Method for transferring encrypted useful data objects
Abstract
This record has no abstract on file.
Term
Term ended
Projected expiry passed 11 October 2024, 2 years ago.
- Priority
- Filed
- Published
- Projected expiry
- Today
23 claims: 4 independent, 19 dependent
- 1Translation of claims of equivalent WO 2005046160 A1 1. A method for transmitting encrypted user data objects (NDO) to a first telecommunication terminal (TG1), in which:at least one encrypted Nutzdatenob ect of a switching component (VK) of a telecommunications network to the first telecommunication terminal (TGl) is transmitted;a time information (s FROM s) is transmitted from the switching component (VK) to the first telecommunication terminal (TG1), indicating by what time a rights object (RO) assigned to the at least one encrypted user data object (NDO) containing the key and the usage rights for the assigned user data object contains, also arrives at the first telecommunication terminal;the first telecommunication terminal (TG1) receives a rights object (RO) associated with the at least one payload data object (NDO);the first telecommunication terminal (TGl) via a user interface (GUI) associated therewith outputs a signal regarding the receipt of a user data object only when the time specified in the time information or a time point predetermined in the first telecommunication terminal has elapsed after receipt of the user data item or at least a received for the utilization of the user data object rights object has been received.
- 3Third Method according to Claim 1 or 2, in which, after the time specified in the time information or the time predetermined in the telecommunication device has elapsed without prior receipt of a rights object via the user interface (GUI), only a signal relating to the input of an encrypted user data object is output.
- 55th Method according to one of Claims 1 to 3, in which the time information is sent by means of a notification message (M-Nind) which indicates that a nick data object (NDO) is available at the switching component (VK) for delivery to the first telecommunication terminal (TG1) first telecommunication terminal is transmitted.
- 66th Method according to one of Claims 1 to 5, in which the at least one encrypted user data object (NDO) is sent from a data provision component (DBK) of the telecommunication network or a second telecommunication terminal to the switching component (VK) for forwarding to the first telecommunication terminal (TG1).
- 77th Method according to one of Claims 1 to 6, in which the first telecommunication terminal (TG1) after receiving the time information (S A 3S) instructs a time measuring device (ZME) assigned to it to measure the time until the time specified in the time information or the time predetermined in the telecommunication device.
- 88th. Method according to one of Claims 1 to 7, in which the first telecommunications terminal (TG1) has a communication device (MUA) for carrying out the communication with the switching component (VK) and a management device (DA) for managing the encrypted user data objects (NDO) associated with the Communication device is in communication.
- 99th Method according to Claims 7 and 8, in which the communication device (MUA), after receiving the at least one encrypted user data object at the management device (DA), inquires whether a rights object (RO) is already present for the at least one encrypted user data object (NDO) and Absence, the time-measuring device instructs to measure the time.
- 1111th Method according to one of the preceding claims, in which the messages and data are transmitted between the switching component (VK) and the first telecommunication terminal (TG1) as part of the multimedia messaging service.
- 1212th Method according to one of claims 4 or 5 in conjunction with claim 11, wherein the delivery message is an MMS delivery message and / or the notification message is an MMS recipient notification, wherein the MMS delivery message and / or MMS message Receiver notification have a separate header (X-Mms-DRM-separate-delivery), which is assigned as a field value, the time information.
- 1414th Method according to Claim 13, in which the first and / or second telecommunication terminal (TG1) comprises a radio module, and is designed in particular as a mobile telephone, a cordless telephone, or a portable computer.
- 1717th Method according to Claim 16, in which the first telecommunication network is designed as a mobile radio network which operates in particular according to the GSM or UMTS standard.
- 1818th Method according to one of Claims 16 or 17, in which the switching component (VK) is formed as part of a second telecommunication network connected to the first telecommunication network, which is embodied in particular as a telecommunication network based on Internet protocols, such as the Hypertext Transfer Protocol.
- 2323rd Telecommunications terminal (TGI) for processing encrypted user data objects (NDO), having the following features:a communication device (MUA) for receiving at least one encrypted user data object;an administrative device (DA) for receiving and managing encrypted Nutzdatenob ekten associated rights objects containing the key and the rights of use for an associated user data object;a user interface (GUI) for outputting information to a user;wherein the communication device (MUA) is further adapted to receive a time information (s) received in connection with the reception of the at least one encrypted user data object M s), which specifies the time at which a rights object (RO) assigned to the at least one encrypted user data object (NDO) arrives at the management device (DA) and only via the user interface (GUI) receives a signal concerning the reception of a usable user data ects if the administrative device (DA) still receives a rights object (RO) before the specified time.
Independent claims21
104 paragraphs, as filed
Translation of description of equivalent WO 2005046160 A1
p0001description
p0002A method for transmitting encrypted user data
p0003The present invention relates to a method for transmitting encrypted Nutzdateno projects on a telecommunications terminal, such as a mobile phone. In particular, the present invention relates to a method in which the arrival and the utilization of the encrypted useful data is displayed user-friendly on the telecommunication terminal.
p0004It will be discussed at a telecommunications terminal, in particular in the execution of a mobile device or mobile phone, in a telecommunications network is currently a process or service for reliable and billable transmission of user data. Here, the transmitting or downloading of user data to the mobile device using one of the Open Mobile Alliance (OMA) specified protocol or an Internet protocol (eg, Hypertext Transfer Protocol: http) is to take place. A service for transmitting can be specified such that a user ects with an available on the mobile device application that can be referred to as a transfer client or in the case of a pure data download as a download client, transferring any Nutzdatenob be allowed is offered by one or more data providing components, particularly servers by service providers or content providers, the data communications network.
