会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明授权
    • Adding an additional level of indirection to title key encryption
    • 为标题密钥加密添加一个附加级别的间接
    • US07864953B2
    • 2011-01-04
    • US12056626
    • 2008-03-27
    • Julian A. CerrutiMatthew Francis RutkowskiAmal Ahmed Shaheen
    • Julian A. CerrutiMatthew Francis RutkowskiAmal Ahmed Shaheen
    • H04L9/00
    • H04L9/0841H04L9/0891H04L2209/60
    • Systems, methods and media for encrypting and decrypting content files are disclosed. More particularly, hardware and/or software for adding an additional level of indirection to a title key encryption scheme are disclosed. Embodiments may include generating by a cryptographic system a binding key based on binding information. Embodiments may also include encrypting by the cryptographic system a secret key with the binding key and generating a title key associated with at least one content file. Embodiments may also include encrypting by the cryptographic system the title key with the secret key and the at least one content file with the title key. Further embodiments may include receiving an indication that the binding information has changed, generating a new binding key based on the new changed binding information, and re-encrypting the secret key with the new binding key.
    • 公开了用于加密和解密内容文件的系统,方法和介质。 更具体地,公开了用于向标题密钥加密方案添加附加级别的间接的硬件和/或软件。 实施例可以包括由密码系统基于绑定信息生成绑定密钥。 实施例还可以包括通过密码系统加密具有绑定密钥的秘密密钥并生成与至少一个内容文件相关联的标题密钥。 实施例还可以包括通过密码系统加密具有秘密密钥的标题密钥和具有标题密钥的至少一个内容文件。 另外的实施例可以包括接收绑定信息已经改变的指示,基于新改变的绑定信息生成新的绑定密钥,并用新的绑定密钥重新加密秘密密钥。
    • 4. 发明申请
    • Controlling With Rights Objects Delivery Of Broadcast Encryption Content For A Network Cluster From A Content Server Outside The Cluster
    • 使用权限对象控制从群集之外的内容服务器提供网络群集的广播加密内容
    • US20090013179A1
    • 2009-01-08
    • US12059710
    • 2008-03-31
    • Eunjin JungAmal Ahmed Shaheen
    • Eunjin JungAmal Ahmed Shaheen
    • H04L9/00
    • H04L63/0428H04L9/0833H04L63/062H04L63/10H04L2209/601H04L2209/603H04L2463/101
    • Methods, systems, and products are disclosed for delivering broadcast encryption content. Embodiments of the present invention typically include receiving in a cluster broadcast encryption content; receiving in a cluster a rights object defining device-oriented digital rights for broadcast encryption content; and administering the broadcast encryption content on one or more network devices in the cluster in dependence upon the digital rights. In some embodiments, administering the broadcast encryption content on one or more network devices in the cluster in dependence upon the digital rights include mapping the device-oriented digital rights to digital rights supported in the cluster, excluding device-oriented rights not supported in the cluster. In some embodiments, mapping the device-oriented digital rights to digital rights supported in the cluster includes supporting in the cluster only those device-oriented digital rights having direct analogs in the cluster.
    • 公开了用于递送广播加密内容的方法,系统和产品。 本发明的实施例通常包括:接收群集广播加密内容; 在集群中接收定义用于广播加密内容的面向设备的数字权限的权限对象; 以及根据数字权利在群集中的一个或多个网络设备上管理广播加密内容。 在一些实施例中,依照数字权利在群集中的一个或多个网络设备上管理广播加密内容包括将面向设备的数字权限映射到群集中支持的数字版权,不包括群集中不支持的面向设备的权限 。 在一些实施例中,将面向设备的数字权限映射到群集中支持的数字权利包括仅在群集中支持在集群中具有直接模拟的那些面向设备的数字权限。
    • 5. 发明授权
    • Method and apparatus for partition resolution in clustered computer systems
    • 集群计算机系统中分区分辨率的方法和装置
    • US06363495B1
    • 2002-03-26
    • US09232243
    • 1999-01-19
    • Kenneth Bruce MacKenzieRichard James McCartyAmal Ahmed Shaheen
    • Kenneth Bruce MacKenzieRichard James McCartyAmal Ahmed Shaheen
    • G06F1100
    • H04L41/0893G06F11/1425G06F11/1482G06F11/2035H04L43/10H04L69/40
    • A method in a computer for handling a network partition of a clustered computer system, wherein the computer is part of a number of computers located within the cluster. Data is periodically written into a data structure in a shared resource, wherein the data provides a status of the computer and wherein a data structure is associated with each cluster node. Monitoring for a partition of the cluster is performed. All data structures located in the shared resource are read in response to detecting a network partition of the cluster. A determination is made as to whether the computer is in the preferred partition, one containing the largest number of computers or is otherwise determined to be viable for continued operation. Should the computer determine that it is not a member of a preferred or otherwise viable partition, it must relinquish access to shared cluster resources requiring mutually exclusive access, such as a database on a shared disk volume. This is generally effected by the computer ceasing to operate as an active member of the cluster.
