全通道。
    • 32. 发明公开
    • METHOD FOR MONITORING EXECUTION OF DATA PROCESSING PROGRAM INSTRUCTIONS IN A SECURITY MODULE
    • 用于监控数据处理程序指令的执行情况,安全模块
    • EP2441258A1
    • 2012-04-18
    • EP10724784.3
    • 2010-06-07
    • Nagravision S.A.
    • FISCHER, Jean-Bernard
    • H04N7/167G06F21/00
    • H04N7/1675H04N21/2585H04N21/26609H04N21/63345
    • A method for monitoring an execution of a sequence of instructions of a data processing program (PR) in a security module (SM) associated to a multimedia unit (MU) connected to a managing center (MC) supplying control messages (ECM, EMM) authorizing the multimedia unit (MU) to access broadcast audio video content data streams. The security module (SM) comprises at least one processor (CPU) executing the data processing program instructions, a memory (M), and a monitoring module (MM) for analyzing the instructions before execution by the processor (CPU). The managing center (MC) comprises a security module emulator (EM) generating reference data sets (REF) by executing a sequence of instructions of the data processing program (PR) common to all security modules (SM). The reference data sets (REF) are appended to control messages (ECM, EMM) sent to the security module (SM) for verification by the monitoring module (MM). The latter analyses a sequence of instructions of the data processing program (PR) for determining a check data set (CD) which is compared with a reference data set (REF) received from the control messages (ECM, EMM). When the reference data set (REF) matches with the check data set (CD), the data processing program (PR) continues its execution. Otherwise, the monitoring module (MM) sends an instruction (INT) to the processor (CPU) preventing further processing of the control messages (ECM, EMM) by the security module (SM).