p0005The WAP Forum or its successor organization Open Mobile Alliance (OMA) has as well different methods for
p0006Managing explicit usage rights for digital content of any type, such as also of multimedia data, defined. It is provided an item to transfer user data to be provided with restrictions or limitations on the use of the recipient or user of the mobile device. For example, in order to restrict the number of uses of the user data, or the period of use. The practical implementation is done by the description of the restrictions with an appropriate language, such as the ODRL (Open Digital Rights Language) or the components specified by the OMA OMA DRM Rights Expression Language (RET), the transfer client or another specific application, a so-called DRM agent, to manage the associated with a (digital) Nutzdateno project rights (DRM: digital rights management) receives the rights description, evaluates, stores them in a protected, the user does not access memory on the mobile device and the rights relating to a request the user to use the property, granted in accordance with the rights description or not. The user data itself can be protected against unauthorized access, either by the fact that it is encrypted is stored in a freely accessible space on the mobile device, or that it is managed by a specific application, for example, the DRM agent that no unauthorized access to the object allows by the user.
p0007According to one specified by the Open Mobile Alliance variant, the so-called "Separate Delivery" (separate Transmittal), is for the management of DRM-protected content an encrypted by a data provisioning component-provided useful data and for the transport and storage on a telecommunication terminal, such as a mobile device, packaged in a so-called container file or a so-called container object (which has been assigned, for example, the data type or content type "application / VND .oma. DRM. content"). With a service for reliably transmitting content from a data provisioning component (Content Download) is the encrypted user data packed in the container object using WAP protocols (such as the WSP: Wireless Session Protocol) or Internet protocols (such as the http) transferred to the telecommunication terminal. Separately from the encrypted user data object is a so-called rights object using a secure channel on the telecommunication terminal, for example, automatically transmitted via WAP push. The rights object contains a description of the rights granted to the user to use the encrypted useful data, a reference to the container object, that allows allocation of the rights object to the appropriate container object, and a key with which the encrypted user data is decrypted may, in order to subsequently use. In the telecommunication terminal, such as the mobile radio device, a special device or application is to use the combination of the in the container object packed, encrypted user data object and the rights object needed, which may be the above-mentioned DRM agent. After transferring the Rechteo ject to the telecommunication device, the rights object is directly transferred to the DRM agent, which is responsible for managing and maintaining the mystery, namely the key for decrypting the encrypted user data object. Practically the DRM agent sets the rights object from unauthorized access from protected by other applications or users on the telecommunication terminal. If an encrypted user data object to be used, so the first DRM agent is activated. This is looking in to the container-O project matching rights object in the managed by him space in the telecommunication device based on the ID contained in the container object and the rights object, checks whether the requested use (such as a "play" of music files and on "Advertisements" image data, etc.) rights may be granted and decrypts the user data with the key from the rights object if the rights can be granted. With the above-described method in which an encrypted payload ateno project and can be used by this separate rights object, the value of digital data no longer by the (encrypted) user data or the container object itself, but rather by the rights object and the will presented keys contained therein, without the yes ect the encrypted Nutzdatenob is not usable. Thus, can be stored in this case, the encrypted user data objects packed in the container objects freely accessible on the telecommunication terminal.
p0008Since this is, as already mentioned, at the to be transmitted (encrypted) user data to data objects with multimedia content and thus can act data with large scale, a service with a large transmission capacity is required for a corresponding transfer of such data. For example, by the 3GPP (3rd Generation Partnership Project) and specified by the OMA Multimedia is Messaging Service (MMS) capable of a switching and transmission of multimedia messages to and conduct of mobile communication subscribers.
p0009A combination of both techniques DRM and MMS is therefore useful. With MMS valuable digital content can be transferred to other participants, can be the specific use rights for the contents defined and also transmitted. The contents are to the
p0010DRM container packed O projects and optionally encrypted
p0011(Depending on the selected DRM method). Thus, the
p0012Use of the content will be limited to the / the addressed recipient of the MMS message and be prevented by simply forwarding a message by the first receiver, for example an undesired proliferation. As an example of the application of a combination of DRM and MMS subscription-like services can be viewed. A user orders this with a provider of such a service delivery of user data (with image content, audio content, text content, or other information content) of any kind when available, ie, for example, regularly when certain events occur (with a goal in a soccer game, a video sequence with the course of events the gate, current weather forecasts with a picture of a weather map and audio information to explain the card, etc.). As shown in Figure 1, sends the provider through its data provisioning component DBK (eg, a data server on the Internet) the user to his telecommunication terminal TGI the information in the form of encrypted user data objects NDO via MMS to, that is, the / the user data objects NDO achieve integrated into a multimedia message MM telecommunication terminal TGI via a switching component VK, for example in the form of an MMS switching unit in push mode at times that can not foresee the users in general, and without the user explicitly Downloadable must initiate a Laclevorgang what a represents significant difference from the so-called pull mode in which the user must send an explicit request to the seller always to obtain a desired Nutzdateno ect. At the same time sends the rights provider, which may be identical to the aforementioned service provider, by the data provisioning component DBK the / the the encrypted payload atenobje t NDO assigned (n) Rechteob ect (s) RO via WAP push through a WAP Push Proxy - Gateway PPG for telecommunications terminal TGI user. This means that user data and rights object (s) reach their separate ways and time asynchronously, the terminal of the recipient. in the Telecommunication terminal TGI via the switching component transmitting MMS messages MM, especially with the useful data objects NDO, of an MMS user application MUA are received and processed, and the rights objects RO are received and managed by a DRM agent DA, the MMS user application MUA and the DRM agent DA for utilizing the encrypted useful data by the corresponding rights object communicate with each other. In the MMS user application MUA and the DRM agent DA, it may be software applications from a processing unit (not shown) such as a microprocessor, are running in the telecommunication terminal TGI.
