EP2270622B1

Interoperable systems and methods for peer-to-peer service orchestration

Abstract

This record has no abstract on file.

EP2270622B1, drawing sheet 1
Sheet 1 of 34

Term

Term ended

Expired 7 June 2024, 2.3 years ago.

  1. Priority and filed
  2. Granted
  3. Expired
  4. Today

15 claims: 2 independent, 13 dependent

  1. 1
    A system for managing access to a piece of content in a peer-to-peer network, the system comprising:a user interface (1004;1210) for receiving a request from a user to access a piece of protected content;means (1002;1200) for recognising a protected content object format and issuing a request to a digital rights management engine (1220) to evaluate digital rights management objects that protect the content and govern its use;and a digital rights management engine (1220) for determining whether permission to access the protected content should be granted, and determining whether there exists a set of link objects (1420) that can establish a path to a target node, wherein the link objects (1420) represent relationships between nodes, characterised in that : the digital rights management objects make up a licence, the licence comprising a set of objects that protect the content and govern its use, including a control object (1320), the control object including a control program (1324);and the digital rights management engine (1220) is arranged to execute the control program (1324) to determine whether permission to decrypt the protected content should be granted, wherein executing the control program comprises determining whether there exists a set of link objects (1420) that can establish a directed edge in an authorization graph to a target node, and permitting decryption of protected content if the directed edge in the authorization graph is determined to exist.
  2. 9
    A method of managing access to a piece of content in a digital rights management client node in a peer-to-peer computing system, the method comprising, at the client node:receiving, through a user interface (1002;1210), a request from a user to access a piece of protected content;recognising a protected content object format and issuing a request to a digital rights management engine (1220) to evaluate digital rights management objects that protect the content and govern its use;and determining whether there exists a set of link objects (1420;1530) that can establish a path to a target node, wherein the link objects (1420;1530) represent relationships between nodes, characterised in that : the digital rights management objects make up a licence, the licence comprising a set of objects that protect the content and govern its use, including a control object (1320), the control object including a control program (1324);and the method further comprises using the digital rights management engine (1220) to execute the control program (1324) to determine whether permission to decrypt the protected content should be granted, wherein the step of executing the control program comprises determining whether there exists a set of link objects (1420;1530) that can establish a directed edge in an authorization graph to a target node, and permitting decryption of protected content if the directed edge in the authorization graph is determined to exist.
  3. 15
    The method of any of claims 9 to 14, wherein at least one of the link objects contains a payload that is created by encrypting a private key of a target node with a key associated with the client node, the method further comprising processing the payload of each link to update an internal chain of keys to which the digital rights management engine has access.