UA66940C2

Method for checking the integrity and authenticity of data (variants)

Abstract

The invention concerns a method and a device for guaranteeing the integrity and authenticity of data transmitted between a management centre and one or several receiver units, wherein each receiver unit comprises a decoder (IRD) and a security unit (SC) and means for communicating (NET, REC) with the management centre. The method consists in calculating a control information (Hx) representing the result of a function said to be unidirectional and collision-free, performed on all or part of the transmitted data and in transmitting the result to the management centre for verification. The centre will be able to inform the decoder concerning the authenticity of the data by return channels or bythe main channel.

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Granted
  4. Today

26 claims: 14 independent, 12 dependent

  1. 1
    Method of verification the integrity and authenticity of the data set (from M1 to Mn) taken by the block decoding of a pay-TV receiver, which includes an IRD and a security unit (SC), as well as communication means (NET, REC) with the control center under which calculation of control information (Hx), which is a reflection of the result application of unidirectional and conflict-free functions to all or only to the part of the data (from M1 to Mn) which is different the fact that it includes the following steps:1. Спосіб перевірки цілісності та автентичності набору даних (від М1 до Мn), прийнятих блоком декодування приймача платного телебачення, до складу якого входять декодер (IRD) і блок захисту (SC), а також засоби зв'язку (NET, REC) з центром управління, згідно з яким здійснюють розрахунок контрольної інформації (Нх), що є відображенням результату застосування однонаправленої і вільної від конфліктів функції до всіх або лише до частини даних (від М1 до Мn), який відрізняється тим, що він включає такі етапи: - transmission Control information (Nh) to the security block (SC) and encryption of this control information (Нх) with the help of the first шифроключа (k1);- передавання контрольної інформації (Нх) до блока захисту (SC) і шифрування цієї контрольної інформації (Нх) за допомогою першого шифроключа (k1);- forwarding encrypted control information k1 (Нх) to the control center;- пересилання зашифрованої контрольної інформації k1 (Нх) до центра управління;- decryption of the encrypted control information k1 (Hx) by the control center and comparing it with the reference the value of control information (Well);- дешифрування зашифрованої контрольної інформації k1 (Hx) центром управління і порівняння її з еталонним значенням контрольної інформації (Ну);- transfer of managers data (R) containing the result comparison, in encrypted form to the protection block (SC);- передавання керуючих даних (R), що містять результат порівняння, в зашифрованому вигляді до блока захисту (SC);- decryption encrypted comparison result by the security unit (SC) and information decoder (IRD) for data integrity (from M1 to Mn). - дешифрування зашифрованого результату порівняння блоком захисту (SC) та інформування декодера (IRD) про достовірність даних (від М1 до Мn).
  2. 4
    Method for any of claims 1 to 3, which is different the fact that the calculations are carried out by the protection block (SC), and from the decoder (IRD) to the security block (SC) the data is transmitted (from M1 to Mn). 4. Спосіб за будь-яким з пп.1-3, який відрізняється тим, що розрахунки проводяться блоком захисту (SC), а від декодера (IRD) до блока захисту (SC) передаються дані (від М1 до Мn).
  3. 5
    Method for any one of claims 1 to 4, which is different in that it includes a service availability descriptor (D) for the data (from M1 to Mn) in the control data (R), the decryption control data (R) and transmission The descriptor (D) to the decoder (IRD), if the result of the comparison is positive, processing data (from M1 to Mn) decoder (IRD) according to the directives contained in descriptors (D). 5. Спосіб за будь-яким з пп.1-4, який відрізняється тим, що він включає наявність сервісного описувача (D) для даних (від М1 до Мn) в керуючих даних (R), дешифрування керуючих даних (R) та передавання описувача (D) до декодера (IRD), якщо результат порівняння позитивний, обробки даних (від М1 до Мn) декодером (IRD) згідно з директивами, що містяться в описувачі (D).
  4. 6
    Method for any of claims 1 to 5, which is different the fact that data (from M1 to Mn) are accompanied by information about authenticity (CRC, CS, H) of the mentioned data, and in which the security unit (SC) transmits information to the decoder, whether or not to use it to verify the data (from M1 to Mn) this information regarding reliability. 6. Спосіб за будь-яким з пп.1-5, який відрізняється тим, що дані (від М1 до Мn) супроводжуються інформацією щодо достовірності (CRC, CS, Н) згаданих даних, і в якому блок захисту (SC) передає до декодера інформацію, використовувати чи ні для перевірки даних (від М1 до Мn) цю інформацію щодо достовірності.
  5. 8
    Method for any from pp.1-7, which is different because it contains global control information in the control data (R) (N'u), which is a reflection of the result of the application of unidirectional and free from conflicts of function to all or only to a part of global data (from M0 to Mm);these data are the same as the received data (from M1 to Mn), or contain them. 8. Спосіб за будь-яким з пп.1-7, який відрізняється тим, що в керуючих даних (R) він містить глобальну контрольну інформацію (Н'у), яка є відображенням результату застосування однонаправленої і вільної від конфліктів функції до всіх або лише до частини глобальних даних (від М0 до Mm);ці дані є тими ж, що і прийняті дані (від М1 до Мn), або містять їх.
  6. 13
    Method for any of claims 10-12, which is different the fact that periodic calculations are made on request from the management center, from block of protection, from the test block (TEST) or from one of the means of communication (NET, REC). 13. Спосіб за будь-яким з пп.10-12, який відрізняється тим, що періодичні розрахунки проводяться на запит від центра управління, від блока захисту, від блока тестування (TEST) або від одного із засобів зв'язку (NET, REC).
  7. 14
