Methods, Devices, and Systems for Preventing Rendering Content from CDN to Unauthorized Users

    公开(公告)号:US20230306090A1

    公开(公告)日:2023-09-28

    申请号:US17701828

    申请日:2022-03-23

    申请人: Synamedia Limited

    摘要: Techniques for preventing rendering content from content delivery network (CDN) to unauthorized users are described herein. In accordance with various embodiments, a CDN includes one or more processors and a non-transitory memory. The CDN receives a request from a client device for a media content item, where the request indicates an identifier of a client. The CDN further provisions an encrypted media content item corresponding to the media content item for the client, where at least a portion of the encrypted media content item is encrypted using at least one personalized key assigned to the client. The CDN also facilitates obtaining a manifest corresponding to the encrypted media content item, where the manifest specifies encryption metadata for retrieving the at least one personalized key by the client. The CDN additionally sends the encrypted media content item and the manifest to the client device.

    Methods, Systems, and Devices for Server Control of Client Authorization Proof of Possession

    公开(公告)号:US20220417028A1

    公开(公告)日:2022-12-29

    申请号:US17585529

    申请日:2022-01-26

    申请人: Synamedia Limited

    IPC分类号: H04L9/32 H04L9/40

    摘要: Techniques for server control of client authorization proof of possession are described herein. In various embodiments, a first server provisions client authorization proof of possession for a client device a real-world time, a client public key, and a client private key. The first server generates provisioning response message(s) including the client public key, the client private key, the real-world time, and/or an assertion object, and sends the message(s) to the client device. In various embodiments, a client device obtains an authorization proof token generated based on a client public key, a client private key, and a real-world time provisioned by a first server. The client device generates a request and sends the request to a second server, the request includes the authorization proof token and an assertion object from the first server signed by a server private key and an expiration time and a reference to the client public key.

    Methods, devices, and systems for preventing rendering content from CDN to unauthorized users

    公开(公告)号:US11954185B2

    公开(公告)日:2024-04-09

    申请号:US17701828

    申请日:2022-03-23

    申请人: Synamedia Limited

    摘要: Techniques for preventing rendering content from content delivery network (CDN) to unauthorized users are described herein. In accordance with various embodiments, a CDN includes one or more processors and a non-transitory memory. The CDN receives a request from a client device for a media content item, where the request indicates an identifier of a client. The CDN further provisions an encrypted media content item corresponding to the media content item for the client, where at least a portion of the encrypted media content item is encrypted using at least one personalized key assigned to the client. The CDN also facilitates obtaining a manifest corresponding to the encrypted media content item, where the manifest specifies encryption metadata for retrieving the at least one personalized key by the client. The CDN additionally sends the encrypted media content item and the manifest to the client device.

    Methods, Systems, and Devices for Server Control of Client Authorization Proof of Possession

    公开(公告)号:US20220417241A1

    公开(公告)日:2022-12-29

    申请号:US17585522

    申请日:2022-01-26

    申请人: Synamedia Limited

    IPC分类号: H04L9/40 H04L9/08 H04L9/12

    摘要: Techniques for server control of client authorization proof of possession are described herein. In various embodiments, a first server provisions client authorization proof of possession for a client device a real-world time, a client public key, and a client private key. The first server generates provisioning response message(s) including the client public key, the client private key, the real-world time, and/or an assertion object, and sends the message(s) to the client device. In various embodiments, a client device obtains an authorization proof token generated based on a client public key, a client private key, and a real-world time provisioned by a first server. The client device generates a request and sends the request to a second server, the request includes the authorization proof token and an assertion object from the first server signed by a server private key and an expiration time and a reference to the client public key.