p0013As mentioned above, the encrypted Nutzdateno ects and transmit the corresponding binary rights objects on separate independent transport channels. The transmission takes place conventionally unsynchronized time. Only when both objects present on the receiving terminal is possible to use the protected contents of a Nutzdateno ject to the terminal. When using the http or the special variant of the Open Mobile Alliance for download of user data on mobile devices (so-called "OMA Download") calls the user with a so-called "http get request" (http Zustellaufforderung) active a concrete project to Nutzdateno that him in the so-called "http response message" (http response message) is then delivered. In this type of delivery of a DRM-protected useful data of suppliers, in addition to user data automatically rights object via Short Message Service (SMS) or deliver them via WAP Push.
p0014In other words, conventionally, the behavior of the telecommunication terminal when can unsynchronized time Receiving DRM-protected user data are previously matched by MMS and the corresponding rights objects not specific to the needs of DRM. An incoming MMS message MM with contained DRM-protected useful data objects NDO is the user directly in a first receive message via a user interface GUI (see FIG. 1), which has for example a display DSP and a loudspeaker LS signaled. When the user opens the message, and not all of the necessary rights objects, the use of the / the user data (s) he is initially refused by the terminal. After the arrival of the / the corresponding Rechteo projects the user will be additionally signaled in a second receiving news that a use of the useful data in the multimedia message is now possible. For the user, this type of information representation is through his terminal relatively unsatisfactory, since it is first been informed of the arrival of the multimedia message, then it can not be used because the required rights objects have not been received normally (by the time of asynchronous reception of user data and rights object (s) as described above). Only when the user is notified a second time, that now the necessary rights objects are received, it can really take advantage of the message. The user is thus informed unnecessarily twice and also remembers the first time because the Nutzdatenob ects a protection, that certain restrictions subject.
p0015It is thus an benutzfreundliche way to create an object of the present invention, receiving a usable useful data on a
p0016Telecommunication terminal to signal.
p0017This object is achieved by the independent claims. Advantageous embodiments are the subject of Unteransprüch. In this case, a method for transmitting encrypted user data to a first telecommunication terminal following steps. First, at least an encrypted Nu is transmitted from a switching zdatenobjekt component of a telecommunication network to the first telecommunication terminal. Further, a time information from the switching component is transferred to the first telecommunication terminal, indicating the date by which a said at least one encrypted useful atenobjekt associated rights object containing the key and the usage rights for the associated user data, as the first telecommunication terminal arrives. The time can be for a determined or given such that a specific absolute time and / or a specific absolute date is given in the information, by when an associated expected to arrive rights object, or may be determined on the other by a time interval following within which the rights objects are to be expected (up to the last possible moment). Now, a said at least one user data associated rights object received from the first telecommunication terminal then. The first telecommunication terminal then checks whether the specified in the time information the time has already passed, and, in the case that he has not yet passed, via a user interface, a signal (for example, optical or acoustic) with respect to the Received a usable Nutzdateno ject from. This means only if both the user data and the associated matching rights object for the utilization of the user data at the telecommunication terminal (within the predetermined time) have arrived, then signaled by the telecommunication terminal to the user. Due to this delayed signaling the user thus learns only when there is a usable user data object that such has arrived on his telecommunication terminal, and is not even put on notice that the user data is protected or encrypted, and required to decrypt a rights object that is possibly still delivered to the telecommunication terminal. This benutzfreundlich method of transmitting encrypted Nutzdateno projects to a telecommunications terminal and signaling about the acceptance can be increased with respect to the introduction of encrypted user data to a user.
p0018If the first telecommunication terminal firmly in the review that the room in the time information the time has already passed, so there is in one embodiment via the user interface a (simple) signal that although an encrypted user data has been received, but not (yet) rights or no rights object for utilizing available.
p0019As a criterion, until which a rights object can be received even validly without issuing a simple signal, further a predetermined in the first telecommunication terminal time or a predetermined time period can be used (after reception of the user data), the / which is, for example, by the user of the telecommunication terminal adjustable , Here, as final last time a minimum value or maximum value of two times (given in the information or preset by the user), ie, either the moment closer or further way lies are used by the reception of the (encrypted) useful data.
p0020The illustrated method for transmitting encrypted Nutzdateno ects of the first telecommunication terminal is carried out in accordance with an advantageous embodiment according to the Multimedia Messaging Service (MMS). This is a transfer of (encrypted) user data enables the even multimedia content with large may include data size, such as digital photos or video clips.
p0021According to an advantageous embodiment, the at least transmit an encrypted user data together with the time information by means of a delivery message to the first telecommunication terminal. In the case of MMS can be integrated in an MMS delivery message here the encrypted user data and the time information. It is also conceivable that the time information provided is separately by means of a notification message (in the case of MMS via an MMS recipient notification), which indicates that at the switching component project a Nutzdateno for delivery to the first telecommunication terminal, is transmitted to the first telecommunications terminal. This means in the latter case is first transmitted in a first message the time information and only later in the useful data of a second message to the first telecommunication terminal. The respective notification message and / or delivery message may include a separate header field, the, the time information is assigned as a field value.
