System and method for watermarking of media segments using sample variants for normalized encryption (svne)
US-2020014988-A1 · Jan 9, 2020 · US
US10783282B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10783282-B2 |
| Application number | US-201816169000-A |
| Country | US |
| Kind code | B2 |
| Filing date | Oct 24, 2018 |
| Priority date | Oct 26, 2017 |
| Publication date | Sep 22, 2020 |
| Grant date | Sep 22, 2020 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Devices, systems and methods for distribution of digital content are provided. At least a security manager of a media block is located within a tamper-responsive enclosure, the security manager and/or the media block bonded to a transcoder in a security marriage based on a cryptographic certificate associated with at least the media block. The media block provides, to the transcoder via a data bridge, encrypted output generated from digital content and based on a first cryptographic key. The transcoder generates respective transcoded outputs associated with one or more tokens used for playback of the respective transcoded outputs at respective end-user devices, the respective transcoded outputs generated from the encrypted output decrypted using a second cryptographic key associated with the first cryptographic key. The respective transcoded outputs are output to the respective end-user devices associated with respective tokens.
Opening claim text (preview).
What is claimed is: 1. A device comprising: a tamper-responsive enclosure; a media block and a transcoder, at least a security manager portion of the media block located within the tamper-responsive enclosure, the media block and the transcoder in communication via a data bridge, the media block and the transcoder bonded to one another in a security marriage based on a cryptographic certificate associated with at least the media block, the media block configured to: provide, to the transcoder via the data bridge, encrypted output generated from digital content and based on a first cryptographic key; the transcoder configured to: generate respective transcoded outputs associated with one or more tokens used for playback of the respective transcoded outputs at respective end-user devices, the respective transcoded outputs generated from the encrypted output decrypted using a second cryptographic key associated with the first cryptographic key; and output the respective transcoded outputs to the respective end-user devices associated with respective tokens. 2. The device of claim 1 , wherein the transcoder is further configured to watermark the respective transcoded outputs based on respective user data associated with the respective end-user devices. 3. The device of claim 1 , further comprising a switch in communication with a port of the transcoder, the switch configured to: transmit the respective transcoded outputs, received via the port, to the respective end-user devices. 4. The device of claim 1 , wherein the respective transcoded outputs comprises multiple bitrate versions of the digital content. 5. The device of claim 1 , wherein the transcoder is further configured to change a quality of service of each of the respective transcoded outputs to optimize playback of the respective transcoded outputs at the respective end-user devices. 6. The device of claim 1 , wherein the transcoder is further configured to receive the one or more tokens from a network operations center where each user of the respective end-user devices has selected the digital content for viewing. 7. The device of claim 1 , wherein the transcoder is further configured to insert, into the respective transcoded outputs, content customized for each of the respective end-user devices. 8. The device of claim 1 , wherein the transcoder is further configured to output the respective transcoded outputs to the respective end-user devices by outputting the respective transcoded outputs to respective playback applications at the respective end-user devices. 9. The device of claim 1 , wherein the transcoder is further configured to output the respective transcoded outputs to the respective end-user devices in an encrypted format. 10. The device of claim 1 , wherein the media block is further configured to generate the encrypted output from the digital content by: receiving digital content from an external storage device in an encrypted format; decrypting the digital content to generate unencrypted digital content; and encrypting the unencrypted digital content using the first cryptographic key. 11. The device of claim 1 , wherein one or more of the media block and the transcoder is further configured to forensically mark one or more of audio and video of the digital content. 12. The device of claim 1 , wherein security marriage keys defining the security marriage are stored in a respective tamper-proof memory of one or more of the media block and the transcoder. 13. The device of claim 1 , wherein the first cryptographic key comprises a private key associated with the cryptographic certificate and the second cryptographic key comprises a public key associated with the cryptographic certificate. 14. The device of claim 1 , wherein each of the media block and the transcoder are configured to negotiate a transport layer security (TLS) session via the data bridge, prior to the media block providing the encrypted output to the transcoder, each of the first cryptographic key and the second cryptographic key associated with the TLS session. 15. The device of claim 1 , wherein the media block and the transcoder are physically bonded together. 16. The device of claim 1 , wherein the media block and the transcoder are configured to, together, fill a space in a hardware rack. 17. The device of claim 1 , further comprising a plurality of combinations of media blocks and transcoders, each combination of a respective media block and associated transcoder bonded to one another in a respective security marriage based on a respective cryptographic certificate associated with the respective media block. 18. The device of claim 1 , wherein both the transcoder and at least the security manager portion of the media block are located within the tamper-responsive enclosure. 19. The device of claim 1 , wherein the transcoder is located within a respective tamper-responsive enclosure. 20. A method comprising: providing, from a media block, to a transcoder via a data bridge, encrypted output generated from digital content and based on a first cryptographic key, at least a security manager portion of the media block located within a tamper-responsive enclosure, the media block and the transcoder bonded to one another in a security marriage based on a cryptographic certificate associated with at least the media block; generating, at the transcoder, respective transcoded outputs associated with one or more tokens used for playback of the respective transcoded outputs at respective end-user devices, the respective transcoded outputs generated from the encrypted output decrypted using a second cryptographic key associated with the first cryptographic key; and outputting, from the transcoder, the respective transcoded outputs to the respective end-user devices associated with respective tokens.
by transmitting keys (key distribution for secret or secure communication H04L9/08; network support of key management H04L63/06) · CPC title
characterized by admission policies (admission control, resource allocation in open networks H04L12/5692; arrangements for network security using user profiles for access control H04L63/102; access security in wireless networks H04W12/08) · CPC title
for generating or managing keys in general (key distribution for secret or secure communication involving central third party, e.g. key distribution center [KDC] or trusted third party [TTP] H04L9/083; network support of key management H04L63/06; key management for network security in communication control or processing H04W12/04) · CPC title
involving video stream encryption · CPC title
for generating different versions, e.g. for different recipient devices · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.