    • 一种用于处理群集计算机系统的网络分区的计算机中的方法,其中所述计算机是位于所述群集内的多个计算机的一部分。 数据被周期地写入共享资源中的数据结构中,其中数据提供计算机的状态,并且其中数据结构与每个集群节点相关联。 执行集群分区的监视。 响应于检测到集群的网络分区,读取位于共享资源中的所有数据结构。 确定计算机是否在优选分区中,一个包含最大数量的计算机,或者被确定为对于继续操作是可行的。 如果计算机确定它不是首选或其他可行的分区的成员,则它必须放弃访问需要互斥访问的共享群集资源,例如共享磁盘卷上的数据库。 这通常由计算机停止作为集群的活动成员操作来实现。
    • 7. 发明授权
    • System and method for enforcing network cluster proximity requirements using a proxy
    • 使用代理实现网络群集邻近要求的系统和方法
    • US07519181B2
    • 2009-04-14
    • US11014560
    • 2004-12-16
    • Amal Ahmed ShaheenTommy McGuire
    • Amal Ahmed ShaheenTommy McGuire
    • G06F21/00
    • H04L63/08H04L63/0492H04L63/10H04L2463/101
    • A system, method and computer program for enforcing network cluster proximity requirements using a proxy is useful in preventing unauthorized devices from receiving encrypted broadcast content intended for only authorized users within a network cluster. The current art allows users to remotely establish trust via a cryptographic handshake. This results in encrypted broadcast content being delivered to unauthorized devices. The present invention assures that encrypted broadcast content is delivered to only authorized devices, allowing authorized remote devices to receive encrypted broadcast content while preventing unauthorized remote devices from doing so. The present invention enforces network proximity requirements to authorized devices within a defined area by timing the cryptographic handshaking, and by authorizing device proxies within a geographic area for retransmitting to authorized remote devices outside said geographic area.
    • 用于使用代理来实施网络集群接近度要求的系统,方法和计算机程序对于防止未经授权的设备接收仅针对网络集群内的授权用户的加密广播内容是有用的。 当前的艺术允许用户通过密码握手远程建立信任。 这导致加密的广播内容被传送到未授权的设备。 本发明确保加密的广播内容被传送到仅授权的设备,允许授权的远程设备接收加密的广播内容,同时防止未授权的远程设备这样做。 本发明通过对加密握手进行定时,并且通过授权在地理区域内的设备代理来重新发送到所述地理区域之外的授权的远程设备来对所定义区域内的授权设备实施网络接近要求。
    • 8. 发明授权
    • Controlling delivery of broadcast encryption content for a network cluster from a content server outside the cluster
    • 控制从集群外的内容服务器为网络集群传送广播加密内容
    • US07412063B2
    • 2008-08-12
    • US10815207
    • 2004-03-31
    • Eunjin JungAmal Ahmed Shaheen
    • Eunjin JungAmal Ahmed Shaheen
    • H04L9/14
    • H04L12/18H04L9/0833H04L63/0428H04L63/065H04L2209/601
    • Controlling delivery of broadcast encryption content for a network cluster from a content server outside the cluster that include receiving in the content server from the network device a key management block for the cluster, a unique data token for the cluster, and an encrypted cluster id and calculating a binding key for the cluster in dependence upon the key management block for the cluster, the unique data token for the cluster, and the encrypted cluster id. In typical embodiments, calculating a binding key includes calculating a management key from the key management block for the cluster; calculating a content server device key from the management key and the content server device id; decrypting the encrypted cluster id with the content server device key; and calculating the binding key with the management key, the unique data token for the cluster, and the cluster id.