p0022According to a further advantageous embodiment, the at least one encrypted useful data object from a
p0023Data supply component, for example a
p0024Data server of a content provider or
p0025User data (in the telecommunications network) to the
p0026Switching component are sent for forwarding to the first telecommunication terminal. This may combine the
p0027User data on a subscription or other information service are transmitted. Further, it is also possible that encrypted Nutzdatenob ects from a second telecommunication terminal to the switching component for forwarding to the first
p0028Telecommunication terminal are sent. According to a further advantageous embodiment, the first telecommunication terminal has a time measuring device or a timer, which it instructs to obtain the time information to measure the time until the date indicated in the time information at the time.
p0029Furthermore, the first telecommunication terminal, a communication means for performing communication with the switching component, in particular a MMS user application, and a management device, in particular a DRM agent, projects to manage the encrypted Nutzdateno, which is in communication with the communication device, have. It is possible that the communication device requests to receive the at least one encrypted useful data in the management device, whether for the at least one encrypted useful data object is already a rights object, and orhandensein when not, the time-measuring device instructs to measure time.
p0030According to a further advantageous embodiment, the at least ect an encrypted Nutzdateno and transmit the respective associated rights object via two different transport channels for the first telecommunication terminal.
p0031According to an advantageous embodiment, the first telecommunication terminal and possibly other telecommunications terminals and the switching component part of a telecommunication network. In this case, the one or more telecommunication terminal part of a first telecommunication network (in the case of several telecommunications terminals these must not, however, be part of the same telecommunications network). Accordingly, the switching component, which, in particular, as a server of a data transmission service, such as is configured as an MMS relay server, may be provided in a second telecommunications network which is connected to the or the telecommunication networks which are associated with the or the additional telecommunication terminals are connected. This second telecommunications network can be in particular designed as an on internet protocols such as the Hyper Text Transfer Protocol, based telecommunications network. It is also conceivable that the data supply component is also provided in the second telecommunication network or in a further connected to this telecommunication network.
p0032In order to use the method for transmitting user data objects as flexible as possible, may preferably be designed as a mobile telecommunication terminal, the telecommunication terminal (or the additional telecommunication terminals). In particular, it is conceivable that the data or messages sent to and from the first or the further telecommunications terminal via an air interface parts. Here, the respective
p0033Telecommunication terminal comprises a radio module. The
p0034Telecommunication terminal, for example, as a
p0035Mobile Tele on a cordless phone as a smartphone (combination of a small portable computer and a mobile phone), as a PDA (Personal Digital Assistant = personal digital assistant) or be as an organizer formed. Furthermore, the telecommunication terminal may also comprise other mobile devices achievable, such as a personal computer (PC) or a laptop, the device equipped with a mobile radio device
p0036(Mobile phone or mobile radio module) can be achieved via a mobile network. The mobile device can then, for example, to the personal computer via a cable or
p0037be connected laptop or contact them wirelessly via an infrared port or a local Bluetooth network. As already mentioned, the transmission of data and messages to and from the respective then telecommunication terminal by means WAP protocols or the Hypertext Transfer Protocol (http). In this case, a telecommunication terminal, such as the mobile radio device, including the telecommunications network associated therewith in the embodiment of a mobile radio network according to the GSM (Global System for Mobile Communication) standard or the UMTS (Universal Mobile Telecommunications System) standard, etc. work. Such cellular networks or telecommunications systems according to the GSM or UMTS standard can provide a platform for WAP protocols or the WAP protocol stack (WAP: Wireless Application Protocol) represent (ects messages or payload Ob) using the data in are each mobile network transferable.
p0038Advantageously, the first and the second telecommunications network are interconnected by a connecting component. In the case of using the WAP protocol stack, as mentioned above, it is possible, through the use of a WAP gateway as an interface or connection component between a cellular network and another network, such as a based on an Internet protocol network, a to provide connection to this. In this way it is possible that the switching components, is a based on an Internet Protocol network, like the Internet, the data (messages, user data) via a WAP gateway and finally via an air interface of a mobile network between or the base stations of the cellular network and can be transferred to the respective telecommunications terminals of users. In this context it should be mentioned that in particular under the MMS data transmission service messages from an MMS relay server automatically as part of a switching component, ie without calling a telecommunications terminal, to
p0039Telecommunication terminal are sent via WAP Push can. Here is the MMS relay server as a so-called push initiator, the WAP gateway or a subcomponent of this, namely, push proxy gateway, prompted to send a message via WAP push to the telecommunication terminal. For example, the WAP Push Empfängerbenachrichtung means is transferred to the first telecommunication terminal according to the MMS transmission service. The Rechteo projects are given by the data provisioning component directly to the WAP Push Proxy Gateway (PPG) for delivery to the telecommunication terminal. The two transportation routes from the data supply component to the telecommunication terminal are thus different and not synchronized in time for the user data and the rights object, since the data supply component no direct impact on the delivery of the multimedia message by the switching component for
p0040Telecommunication device has.
p0041According to an advantageous embodiment may be in the user data to data in the form of text data, image data or video data, audio data, executable programs or software components or a combination of these types of data, ie multimedia data or content, act.
p0042In another aspect, a telecommunications assembly comprising a
p0043created switching component and a first telecommunications terminal having a user interface, wherein the telecommunications system is adapted to perform a method mentioned above.
