AU2006266227B2

Application security in an interactive media environment

Abstract

A security system is described which controls the access of applications to system resources in the field of interactive multimedia. The system establishes a framework for application security, including a signature system, and further provides file formats that support security. Signed applications are afforded high access privileges, while unsigned applications are afforded low access privileges. The combination of signed and unsigned applications on, e.g., a disk, provides for low access privileges for all applications, signed and unsigned.

AU2006266227B2, drawing sheet 1
Sheet 1 of 5

Term

Term ended

Expired 22 June 2026, 0.3 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

18 claims: 4 independent, 14 dependent

  1. 1
    The claims defining the invention are as follows:2006266227 18 May 2011 1. A method for ensuring security of an application in an interactive multimedia environment, comprising: 5 a. receiving an application comprising instructions for synchronously managing graphics, audio, and video multimedia objects responsively to user input, the instructions not executable to implement a security policy for the application;b. detecting whether the application has an associated digital signature, 10 wherein the detecting comprises reading a manifest file associated with the application, and determining if the manifest is signed with an author’s signature and certificate;c. if a valid digital signature associated with the application is detected, then executing the application by a processor associated with a multimedia 15 player to synchronously manage graphics, audio, and video multimedia objects responsively to user input events, execution of the application resulting in the application having access to a source of local storage of the multimedia player and a network resource;d. if a valid digital signature associated with the application is not detected, 20 then executing the application by the processor associated with the multimedia player to synchronously manage graphics, audio, and video multimedia objects responsively to user input events, while prohibiting the executing application from accessing the source of local storage of the multimedia player and the network resource;25 e. receiving another application;f. detecting whether the other application has an associated digital signature;and g. if either a valid digital signature associated with the application or a valid digital signature associated with the other application is not detected, then 30 denying permission for both applications to access both the source of local storage and the network resource of the multimedia player;or h. if both a valid digital signature associated with the application and a valid digital signature associated with the other application are detected, then granting permission for both applications to access both the source of local 35 storage and the network resource. 2006266227 18 May 2011
  2. 10
    A multimedia playback system for applications comprising instructions for 35 synchronously managing graphics, audio, and video multimedia objects responsively to 2006266227 18 May 2011 user input events, the instructions not executable to implement a security policy for the applications, comprising:a network resource;a source of local storage;5 a device to receive at least a first application;a processor to detect whether any received application has an associated digital signature;wherein if only the first application is received, and if a valid digital signature associated with the first application is detected, then executing the 10 application by the processor associated with a multimedia player to synchronously manage graphics, audio, and video multimedia objects responsively to user input events, execution of the first application resulting in the first application having access to the source of local storage of the multimedia player and the network resource;15 wherein if only the first application is received, and if a valid digital signature associated with the first application is not detected, then executing the first application by the processor associated with the multimedia player to synchronously manage graphics, audio, and video multimedia objects responsively to user input events, while prohibiting the executing application from accessing the 20 source of local storage of the multimedia player and the network resource;wherein if a valid digital signature associated with the first application and a valid digital signature associated with a second application are detected, wherein the detecting comprises reading a manifest file associated with the first application, and determining if the manifest is signed with an author's signature and certificate, 25 the first application and the second application are executed by the processor to synchronously manage graphics, audio, and video multimedia objects responsively to user events, and both the first application and the second application are given permission to access the source of local storage and the network resource;and wherein if a valid digital signature associated with the first application or a 30 valid digital signature associated with the second application is not detected, the first application and the second application are executed by the processor to synchronously manage graphics, audio, and video multimedia objects responsively to user events, but denied permission to access the source of local storage and the network resource. 2006266227 18 May 2011
  3. 17
    A method for ensuring security of an application in an interactive multimedia environment, substantially as hereinbefore described with reference to the accompanying 30 figures.
  4. 18
    A multimedia playback system, substantially as hereinbefore described with reference to the accompanying figures.