Abstract:
The enabling key block (EKB) used in an encrypted key distributing constitution of a tree structure is generated by reconstructing a simplified 2-branch or multi-branch type tree with a terminal node or leaf which can decrypt as the lowest stage, and on the basis of only the key corresponding to a node or a leaf of the reconstructed hierarchical tree. Further, a tag as discrimination data at a tree position of an encrypted key stored in EKB is stored. The tag not only discriminates a position but stores data for judging presence of encrypted key data.within EKB. A considerable reduction in data quantity is realized, and decrypting process, in a device is also simplified. Thus, an information processing system and method capable of reducing data quantity of an enabling key block (EKB) used in an encrypted key constitution of a tree structure is realized.
Abstract:
An information reproducing method and an information reproducing device in which the key renewal block (KRB) of the latest verison is selectively used to encrypt the content to store the encrypted contents in a recording medium. A plural num er of KRBs of different generations and versions are stored in a recording medium. If the latest KRB is detected, it is stored in a memory unit within the recording and/or reproducing device. A plural number of KRBs having plural different generations or versions are stored on the recording medium. With the present method and device, in storing the content in the recording medium, the latest usable one of the KRB in the memory unit of the reproducing device and plural KRBs on the recording medium is detected to acquire an encrypting key, such as a media key, to execute the content encryption. In this manner, the encrypted content based on a KRB of a newer version can at all times be stored on the recording medium.
Abstract:
An information recording/reproducing apparatus and method for storing in a record medium a content encrypted by selectively using a key renewal block (KRB) of the latest version, and for storing in the record medium KRBs of different generations and versions. When the latest KRB is detected, the latest KRB is stored in a memory of the recording/reproducing apparatus. In order to store a content in a record medium, the available latest KRB is detected from among the KRBs recorded in the memory of the recording/reproducing apparatus and in the record medium, and an encryption key, for example, a medium key is acquired to encrypt the content. As a result, an encrypted content encrypted by use of the KRB of the latest version can be always stored in a record medium.
Abstract:
If the generation of a master key that a reproducing apparatus has is older than that used when data is recorded and consequently the data cannot be reproduced, or if the generation of a master key that a recording apparatus has is older than that required when data is to be recorded on a record medium and consequently the data cannot be recorded, the user is prompted to update the master key, and the user acquires a required master key to perform reproducing or recording. the updated master key is delivered in the form handled only by a specific device through a transmission medium such as a record medium, a network, an IC card, or a telephone line by using, e.g., a tree-structured key delivery system.
Abstract:
Update of a master key and a media key is transmitted along with a key update block (KRB) through a key distribution system of tree structure. The KRB has a structure where devices constituting leaves of the tree have a leaf key and a limited node key and creates and distributes a specific key update block (KRB) to a group specified by a specific node, thereby limiting updateable devices. Any device not belonging to the group cannot decode the data, thus ensuring the safety of key distribution. Especially, in a system using a master key under generation control, an update master key is distributed by a KRB.
Abstract:
An information recording/reproducing device for executing a key distribution by a KRB distribution involving a tree-structure key distribution configuration. The device transmits, by using a key-structure key distribution configuration, a key such as a master key, a media key or a content key along with a key update block (KRB). The recording/reproducing device, after calculating and acquiring the key of a certain recording medium based on a reception KRB, encrypts the acquired key using an encryption key specific to the device, for example, a leaf key, and stores it in a recording medium or memory of the device. Therefore, the recording/reproducing device can calculate a key by merely decoding the encrypting key one time when next using the recording medium or contents, and can reduce computational complexity such as KRB decoding required when the device accesses a recording medium or uses contents, thereby making efficient processing on the KRB receiving side.
Abstract:
A content key, an authentication key, and a program data etc. are transmitted with an enabling key block (EKB) in an encrypted key constitution of a tree structure. The EKB has a constitution in which a device as a leaf of the tree holds a leaf key and a limited node key, and a specific enabling key block (EKB) is generated and distributed to a group specified by a specific node to limit devices that can be renewed. As the devices that do not belong to the group cannot perform decryption, the security for distributing keys etc. can be secured. Thus, distribution of various kinds of keys or data is executed in an encryption key constitution of a tree structure to realize an information processing system and method enabling to distribute data efficiently and safely.
Abstract:
Un sistema de procesamiento de información que tiene un grupo de dispositivos de procesamiento de información organizados en una estructura en árbol jerárquico que tiene una pluralidad de nodos y hojas, estando dichos nodos conectados a un nodo superior por vía de uno o más nodos intermedios, y correspondiendo cada hoja a un dispositivo de procesamiento de información, teniendo los nodos claves respectivas, teniendo cada dispositivo de procesamiento de información medios de procesamiento que almacenan un conjunto de claves que comprende una clave de hoja única para ese dispositivo, la clave de raíz del nodo superior y las claves de nodos de el, o cada, nodo intermedio que está en el trayecto directo desde la hoja correspondiente hasta el nodo superior, y capaces de funcionar para descifrar datos de mensaje cifrado distribuidos a dicho dispositivo, usando dicho conjunto de claves; estando dispuesto el sistema para enviar a un dispositivo de procesamiento de información un mensaje cifrado conuna clave nueva de nodo; comprendiendo el mensaje un bloque de claves habilitadoras (EKB), incluyendo el EKB: una parte de datos que contiene al menos la clave nueva de nodo cifrada con la clave de otro nodo del grupo, y una parte de etiquetas que contiene datos que indican la posición en el árbol jerárquico de la, o cada, dicha clave cifrada.
Abstract:
A content key, an authentication key, and a program data etc. are transmitted with an enabling key block (EKB) in an encrypted key constitution of a tree structure. The EKB has a constitution in which a device as a leaf of the tree holds a leaf key and a limited node key, and a specific enabling key block (EKB) is generated and distributed to a group specified by a specific node to limit devices that can be renewed. As the devices that do not belong to the group cannot perform decryption, the security for distributing keys etc. can be secured. Thus, distribution of various kinds of keys or data is executed in an encryption key constitution of a tree structure to realize an information processing system and method enabling to distribute data efficiently and safely.
Abstract:
The enabling key block (EKB) used in an encrypted key distributing constitution of a tree structure is generated by reconstructing a simplified 2-branch or multi-branch type tree with a terminal node or leaf which can decrypt as the lowest stage, and on the basis of only the key corresponding to a node or a leaf of the reconstructed hierarchical tree. Further, a tag as discrimination data at a tree position of an encrypted key stored in EKB is stored. The tag not only discriminates a position but stores data for judging presence of encrypted key data.within EKB. A considerable reduction in data quantity is realized, and decrypting process, in a device is also simplified. Thus, an information processing system and method capable of reducing data quantity of an enabling key block (EKB) used in an encrypted key constitution of a tree structure is realized.