Improvements to a Television Signal Reception Device and System
20170347141 · 2017-11-30
Inventors
Cpc classification
H04L63/06
ELECTRICITY
H04N21/4367
ELECTRICITY
International classification
H04N21/258
ELECTRICITY
H04L9/08
ELECTRICITY
H04N21/266
ELECTRICITY
Abstract
The present invention allows the combination and adaptation of a broadcast data reception system with a Conditional Access System which may be embedded in the receiving device, such as a television, or can be provided as a module which is connected to the receiving device and which allows service provider controlled, typically cloud based, interactivity via the same CAS with different Multi Channel video programming distributors (MVPD) service providers.
Claims
1. An apparatus for the provision of one or more services to an end user, said apparatus comprising: a service provider broadcast apparatus; and a device for the receipt of data, which data is provided to be selectively accessed to allow the generation of the one or more services to the end user via the device, the device comprising a Conditional Access System (CAS); wherein the apparatus utilizes a combination of two or more of an ETSI Key Ladder, a DLNA-CVP2 Server, and a DLNA CVP2 Client to interact with a CAS of the service provider so as to allow the data signals to be selectively accessed.
2. The apparatus of claim 1 wherein the device includes a display screen and/or speakers.
3. (canceled)
3. The apparatus of claim 1 wherein the device is connected to a display screen and/or speakers.
4. The apparatus of claim 1 wherein the apparatus includes each of the ETSI Key Ladder, DLNA-CVP2 Server and DLNA CVP2 Client.
5. The apparatus of claim 1 wherein the DLNA Server and the DLNA Client are integrated.
6. The apparatus of claim 1 wherein a DLNA-CVP2 certificate authentication mechanism is adapted to also deliver the ETSI key ladder ID to a controller of the CAS.
7. The apparatus of claim 1 wherein the device CAS is embedded within the device using the ETSI Key Ladder technology.
8. A device for the provision of one or more services to an end user, the device configured to allow selective access to received data to allow the generation of the one or more services to the end user, the device comprising a Conditional Access System (CAS) which utilizes a combination of two or more of an ETSI Key Ladder, a DLNA-CVP2 Server and/or a DLNA CVP2 Client so as to allow the data signals to be selectively accessed.
9. A method for providing access to one or more services provided by one or more service providers to an end user via a data receiving device by selectively accessing data received by the device via a Conditional Access System (CAS) the method comprising: performing an authentication of the received data using an authentication service provider, and, if authentic; communicating a device ID of a CAS of the data receiving device to the service provider; deriving whether there is an association between the device ID and a Vendor ID of the service provider; Vendor ID and communicating information indicating any derived association to a CAS of the service provider which, if there is an association, derives a Root Key and one or more service keys for the said data receiving device; wherein the Vendor ID is also communicated to the CAS of the data receiving device to allow that CAS to derive the same Root Key.
10. The method of claim 9 wherein the authentication of the data is performed using a DLNA Server using the authentication service provider.
11. The method of claim 10 wherein the authentication service provider is an external provider.
12. The method of A method according to claim 9 wherein the communication of the device ID is performed using an ETSI Key Ladder Management provider.
13. The method of claim 9 wherein the communication of the Vendor ID to the data receiving device is via a connection established by the Authentication Service provider.
14. The method of claim 9 wherein the data receiving device includes a display screen and/or speakers.
15. The method of claim 9 wherein the data receiving device is connected as a separate unit to the display screen and/or speakers.
16. The method of claim 9 wherein a Key Ladder Management provider communicates the Vendor ID associated with the device ID via the Authentication Service provider.
17. The method of claim 9 wherein the Vendor ID is communicated to the data receiving device using a broadcast data network.
18. The method of claim 9 wherein the CAS and the Key Ladder Management Provider are the same entity.
19. The method of claim 9 wherein the device ID is also communicated directly to a Key Ladder Management Provider which communicates the device ID to the Authentication Service provider which responds indicating whether the data receiving device has or has not been successfully authenticated and, if successful the CAS is enabled for data receiving devices for which successful authentication is indicated.
