ZA200401112B

Issuing a publisher use license off-line in a digital rights management (DRM) system

Abstract

A publishing user publishes digital content and issues to itself a corresponding digital publisher license to allow itself to render the published digital content. The publishing user is supplied with a publishing certificate from a digital rights management (DRM) server, where the publishing certificate allows the publishing user to so publish the digital content and to so issue the publisher license.

ZA200401112B, drawing sheet 1
Sheet 1 of 17

Term

Term ended

Expired 11 February 2024, 2.6 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

20 claims: 4 independent, 16 dependent

  1. 1
    A method for a publishing user to publish digital content and issue to itself a corresponding digital publisher license to allow itself to render the published digital content, the publishing user being supplied with a publishing certificate from a digital rights management (DRM) server, the publishing certificate having a public key (PU-OLP), and a corresponding private key (PROLP) encrypted by a public key associated with the publishing user (PU-ENTITY) to form (PU-ENTITY(PR-OLP)), the method comprising:developing the content and encrypting the developed content according to a content key (CK);creating a rights label for the encrypted content with (CK) encrypted by a public key of the DRM server (PU-DRM) to form (PU-DRM(CK));retrieving (PU-ENTITY(PR-OLP)) from the publishing certificate;applying a private key (PR-ENTITY) corresponding to (PUENTITY) to (PU-ENTITY(PR-OLP)) to obtain (PR-OLP);signing the created rights label with (PR-OLP) to create a signed rights label (SRL);concatenating the created SRL and the publishing certificate to the encrypted content to form a content package distributable to another user, the another user having to contact the DRM server to obtain a corresponding license with (CK) to render the encrypted content therein, only such DRM server having a private key (PR-DRM) corresponding to (PU-DRM) and being able to apply (PR-DRM) to (PU-DRM(CK)) to obtain (CK);creating license data corresponding to the content package with (CK) encrypted by a (PU-ENTITY) to form (PU-ENTITY(CK));-44PATENT signing the created license data with (PR-OLP) to create the publisher license;and attaching the publishing certificate to the publisher license, whereby only the publishing user having (PR-ENTITY) corresponding to (PRENTITY) can apply such (PR-ENTITY) to (PU-ENTITY(CK)) from the publisher license to obtain (CK) and thereby decrypt the encrypted content therewith for rendering.
  2. 7
    A method for a publishing user to render published digital content based on a self-issued corresponding digital publisher license, the content being encrypted by a content key (CK) to form (CK(content)) and the publisher license including (CK) encrypted by a public key (PU-ENTITY) associated with the publishing user to form (PU-ENTITY(CK)) and having attached thereto a publishing certificate from a digital rights management (DRM) server, the publishing certificate having a public key (PU-OLP) and a corresponding private key (PR-OLP) encrypted by (PU-ENTITY) to form (PU-ENTITY(PR-OLP)), the publisher license being signed by (PR-OLP), the method comprising:verifying the publishing certificate based on the chain of certificates;obtaining (PU-OLP) from the publishing certificate;employing the obtained (PU-OLP) to verify the signature of the publisher license;retrieving (PU-ENTITY(CK)) from the verified publisher license;applying to (PU-ENTITY(CK)) a private key (PR-ENTITY) corresponding to (PU-ENTITY) to obtain (CK);applying (CK) to (CK(content)) to result in the content;and forwarding the content to a rendering application for actual rendering.
  3. 11
    A computer-readable medium having computer-executable instructions thereon for performing a method for a publishing user to publish digital content and issue to itself a corresponding digital publisher license to allow itself to render the published digital content, the publishing user being supplied with a publishing certificate from a digital rights management (DRM) server, the publishing certificate having a public key (PU-OLP), and a corresponding private key (PR-OLP) encrypted by a public key associated with the publishing user (PUENTITY) to form (PU-ENTITY(PR-OLP)), the method comprising:developing the content and encrypting the developed content according to a content key (CK);creating a rights label for the encrypted content with (CK) encrypted by a public key of the DRM server (PU-DRM) to form (PU-DRM(CK));retrieving (PU-ENTITY(PR-OLP)) from the publishing certificate;applying a private key (PR-ENTITY) corresponding to (PUENTITY) to (PU-ENTITY(PR-OLP)) to obtain (PR-OLP);signing the created rights label with (PR-OLP) to create a signed rights label (SRL);-47PATENT concatenating the created SRL and the publishing certificate to the encrypted content to form a content package distributable to another user, the another user having to contact the DRM server to obtain a corresponding license with (CK) to render the encrypted content therein, only such DRM server having a private key (PR-DRM) corresponding to (PU-DRM) and being able to apply (PR-DRM) to (PU-DRM(CK)) to obtain (CK);creating license data corresponding to the content package with (CK) encrypted by a (PU-ENTITY) to form (PU-ENTITY(CK));signing the created license data with (PR-OLP) to create the publisher license;and attaching the publishing certificate to the publisher license, whereby only the publishing user having (PR-ENTITY) corresponding to (PRENTITY) can apply such (PR-ENTITY) to (PU-ENTITY(CK)) from the publisher, license to obtain (CK) and thereby decrypt the encrypted content therewith for rendering.
  4. 17
    A computer-readable medium having computer-executable instructions thereon for performing a method for a publishing user to render published digital content based on a self-issued corresponding digital publisher license, the content being encrypted by a content key (CK) to form (CK(content)) and the publisher license including (CK) encrypted by a public key (PU-ENTITY) associated with the publishing user to form (PU-ENTITY(CK)) and having attached thereto a publishing certificate from a digital rights management (DRM) server, the publishing certificate having a public key (PU-OLP) and a corresponding private key (PR-OLP) encrypted by (PU-ENTITY) to form (PU-ENTITY(PR-OLP)), the publisher license being signed by (PR-OLP), the method comprising:verifying the publishing certificate based on the chain of certificates;obtaining (PU-OLP) from the publishing certificate;employing the obtained (PU-OLP) to verify the signature of the publisher license;· . 20 0 4 / 1 1 1 2 ΡΑΤΕΝΤ retrieving (PU-ENTITY(CK)) from the verified publisher license;applying to (PU-ENTITY(CK)) a private key (PR-ENTITY) corresponding to (PU-ENTITY) to obtain (CK);5 applying (CK) to (CK(content)) to result in the content;and forwarding the content to a rendering application for actual rendering.