System for Thin Client Devices in Hybrid Edge Cloud Systems

    公开(公告)号:US20230132485A1

    公开(公告)日:2023-05-04

    申请号:US17517485

    申请日:2021-11-02

    申请人: Synamedia Limited

    IPC分类号: H04L9/08 H04L9/32 H04L29/08

    摘要: Techniques for enhancing security for thin client devices in hybrid edge cloud systems are described. In accordance with various embodiments, the hybrid system includes a cloud computing platform (e.g., the cloud) and an edge device (e.g., the edge). The cloud extracts key(s) for authentication and session establishment. The cloud also utilizes the key(s) to establish a session between the edge and a client device. The cloud additionally authorizes a content request from the client device for a media content item over the session and extracts a content key upon successful authorization. The edge caches the key(s), obtains the content key at the time of receiving the content request from the client device and transmits the content key and the key(s) with the media content item to the client device.

    Methods, Systems, and Devices for Server Control of Client Authorization Proof of Possession

    公开(公告)号:US20220417241A1

    公开(公告)日:2022-12-29

    申请号:US17585522

    申请日:2022-01-26

    申请人: Synamedia Limited

    IPC分类号: H04L9/40 H04L9/08 H04L9/12

    摘要: Techniques for server control of client authorization proof of possession are described herein. In various embodiments, a first server provisions client authorization proof of possession for a client device a real-world time, a client public key, and a client private key. The first server generates provisioning response message(s) including the client public key, the client private key, the real-world time, and/or an assertion object, and sends the message(s) to the client device. In various embodiments, a client device obtains an authorization proof token generated based on a client public key, a client private key, and a real-world time provisioned by a first server. The client device generates a request and sends the request to a second server, the request includes the authorization proof token and an assertion object from the first server signed by a server private key and an expiration time and a reference to the client public key.

    Distributed Digital Rights Management (DRM) Protection

    公开(公告)号:US20240095314A1

    公开(公告)日:2024-03-21

    申请号:US17945690

    申请日:2022-09-15

    申请人: Synamedia Limited

    IPC分类号: G06F21/10 G06F21/60 H04L9/08

    摘要: Various implementations include distributing DRM processing between a DRM key protection system and multiple receiving devices. To that end, a method includes receiving a first encrypted content key associated with a first receiving device, and receiving a second encrypted content key associated with a second receiving device. The method includes processing the first encrypted content key to generate a first decrypted content key, and processing the second encrypted content key to generate a second decrypted content key. The method includes generating a first protected content key based on the first decrypted content key, and generating a second protected content key based on the second decrypted content key. The method includes providing the first protected content key to the first receiving device, and providing the second protected content key to the second receiving device.

    Methods, Systems, and Devices for Server Control of Client Authorization Proof of Possession

    公开(公告)号:US20220417028A1

    公开(公告)日:2022-12-29

    申请号:US17585529

    申请日:2022-01-26

    申请人: Synamedia Limited

    IPC分类号: H04L9/32 H04L9/40

    摘要: Techniques for server control of client authorization proof of possession are described herein. In various embodiments, a first server provisions client authorization proof of possession for a client device a real-world time, a client public key, and a client private key. The first server generates provisioning response message(s) including the client public key, the client private key, the real-world time, and/or an assertion object, and sends the message(s) to the client device. In various embodiments, a client device obtains an authorization proof token generated based on a client public key, a client private key, and a real-world time provisioned by a first server. The client device generates a request and sends the request to a second server, the request includes the authorization proof token and an assertion object from the first server signed by a server private key and an expiration time and a reference to the client public key.