20. The method of claim 19 wherein if authentication is successful, the data receiving device ID is communicated to a CAS Support provider in which a store of computer programs is maintained and which are designed for execution on the data receiving device, wherein the programs provide support functions for the specific device CAS, and wherein the support functions include additional security processes in the form of at least one of: monitoring, counter-measures, and implementation of business rules.
21. The method of claim 20 wherein the execution is performed on a specific security processor within the device.
22-23. (canceled)
24. The method of claim 9 wherein the connection established by the Authentication Service provider and the device is further used to communicate one or more CAS specific support packages to the device.
25. The method of claim 9 wherein the Authentication Service provider communicates to the device details of a location from which the device can obtain one or more CAS specific support packages.
26. The method of claim 9 wherein a CAS specific support package obtained by the device includes executable functions that map/translate MVPD specific service information into a form suitable for use by the DLNA Server.
Description
[0032] Specific embodiments of the invention are now described with reference to the accompanying drawings: wherein
[0033]
[0034]
[0035]
[0036]
[0037]
[0038]
[0039]
[0040]
[0041]
[0042] Referring firstly to prior art systems of the type illustrated in
[0043] At a user location, such as Home 20, there is provided a Television (receiver and display) capable of receiving a broadcast service 12 over a broadcast network 15. Television receiver interface 31 typically comprises a terrestrial and/or cable tuner and demodulator (some Television receivers may also include other broadcast network interfaces, such as Satellite). In order for Television 30 to be able to process the CAS 14 protected, MPVD 10 specific, service 12, it must first decrypt the service using the specific corresponding Conditional Access System 35. In conventional Television receivers 30, this Conditional Access System 35, is provided as a plug in module, connecting to the Television through interface 32. In Europe this interface is typically a Personal Computer Memory Card International Association (PCMCIA) style interface using the Common Interface standard. In the United States, this interface is known as Cablecard or POD, (Point of Deployment module). In both cases, the CAS used by the receiver is separable from the Television receiver.
[0044]
[0045]
[0046]
[0047] Commercially practical Conditional Access Systems make use of a hierarchy of keys to both segment the system into manageable groups and protect the shared secret. This key layering (often called a key ladder) has been standardised in ETSI TS 103 162 and is illustrated in
[0048] The DLNA (Digital Living Network Alliance) is an industry consortium developing standards that enable in-home, connected devices to discover, access and render various services (such as for example multimedia content).
[0049]
[0050]
[0051] In a preferred embodiment, the communication of the Vendor ID 310, to the receiver device 30, makes use of the connection established by Authentication Service provider 450. This is achieved by Key Ladder Management provider 510 communicating the Vendor ID associated with the Device ID to the Authentication Service provider 450. Alternatively, and as shown in
[0052] In an alternative embodiment of the invention, the Device ID 300′ is also communicated directly to the Key Ladder Management Provider 510. The Key Ladder Management Provider communicates the Device ID 300′ to the Authentication Service provider 450, from which the Authentication Service provider responds indicating whether the device has or has not been successfully authenticated. The CAS is then enabled for devices that succeed authentication.
[0053]
[0054] In one embodiment, the connection established by Authentication Service provider 450, and the device 30, is further used to communicate the CAS specific support package 620, to the specific device 30. In an alternative embodiment the Authentication Service provider 450, communicates a location from which the device 30, can obtain the CAS specific support package 620 which could, for example, be obtained from either the Internet or from the Broadcast network.
[0055] In a further enhancement to the invention, the CAS specific support package further includes executable functions 630, that map/translate MVPD 10, specific service information (such as for example, program information broadcast in non-standardised form) into a form suitable for use by the DLNA Server 420.
[0056] Although the invention has been illustrated by way of integration within a Television device, the invention is not limited to Television devices. Furthermore the invention is not limited to integration within a Television device, as an alternative embodiment of the invention the functions 35, 410, 420 in the forms described herein, could be implemented in a detachable module connected to the device, similar to