p0044Preferred embodiments of the present invention will be detailed subsequently referring to the appended drawings. Show it: Figure 1 is a block diagram of an architecture of a telecommunications system for transmitting encrypted user data and associated Rechteo ects of a data provisioning component via a switching component to a telecommunications terminal;
p0045Figure 2 is a block diagram of the essential components of a telecommunication terminal, in which represents the message flow on receipt of an encrypted user data object in accordance with a preferred embodiment of the invention;
p00463 shows a flow chart for explaining the process flow in an MMS user application when you receive a multimedia message or MMS message with DRM-protected useful data;
p0047Figure 4 is a block diagram showing the flow of messages in the delivery of an encrypted useful data to a telecommunications terminal according to the MMS;
p0048Figure 5 is an MMS message in the form of an MMS recipient notification in accordance with one embodiment of the invention;
p0049Figure 6 is an MMS message in the form of an MMS delivery message according to one embodiment of the 'He indung.
p0050For an explanation of the message flow according to a preferred embodiment of the invention, between the essential
p0051Components of a telecommunication terminal when receiving an encrypted useful data corresponding to Figure 2, was first again received to Figure 1 to describe the communication environment of the telecommunication terminal.
p0052As can be seen in Figure 1, the telecommunications system in a preferred embodiment for performing a method for transmitting Nutzdateno projects by means of MMS a switching component VK, a WAP Push Proxy Gateway PPG and a (first) telecommunication terminal TGI. The telecommunication terminal is configured for example as a mobile telephone, which operates according to the UMTS standard. It is further assumed that the designed as a mobile phone telecommunications terminal TGl is part of a mobile radio network. The mobile phone TGI is capable of WAP protocols (eg Wireless Session Protocol: WSP, etc.) to use or the WAP protocol stack to data via an air interface to a corresponding stationary transmitting / receiving arrangement of the cellular phone TGI associated cellular network to transmit. Furthermore, the telecommunications system comprises a
p0053Data provisioning component DBK of a content provider or Nutzdateno projects, the data supply component and al s a "rights provisioning component" RBK a provider of
p0054can serve rights objects to the respective user data (the provider of Rechteob ects and the provider of Nutzdateno ect can be identical). Thereby, the switching component VK, the data provisioning component DBK or
p0055Rights provisioning component RBK be provided in the mobile phone TGI associated mobile network or may be provided for example on the Internet, which is connected via corresponding WAP gateway to the wireless network of the mobile phone TGI. Further, as shown in Figure 1, the mobile phone TGI comprises an MMS user application or MMS user application MUA for performing the communication in particular according to the MMS with the switching component and a DRM application or a DRM agent DA to manage encrypted useful data. Further, the mobile phone includes a TGI user interface GUI, which for example a loudspeaker LS and a display or a display DSP for displaying text and / or graphic content.
p0056An embodiment of the invention will now be re receipt and evaluation of a received multimedia message and associated rights objects, and based thereon outputting information to the user through the mobile phone TGI explained with reference to FIG. 2 The logic flow of the flow of information and control signals in the mobile phone with integrated TGI MMS user application MUA, DRM agent DA and graphical user interface GUI will be described with reference to the numbers in the figure:
p00571. A certificate from the switching component VK multimedia message MM to the present, DRM-protected content or useful data objects NDO is received from the mobile phone TGI and processed and evaluated by the integrated therein MMS user application MUA. Here, the MMS user application MUA in the illustrated case, note that the MMS message MM contains DRM-protected content in accordance with the method "Separate Delivery", ie that the content or user data objects NDO in objects or container objects with the MIME embedded type "application / vnd.oma.drm. content". Further, the MMS user application MUA whether the MMS message MM signaling or time information s<sub>FROM</sub>s contains (see. this example below Explanation of Figures 5 and 6), with a time close to delivery of / the need for utilizing rights objects / s is displayed. Both are assumed in the illustrated case, as given.
p00582. This step for better understanding represents the behavior of a conventional MMS user application MUA and is included here for information only. Thereafter, the MMS user application MUA to the graphical user interface further information on an incoming multimedia message MM or an incoming encrypted NDO for presentation to the user. According to the preferred embodiment of the invention, this behavior is suppressed in the case represented precisely. Instead, further processing takes place as shown below.
p00593. The MMS user application MUA first asks for the DRM agent DA, whether present or for the information contained in the multimedia message MM DRM-protected useful data objects NDO corresponding rights objects already. This can, for example, at a subscription Nutzdatenob ects (such as regular transfer of stock information or football results) to be the case, or if the rights objects have already been delivered before the multimedia message has been received.
p00604. The DRM agent DA searches for matching rights objects. In the case shown here, he does not, and reports this to the MMS user application MUA on.
p00615. a) The MMS user application MUA evaluates the time information S ^<sub>B</sub>S in the information element in the MMS message MM and starts a time measuring device or a timer ZME with this value. Alternatively, the MMS user application MUA has a minimum value of S<sub>FROM</sub>form S and the ceiling for Zei'tverzögerung for notifying the user of incoming messages or user data and start the timer ZME with this value, b) The MMS user application MUA starts the DRM agent DA a function by which the DRM Agent DA in arriving rights objects, which provide access to the DRM-protected useful data in the multimedia message MM, sends a message to the MMS user application MUA. A transfer parameters is or are the identifiers (ContentlD) of DRM-protected useful data objects NDO. These identifiers are also in the associated Rechteo projects include RO. The identifier thus serve to identify the assigned rights objects. Subsequently, the MMS user application MUA goes into a queue that it leaves again at an event occurrence according 7a) or 7b).
p00626. One or more Rechteob ects RO are from mobile phone TGI example via WAP push through a WAP Push Proxy Gateway PPG (see. To again figure 1) received and forwarded internally to the DRM agent DA. In this example, this is done before the timer ZME expires.
