EP1418756A2

Method and system for encrypting material for distribution

Abstract

Streaming content is encrypted by segmenting the content into a plurality of crypto periods, and by encrypting the content for each of a plurality of crypto periods with a different cryptographic key. The crypto periods may be based on either (i) fixed time intervals, (ii) a fixed number of packets, (iii) a fixed marker count, or (iv) a pseudo random number of packets. Methods are provided for determining how to record the key changing criteria, and how to convey this information to video on demand (VOD) servers.

EP1418756A2, drawing sheet 1
Sheet 1 of 3

Term

Term ended

Projected expiry passed 29 October 2023, 2.9 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

55 claims: 19 independent, 36 dependent

  1. 1
    A method for pre-encrypting material with a cryptographic key comprising:encoding the material into digital form, encrypting the resulting encoded material, and transmitting the encrypted material over a transmission medium;and in the process of encrypting the encoded material, segmenting the encoded material into a plurality of segments, and using different cryptographic keys for different segments.
  2. 7
    The method of any one preceding claim, wherein:the material comprises at least one of movies, data, audio, and other program content.
  3. 8
    The method of any one preceding claim, wherein:the encoding is according to the MPEG-II standard.
  4. 9
    The method of any one preceding claim, further comprising:generating an Entitlement Control Message (ECM) comprising encryption information specific to the material which, in combination with a valid Entitlement Management Message (EMM), can be used to derive an encryption key for decoding the encrypted material;and multiplexing the ECM within the encrypted material.
  5. 15
    The method of any one of claims 11 to 14, further comprising:determining how to synchronize cryptographic key changes with corresponding entitlement control messages (ECMs) at a time when content is streamed to a consumer.
  6. 16
    The method of any one of claims 11 to 15, further comprising:determining how to handle an ECM renewal process.
  7. 17
    The method of any one of claims 11 to 16, further comprising:defining a cryptographic key change methodology that permits rapid key changes with straightforward, simple key change synchronization at the time of decryption.
  8. 18
    The method of any one of claims 11 to 17, further comprising:maintaining all cryptographic keys separate from the encrypted content.
  9. 20
    The method of any one of claims 11 to 19, further comprising:delivering a separate Entitlement Management Message (EMM) from an authorization system.
  10. 21
    A method according to any one preceding claim including encrypting streaming content, comprising:segmenting the content into a plurality of crypto periods;and encrypting the content for each crypto period with a different cryptographic key.
  11. 38
    The method of clam 37, wherein:the index numbers are selected from packet numbers within the streaming content, packet counts associated with each separately encrypted segment, or any other index number suitable for use by a multiplexing engine in determining which packets are associated with each separately encrypted segment.
  12. 39
    The method of any one of claims 21 to 38, further comprising:generating an Entitlement Control Message (ECM) for each separately encrypted crypto period;and maintaining the ECMs separately from the encrypted streaming content.
  13. 40
    The method of any one of claims 21 to 39, further comprising:saving information about the encryption key for each encrypted segment;and encoding the encryption keys into a set of Entitlement Control Messages (ECMs).
  14. 41
    The method of any one of claims 21 to 40, further comprising:selecting a crypto period consistent with the known performance limitations of elements of a VOD delivery and playback infrastructure.
  15. 42
    The method of any one of claims 21 to 41, further comprising:maintaining the encrypted content separately from any information about its encoding and encryption.
  16. 43
    The method of any one of claims 21 to 38, further comprising:storing information about all of the encryption keys used to encrypt the program content in a sequential order in which they were used to encrypt the program content.
  17. 44
    The method of any one of claims 21 to 38, further comprising:generating an encryption record defining the encryption method and other relevant encryption parameters;storing the encryption record;and associating the encryption record with the streaming content.
  18. 45
    A system for delivery of pre-encrypted program content comprising;means for encoding the program content into digital form;means for encrypting the encoded content;and    means for segmenting the encoded content into a plurality of segments, and using a different cryptographic key for encrypting each segment.
  19. 52
    The system of any one of claims 45 to 51, wherein each segment represents a crypto period, and the means for encrypting comprises means for changing the cryptographic key each time the time interval passes.
Independent claims19