发明名称 Digital rights management using trusted processing techniques
摘要 The present invention discloses several methods to strengthen the integrity of entities, messages, and processing related to content distribution as defined by the Open Mobile Alliance (OMA) Digital Rights Management (DRM). The methods use techniques related to the Trusted Computing Group (TCG) specifications. A first embodiment uses TCG techniques to verify platform and DRM software integrity or trustworthiness, both with and without modifications to the DRM rights object acquisition protocol (ROAP) and DRM content format specifications. A second embodiment uses TCG techniques to strengthen the integrity of ROAP messages, constituent information, and processing without changing the existing ROAP protocol. A third embodiment uses TCG techniques to strengthen the integrity of the ROAP messages, information, and processing with some changes to the existing ROAP protocol.
申请公布号 US8769298(B2) 申请公布日期 2014.07.01
申请号 US200711744304 申请日期 2007.05.04
申请人 InterDigital Technology Corporation 发明人 Cha Inhyok;Singhal Amit;Shah Yogendra C.
分类号 G06F12/14;H04L9/00 主分类号 G06F12/14
代理机构 Baker & Hostetler LLP 代理人 Baker & Hostetler LLP
主权项 1. A method for performing digital rights management (DRM) between a requesting entity (RE) and a target entity (TE) comprising: (a) requesting the TE to report its trusted credentials and its self-attested own platform integrity status; (b) receiving the TE's trusted credentials and its self-attested platform integrity status; (c) forwarding the TE's trusted credentials to a responder for integrity verification; (d) receiving an indication of a result of the integrity verification of the TE's trusted credentials from the responder; (e) determining, based on the indication from the responder of the integrity verification of the TE's trusted credentials and of the TE's self-attested platform integrity status, whether to impart sufficient trust in the TE to proceed in a rights object acquisition protocol (ROAP) process with the TE or another protocol with the TE that enables a device to acquire a rights object (RO) from a rights issuer (RI), wherein the method is performed before the TE initiates the ROAP registration protocol with the RE by the TE sending a trigger to the RE to begin the method.
地址 Wilmington DE US