p00637. a) The timer ZME expires and sends a notification to the MMS user application MUA or alternatively b) of Figure 6) the required rights objects RO received and the DRM agent DA notifies the MMS user application MUA. 8. The MMS user application now controls the graphical user interface GUI, so this. That a new multimedia message MM, ie the input of a user data object NDO displays Depending on whether the rights exist, the multimedia message (in case 6. And 7. b see.)) Or displayed when not present rights objects by pointing out that activation is still required (is "available" in accordance either with the present rights objects as see. In the event 7.a)).
p0064The user interface GUI then just mentioned positive (case 6 and 7. b)) or negative (case 7 a)) information useful for example via the display DSP in the form of a text message or a corresponding symbol and the user can positively case access the message or the user data.
p0065In Figure 3, the internal processing and the process flow in the MMS user application MUA (corresponding to Figure 1 or 2) upon receipt of an MMS message MM is now presented with contained, DRM-protected useful data objects NDO. The course will be explained with reference to the letter of the process steps:
p0066A) After starting the process, the MMS user application MUA receives an MMS message MM, the DRM-protected useful data objects NDO and time information S<sub>FROM</sub>contains S on the future delivery of rights objects. B) The MMS user application MUA examines the MMS message MM to contained DRM protected Nutzdatenob ects NDO and signaling contained and time information s<sub>FROM</sub>s that contain associated Rechteo projects RO will be delivered on separate transport in the near future.
p0067C) If neither is the case, the system jumps to process step I). Otherwise, the processing proceeds to step D) further.
p0068D) The MMS user application MUA asks (in the presence of contained DRM-protected useful data objects) the DRM agent DA whether the DRM-protected Nutzdateno projects NDO associated Rechteo projects RO already put vorl and receives the information from the DRM agent as Answer.
p0069E) If the necessary rights objects RO already exists is, branches back to process step I), otherwise the process proceeds to step F) continues.
p0070F) The MMS user application extracts the time information or the value S<sub>FROM</sub>S from the corresponding information element of the MMS message MM, if it exists. If several of these pieces of information are included in the MMS Message Add-ot MM, which can in several DRM-protected useful data be NDO and individual signaling the separate delivery of rights objects of the case, the MMS user application MUA example, the information by forming the maximum value or by adding the stated periods to a single value SQ<sub>e</sub>S reduce. Thereafter, the MMS user application MUA can the value even on a Maximum limit that can be stored in the implementation-specific terminal and may be adjustable by the user. The resulting value, the MMS user application MUA starts a timer ZME and sets in the DRM agent DA a requirement that the DRM agent DA, the MMS user application MUA the arrival of matching rights objects RO, ie, the DRM-protected useful data objects NDO the MMS message MM are associated with information.
p0071G) The MMS user application MUA checks whether all the required rights objects RO for the present MMS message MM have arrived. If so, that is, when the DRM agent has sent a positive message about the arrival of matching rights objects to the MMS user application MUA before timer ZME, the process continues with step I), otherwise the process continues with step H) ,
p0072H) The MMS user application MUA checks whether the timer ZME expires. If so, the process continues with step I) wi.rd continued, otherwise the process continues with step G), ie through the loop again.
p0073I) The MMS user application MUA passes on the information about the received MMS message MM to the graphical user interface GUI for output to the user. In the affirmative, the information necessary for use of the MMS message MM and the useful data contained therein NDO rights objects RO are at this time and the user can use the message or the user data contained in this NDO. If the required rights objects yet is not available, the user will see a message, a use is still not or only partially possible. In summary it can be fixed made that a key point in the process for transferring Nutzdateno just illustrated projects to a telecommunications terminal or mobile phone in the controlled delivery of information about incoming multimedia messages or user data objects and associated rights objects by the telecommunication terminal can be seen. An essential aspect is the transmission of content or Nutzdateno ects and rights objects through two logically separate transport channels to two logically separate functional units (MMS user application and DRM agent), wherein the transmission is not synchronized.
p0074Further aspects are
p0075• The evaluation of incoming Mxαltimedia message by the MMS user application MUA on contained in the message DRM-protected useful data NDO,
p0076• The evaluation of the incoming multimedia message MM by the MMS user application MUA on the message information contained elements that indicate an expected in the near future delivery of rights objects for DRM-protected content,
p0077• Internal communication between MMS user application MUA and DRM agent DA, ie querying the MMS user application MUA in the DRM agent DA to the telecommunication terminal, whether for or included in the MMS message MM (n) DRM-protected (n) User data (e) on the telecommunication terminal already assigned rights objects RO present,
p0078• The internal control of a timer ZME by the MMS user application MUA, ie starting a timer ZME by the MMS user application MUA, wherein the one or more items of information or time information contained in the MMS message MM for signaling an impending separate delivery of rights objects RO is considered / are and continue to a maximum duration of the timer is considered that its implementation-specific and / or can be selected by the user,
p0079• waiting for the arrival of the / of an MMS message or individual MM elements associated rights objects (s), wherein the DRM agent, the rights objects RO di.rekt receives and manages, and / or expiration of the timer ZME by the MMS user application MUA .
p0080• Time-delayed output and signaling the multimedia message received MM with DRM-protected useful data objects NDO on the user interface GUI of the telecommunication terminal (TGI) when either the necessary rights exist (or at least one is present) and the user directly to the Nutzdatenob ects the multimedia message access and it can be used or alternatively the timer ZME expires.