    • 控制从集群外部的内容服务器向网络集群传送广播加密内容,包括从内容服务器从网络设备接收集群的密钥管理块,集群的唯一数据令牌和加密的集群ID,以及 根据集群的密钥管理块,集群的唯一数据令牌和加密的集群ID,计算集群的绑定密钥。 在典型实施例中,计算绑定密钥包括从集群的密钥管理块计算管理密钥; 从管理密钥和内容服务器设备ID计算内容服务器设备密钥; 用内容服务器设备密钥解密加密的集群ID; 并使用管理密钥,集群的唯一数据令牌和集群ID计算绑定密钥。
    • 9. 发明申请
    • Controlling Delivery Of Broadcast Encryption Content For A Network Cluster From A Content Server Outside The Cluser
    • 控制来自内部服务器外部的网络群集的广播加密内容的传送
    • US20080172334A1
    • 2008-07-17
    • US12055204
    • 2008-03-25
    • Eunjin JungAmal Ahmed Shaheen
    • Eunjin JungAmal Ahmed Shaheen
    • H04L9/14
    • H04L12/18H04L9/0833H04L63/0428H04L63/065H04L2209/601
    • Controlling delivery of broadcast encryption content for a network cluster from a content server outside the cluster that include receiving in the content server from the network device a key management block for the cluster, a unique data token for the cluster, and an encrypted cluster id and calculating a binding key for the cluster in dependence upon the key management block for the cluster, the unique data token for the cluster, and the encrypted cluster id. In typical embodiments, calculating a binding key includes calculating a management key from the key management block for the cluster; calculating a content server device key from the management key and the content server device id; decrypting the encrypted cluster id with the content server device key; and calculating the binding key with the management key, the unique data token for the cluster, and the cluster id.
    • 控制从集群外部的内容服务器向网络集群传送广播加密内容,包括从内容服务器从网络设备接收集群的密钥管理块,集群的唯一数据令牌和加密的集群ID,以及 根据集群的密钥管理块,集群的唯一数据令牌和加密的集群ID,计算集群的绑定密钥。 在典型实施例中,计算绑定密钥包括从集群的密钥管理块计算管理密钥; 从管理密钥和内容服务器设备ID计算内容服务器设备密钥; 用内容服务器设备密钥解密加密的集群ID; 并使用管理密钥,集群的唯一数据令牌和集群ID计算绑定密钥。
    • 10. 发明授权
    • Controlling delivery of broadcast encryption content for a network cluster from a content server outside the cluster
    • 控制从集群外的内容服务器为网络集群传送广播加密内容
    • US07613303B2
    • 2009-11-03
    • US12164953
    • 2008-06-30
    • Eunjin JungAmal Ahmed Shaheen
    • Eunjin JungAmal Ahmed Shaheen
    • H04L9/14
    • H04L12/18H04L9/0833H04L63/0428H04L63/065H04L2209/601
    • Controlling delivery of broadcast encryption content for a network cluster from a content server outside the cluster that include receiving in the content server from the network device a key management block for the cluster, a unique data token for the cluster, and an encrypted cluster id and calculating a binding key for the cluster in dependence upon the key management block for the cluster, the unique data token for the cluster, and the encrypted cluster id. In typical embodiments, calculating a binding key includes calculating a management key from the key management block for the cluster; calculating a content server device key from the management key and the content server device id; decrypting the encrypted cluster id with the content server device key; and calculating the binding key with the management key, the unique data token for the cluster, and the cluster id.
    • 控制从集群外部的内容服务器向网络集群传送广播加密内容,包括从内容服务器从网络设备接收集群的密钥管理块,集群的唯一数据令牌和加密的集群ID,以及 根据集群的密钥管理块,集群的唯一数据令牌和加密的集群ID,计算集群的绑定密钥。 在典型实施例中,计算绑定密钥包括从集群的密钥管理块计算管理密钥; 从管理密钥和内容服务器设备ID计算内容服务器设备密钥; 用内容服务器设备密钥解密加密的集群ID; 并使用管理密钥,集群的唯一数据令牌和集群ID计算绑定密钥。