    Method for any of claims 10-13, which is different because the result of the comparison is transmitted in the created subscriber a message that is common to the system. 14. Спосіб за будь-яким з пп.10-13, який відрізняється тим, що результат порівняння передається у створеному абонентом повідомленні, яке є звичайним для функціонування системи.
  8. 15
    Method for any of claims 10-13, which is different the fact that the calculated value (N'h) is passed to the control center inside the subscriber's messages, which are normal for functioning system, with each message containing a part of the calculated value (N'ch). 15. Спосіб за будь-яким з пп.10-13, який відрізняється тим, що розраховане значення (Н'х) передається до центра управління всередині створених абонентом повідомлень, які є звичайними для функціонування системи, причому кожне повідомлення містить частину розрахованого значення (Н'х).
  9. 16
    Method for any of the previous paragraphs that is different the fact that the transmission to the control center is carried out in a delay mode, according to the schedule, formed in a pseudo-random way inside beforehand certain time limits. 16. Спосіб за будь-яким з попередніх пунктів, який відрізняється тим, що передача до центра управління здійснюється в режимі затримки, згідно з розкладом, сформованим у псевдовипадковий спосіб всередині заздалегідь визначених часових меж.
  10. 17
    Method of verification integrity and authenticity of the data set (from M1 to Mn) stored in a storage device that is linked to a security unit (SC), which includes the following steps:17. Спосіб перевірки цілісності та автентичності набору даних (від М1 до Мn), що зберігаються в запам'ятовуючому пристрої, котрий зв'язаний з блоком захисту (SC), який  включає такі етапи: - transfer from the storage device to the control unit (SC) of the control data (R1) containing the encrypted control information k1 (Well), which is a reflection of the result application of unidirectional and conflict-free functions to all or only to the data part (from M1 to Mn);- передавання від запам'ятовуючого пристрою до блока захисту (SC) керуючих даних (R1), які містять зашифровану контрольну інформацію k1(Ну), що є відображенням результату застосування однонаправленої і вільної від конфліктів функції до всіх або лише до частини даних (від М1 до Мn);- calculation of the control information (Nh), which is reflection of the result of application of unidirectional and free of conflicts functions to all or only part of the data (from M1 to Mn);-  розрахунок контрольної інформації (Нх), яка є відображенням результату застосування однонаправленої і вільної від конфліктів функції до всіх або лише до частини даних (від М1 до Мn);- comparison of calculated value (Нх) with the encrypted reference value (Well) carried out by the security block (SC) and the forwarding of the administrative information (R2) containing the result of the comparison to storage device. - порівняння розрахованого значення (Нх) із зашифрованим еталонним значенням (Ну), що здійснюється блоком захисту (SC), і пересилання адміністративної інформації (R2), яка містить результат порівняння, до запам'ятовуючого пристрою.
  11. 20
    Method for any of claims 17-19, which is different the fact that inside the control data (R1) it contains the service descriptor (D) for data (from M1 to Mn), and if the result the comparison is positive, sends the service descriptor (D) in the encrypted form back to the data storage device (from M1 to Mn) memory device in accordance with the directives contained in the descriptor (D). 20. Спосіб за будь-яким з пп.17-19, який відрізняється тим, що всередині керуючих даних (R1) він містить сервісний описувач (D) для даних (від М1 до Мn), і якщо результат порівняння позитивний, пересилає сервісний описувач (D) у зашифрованому вигляді назад до запам'ятовуючого пристрою для обробки даних (від М1 до Мn) запам'ятовуючим пристроєм відповідно до директив, що містяться в описувачі (D).
  12. 22
    The method for any of claims 17-21, which is different the fact that it includes the calculation, periodically or upon request, of values ​​(Hx), which is a reflection of the result of the so-called unidirectional and conflict-free function to all or only part of the data (from M1 to Mn), and the block of protection (SC) compares the result (Nx) with the reference value (Well). 22. Спосіб за будь-яким з пп.17-21, який відрізняється тим, що він включає розрахунок, періодично або за запитом, значень (Нх), які є відображенням результату застосування так званої однонаправленої і вільної від конфліктів функції до всіх або лише до частини даних (від М1 до Мn), причому блок захисту (SC) порівнює результат (Нх) з еталонним значенням (Ну).
  13. 23
    The method for any of claims 17-22, which is different that it includes:23. Спосіб за будь-яким з пп.17-22, який відрізняється тим, що він включає: - remembering data (from M1 to Mn) in encrypted form;- запам'ятовування даних (від М1 до Мn) у зашифрованому вигляді;- transfer to security block (SC) in the control data (R1) of the decryption key (k3) for data (from M1 to Mn);- передавання до блока захисту (SC) в керуючих даних (R1) дешифрувального ключа (k3) для даних (від М1 до Мn);- if the comparison result is Hx = Well positive, decryption of data (from M1 to Mn) with encryption key (k3). -  якщо результат порівняння Нх=Ну позитивний, дешифрування даних (від М1 до Мn) за допомогою шифрувального ключа (k3).
  14. 26
    The method for any of claims 17-25, which is different the fact that inside the control data (R1) it contains a service descriptor (D) for data (from M1 to Mn) to decrypt the controllers data (R1) and pass the descriptor (D) to the storage device if the result comparison is positive, and processing data (from M1 to Mn) to the memory device in accordance with the directives contained in the descriptor (D). 26. Спосіб за будь-яким з пп.17-25, який відрізняється тим, що всередині керуючих даних (R1) він містить сервісний описувач (D) для даних (від М1 до Мn), щоб дешифрувати керуючі дані (R1) і передати описувач (D) до запам'ятовуючого пристрою, якщо результат порівняння позитивний, та обробити дані (від М1 до Мn) запам'ятовуючим пристроєм відповідно до директив, що містяться в описувачі (D).