p0081As mentioned in figure 1, which can be done by MMS transmission of encrypted or DRM-protected useful data by the switching component VK to telecommunications terminal TGI. The detailed message flow for this purpose between the switching component VK, in particular in the execution of an MMS switching unit or a MMS relay server MRS in a telecommunications network, and the MMS user application MUA on the telecommunication terminal or mobile phone TGI is shown in FIG. 4
p0082First, an MMS recipient notification M-Nind via WAP push is sent by the MRS to the müa. In the illustrated case, the MUA answered the message M-Nind first with a confirmation M-NRind for notification. At a later time the UA sends a download request w Greq to the MRS. This responds with a delivery message M-Rconf in the useful data or multimedia content is the message. Finally, the MUA is also confirmed by the delivery of the multimedia message with the delivery confirmation M-OInd.
p0083The following two examples illustrate the invention possible embedding of a new header field in an MMS recipient notification M-Nind or an MMS delivery message M-Rconf:
p0084Example A:
p0085ichtigung integration of additional information element (time information) in the form of a header field in the MMS Empfängerbenach
p0086The integration of an additional information element for the time information in a recipient notification is done in this example as an additional header field, the example of the name "X-Mms-DRM Separate Delivery" is replaced. Table 1 shows the header fields for an MMS recipient notification including the inventively new header field "X-Mms-DRM Separate Delivery". It should be noted in this regard that in the following table 1, the field names and Field values are given m the original English names that are known to the expert.
p0087<img id="imgf000028_0001" he="183" wi="152" file="imgf000028_0001.tif" img-format="tif" img-content="table" orientation="portrait" inline="no" /> Table 1 It should be noted that in the MMS recipient notification according to the above embodiment of the invention in Table 1, the new header is double framed.
p0088According to the embodiment, the following definition can be specified for the value of the new header field:
p0089X-Mms-DRM-Separate Delivey = value length (Absolute-token-value Date | Relative token delta secods-value)
p0090With :
p0091is / will be the date and time up to which the required or the (n) Rights object (s) transmitted to the terminal: • Date value. • Del ta-secods-va 1 ue: number of seconds will be transmitted within which the one or more required (n) Rights object (s) to the terminal / are
p0092• Absolute-token = <Octet 128>
p0093• Relative-token = <Octet 129>
p0094As binary tokens for encoding the header name "X- Mms-DRM Separate Delivery" according to the embodiment of the values "0x34", "0x35", "0x36", "0x37", "0x38", "0x39" "0x3A", "0x3B", "0x3C", "0x3D", "0x3E" or "0x3F" used. This has the advantage of a more compact representation and a more efficient transmission of the MMS message.
p0095Based on this explanation is now an MMS recipient notification in principle have the structure shown in Figure 5, wherein the header fields of
p0096Illustrative purposes, are shown as text. At a standards-based transmission for telecommunications terminal contrast binary codes are used.
p0097In the example shown in Figure 5 is a header field named "X-Mms-DRM Separate Delivery" embedded in the MMS recipient notification. The value consists of the first indication of a number of still following characters of the header field, a second value ( "<129>"), which indicates that the following value is a "delta-seconds-value", and a third value, the "Delta-seconds-value" ( "300"), which indicates the number of seconds until all related rights objects should be received.
p0098The proposed variant has the advantage that after the delivery of the MMS recipient notification for MMS Nutzerappl i cation is obvious that the MMS message will contain DRM-protected objects and of a receiver specific behavior can be derived, according to which, for example, all messages be downloaded directly to the telecommunication terminal with DRM-protected useful data above.
p0099A backward compatibility for MMS user applications without the support of additional DRM functionality is easily possible with the method presented here. According to OMA / WAP specification to MMS user applications simply ignore unknown header fields and discard the contents.
p0100Example B: Integration of pestic TOMER information element s (time information) in the form of a Kop ffeldes in the MMS delivery message
p0101The following example demonstrates the integration of an additional information element in an MMS delivery message. This occurs analogously to Example A. The following Table 2 shows the definition of the new header field of the invention "X-Mms-DRM Separate Delivery" as already shown in Table 1 below.
p0102<img id="imgf000031_0001" he="67" wi="152" file="imgf000031_0001.tif" img-format="tif" img-content="table" orientation="portrait" inline="no" /> Table 2. The example shown in Figure 6 of a textually encoded MMS delivery message is analogous to the MMS recipient notification outlined above and in turn contains the inventively new header field "X-Mms-DRM Separate Delivery" - this time due to the somewhat later delivery but with a reduced "Delta-seconds-value". Disclosed is a method for transmitting encrypted user data to a first telecommunication terminal NDO TGl with the following steps. Initially at least, an encrypted user data object from a switching component of a telecommunications network to the first
p0103Telecommunication terminal is transmitted. Further, a time information s<sub>FROM</sub>s transmitted by the switching component to the first telecommunication terminal indicating a said at least one encrypted useful data associated rights object RO containing the key and the usage rights for the associated user data, arrives until which time as the first telecommunication terminal. Now, a said at least one user data associated rights object received from the first telecommunication terminal then. The first telecommunication terminal then checks whether the specified in the time information the time has already passed, and, in the case that he has not yet passed, via a user interface, no signal with respect to the receiving of a user data object. Only when either the specified time has elapsed or was at least one necessary rights object received from the first telecommunication terminal (before the lapse of the specified time point), is the MMS user application, the information about the presence of a multimedia message with included user data to the user interface to issue further.
Every citation, both ways
| Reference | Relation | Cited during |
|---|---|---|
| See references of WO 2005046160A1 | Non-patent | Search report |
13 members in 6 offices
Priority claims3
| Document | Office | Kind | Date |
|---|---|---|---|
| 10351961 | Germany | – | |
| 10351961 | Germany | A | |
| 2004052494 | European Patent Office (EPO) | W |
Members13
| Document | Office | Kind | |
|---|---|---|---|
| WO2005046160A1 | World Intellectual Property Organization (WIPO) | A1 | |
| DE10351961A1 | Germany | A1 | |
| EP1680903A1This record | European Patent Office (EPO) | A1 | |
| KR20060120158A | Republic of Korea | A | |
| CN1875600A | China | A | |
| US2007038571A1 | United States of America | A1 | |
| DE10351961B4 | Germany | B4 | |
| CN1875600B | China | B | |
| US7835992B2 | United States of America | B2 | |
| US2011007898A1 | United States of America | A1 | |
| KR101124121B1 | Republic of Korea | B1 | |
| EP1680903B1 | European Patent Office (EPO) | B1 | |
| US8762282B2 | United States of America | B2 |
68 legal events, as 8 offices reported them to INPADOC
Over the term
Point at a mark for the eventEvents
| Event | Code | Office | |
|---|---|---|---|
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Gb: european patent ceased through non-payment of renewal feeCeasedGBPC | GBPC | EP | |
| Application deemed withdrawn, or ip right lapsed, due to non-payment of renewal feeWithdrawnR119 | R119 | DE | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Fee paymentPLFP | PLFP | FR | |
| Fee paymentPLFP | PLFP | FR | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapse because of not paying annual feesLapsedMM01 | MM01 | AT | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Fee paymentPLFP | PLFP | FR | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Patent lapsedLapsedMM4A | MM4A | IE | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Patent ceasedCeasedPL | PL | CH | |
| No opposition filed against granted patent, or epo opposition proceedings concluded without decisionGrantedR097 | R097 | DE | |
| No opposition filedOpposition26N | 26N | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| No opposition filed within time limitOppositionORIGINAL CODE: 0009261PLBE | PLBE | EP | |
| Information on the status of an ep patent application or granted ep patentGrantedSTATUS: NO OPPOSITION FILED WITHIN TIME LIMITSTAA | STAA | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| No opposition filed against granted patent, or epo opposition proceedings concluded without decisionGrantedR097 | R097 | DE | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Party data changed (patent owner data changed or rights of a patent transferred)RAP2 | RAP2 | EP | |
| Discontinued in the netherlands as no translation has been filedVDEP | VDEP | NL | |
| Dpma publication of mentioned ep patent grantGrantedR096 | R096 | DE | |
| Reference to at number (ep patent enters austrian national phase)REF | REF | AT | |
| European patents granted designating irelandGrantedLANGUAGE OF EP DOCUMENT: GERMANFG4D | FG4D | IE | |
| European patent takes effect as a national patent in ch/liEP | EP | CH | |
| Designated contracting statesAK | AK | EP | |
| European patent grantedGrantedNOT ENGLISHFG4D | FG4D | GB | |
| (expected) grantORIGINAL CODE: 0009210GRAA | GRAA | EP | |
| Grant fee paidORIGINAL CODE: EPIDOSNIGR3GRAS | GRAS | EP | |
| Intention to grant announcedINTG | INTG | EP | |
| Information provided on ipc code assigned before grantRIC1 | RIC1 | EP | |
| Information provided on ipc code assigned before grantRIC1 | RIC1 | EP | |
| Information provided on ipc code assigned before grantRIC1 | RIC1 | EP | |
| Information provided on ipc code assigned before grantRIC1 | RIC1 | EP | |
| Information provided on ipc code assigned before grantRIC1 | RIC1 | EP | |
| Despatch of communication of intention to grant a patentORIGINAL CODE: EPIDOSNIGR1GRAP | GRAP | EP | |
| Amendment of ipc main classPREVIOUS MAIN CLASS: H04L0029060000R079 | R079 | DE | |
| Party data changed (applicant data changed or rights of an application transferred)RAP1 | RAP1 | EP | |
| Request for extension of the european patent (deleted)DAX | DAX | EP | |
| Request for examination filed17P | 17P | EP | |
| Designated contracting statesAK | AK | EP | |
| Public reference made under article 153(3) epc to a published international application that has entered the european phaseORIGINAL CODE: 0009012PUAI | PUAI | EP |
Numbers
- Publication
- 1680903
- Application
- 47911912
Titles3
- German
- VERFAHREN ZUM BERTRAGEN VON VERSCHL SSELTEN NUTZDATENO BJEKTEN
- English
- METHOD FOR TRANSFERRING ENCRYPTED USEFUL DATA OBJECTS
- French
- PROCEDE POUR TRANSFERER DES OBJETS DE DONNEES UTILES CRYPTEES
Classification
- CPC, 8
- H04L12/189
- H04L63/0428
- H04L63/18
- H04L2463/101
- H04W4/12
- H04W80/12
- H04W12/033
- H04W12/03
- IPC, 5
- H04L12 18
- H04L29 06
- H04W4 12
- H04W12 02
- H04W80 12
Designated states28
- Contracting states, 28
- Austria
- Belgium
- Bulgaria
- Switzerland
- Cyprus
- Czechia
- Germany
- Denmark
- Estonia
- Spain
- Finland
- France
- United Kingdom
- Greece
- Hungary
- Ireland
- Italy
- Liechtenstein
- Luxembourg
- Monaco
- Netherlands (Kingdom of the)
- Poland
- Portugal
- Romania
and 4 moreShow fewer
- Sweden
- Slovenia
- Slovakia
- Türkiye