IP Library Granted Patent US 8,634,552
Granted Patent B2
US 8,634,552 · App. 12/576,784 · Granted Jan 21, 2014

System and method for using a streaming protocol

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,634,552
App. No.
12/576,784
Granted
Jan 21, 2014
Kind
B2
Abstract

An initialization vector (IV) is employed to decrypt a block of a stream that has been encrypted with Cypher Block Chaining (CBC) encryption, without requiring decryption of previous blocks within the stream. For example, a listener who accesses a distribution point to retrieve encrypted content authenticates himself to an application server that regulates access to encrypted content on the distribution point, and responsively receives a key. The listener then requests access to a reference point within the encrypted content stream somewhere after its beginning (e.g., using preview clips). The distribution point relates the reference point to a corresponding block of the encrypted stream, and identifies an IV previously used for encryption of that block. The distribution point provides the associated encrypted block of content and the IV to the listener to enable mid-stream rendering of the encrypted content, without requiring the listener to decrypt previous blocks within the encrypted stream.

Claims (60)

1. A host with a processor, the host comprising:

a communications interface structured and arranged to:

receive a first request from a client to access an encrypted stream of media content, and

transmit the encrypted stream to the client;

a cryptographic data store structured and arranged to store:

the encrypted stream of media content and

a table of initialization vectors, each of the initialization vectors associated with a specific portion of the encrypted stream of media content;

a processor structured and arranged to

receive a time-shift command from the client comprising a command to at least one of rewind the encrypted stream of media, pause the encrypted stream of media, or access the encrypted stream of media beginning at a specified time into the stream,

identify a specified portion of the encrypted stream of media content by associating the received time-shift command with the specified portion of the encrypted stream of media content,

access the table of initialization vectors,

retrieve, from the table of initialization vectors, a specific initialization vector associated with the identified specified portion of the encrypted stream of media content, and

instruct the communications interface to transmit the identified specified portion of the encrypted stream of media content and the specific initialization vector.

2. The host of claim 1 , wherein the processor is further structured and arranged to:

instruct the communications interface to transmit the identified specified portion of the encrypted stream of media content and the specific initialization vector to the client.

3. The host of claim 1 , wherein the processor is further structured and arranged to:

instruct the communications interface to transmit the identified specified portion of the encrypted stream of media content and the specific initialization vector to a duplicating switch for distribution to the client.

4. The host of claim 3 , wherein the processor is further structured and arranged to:

instruct the communications interface to transmit a decryption key for use in decrypting the encrypted stream of media content.

5. The host of claim 4 , wherein each portion of the encrypted stream of media is encrypted using one of multiple decryption keys.

6. The host of claim 5 , wherein the processor is further structured and arranged to:

instruct the communications interface to transmit, when a second portion of the encrypted stream of media is encrypted using a different decryption key from the immediately previous portion of the encrypted stream of media, a metadata message indicating that the second portion is encrypted using the different decryption key.

7. The host of claim 6 , wherein the metadata message comprises 0x3902.

8. The host of claim 1 , wherein the encrypted stream of media content is encrypted using a cipher-block chained encryption system.

9. A method for transmitting data to a client, comprising:

receiving, at a host with a processor, a first request from the client to access an encrypted stream of media content;

transmitting, from the host, a portion of the encrypted stream to the client;

receiving a time-shift command from the client comprising a command to at least one of: rewind the encrypted stream of media, pause the encrypted stream of media, or access the encrypted stream of media beginning at a specified time into the stream;

identifying a specified portion of the encrypted stream of media content by associating the received time-shift command with the specified portion of the encrypted stream of media content;

accessing, at the host, a table of initialization vectors;

retrieving, from the table of initialization vectors, a specific initialization vector associated with the identified specified portion of the encrypted stream of media content; and

transmitting the identified specified portion of the encrypted stream of media content and the specific initialization vector;

wherein each of the initialization vectors is associated with a specific portion of the encrypted stream of media content.

10. The method of claim 9 , further comprising:

transmitting the identified specified portion of the encrypted stream of media content and the specific initialization vector to the client.

11. The method of claim 9 , further comprising:

transmitting the identified specified portion of the encrypted stream of media content and the specific initialization vector to a duplicating switch for distribution to the client.

12. The method of claim 11 , further comprising:

transmitting a decryption key to the duplicating switch for use by the client in decrypting the encrypted stream of media content.

13. The method of claim 12 , wherein each portion of the encrypted stream of media is encrypted using one of multiple decryption keys.

14. The method of claim 12 , further comprising:

transmitting, when a second portion of the encrypted stream of media is encrypted using a different decryption key from the immediately previous portion of the encrypted stream of media, a metadata message indicating that the second portion is encrypted using the different decryption key.

15. The method of claim 14 , wherein the metadata message comprises 0x3902.

16. The method of claim 9 , wherein the encrypted stream of media content is encrypted using a cipher-block chained encryption system.

17. A system for transmitting data to a client, comprising:

a client; and

a host in communication with the client, the host comprising:

a communications interface structured and arranged to:

receive a first request from the client to access an encrypted stream of media content, and

transmit the encrypted stream to the client;

a cryptographic data store structured and arranged to store:

the encrypted stream of media content, and

a table of initialization vectors, each of the initialization vectors associated with a specific portion of the encrypted stream of media content;

a processor structured and arranged to

receive a time-shift command from the client comprising a command to at least one of: rewind the encrypted stream of media, pause the encrypted stream of media, or access the encrypted stream of media beginning at a specified time into the stream,

identify a specified portion of the encrypted stream of media content by associating the received time-shift command with the specified portion of the encrypted stream of media content,

access the table of initialization vectors,

retrieve, from the table of initialization vectors, a specific initialization vector associated with the identified specified portion of the encrypted stream of media content, and

instruct the communications interface to transmit the identified specified portion of the encrypted stream of media content and the specific initialization vector.

18. The system of claim 17 , further comprising a duplicating switch for transmitting the specified portion of the encrypted stream of media content and the specific initialization vector to the client.

Assignments (10)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 19, 2021
From: VERIZON MEDIA INC.
To: VERIZON PATENT AND LICENSING INC.
Reel/Frame 057453/0431 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 26, 2020
From: OATH INC.
To: VERIZON MEDIA INC.
Reel/Frame 054258/0635 →
CHANGE OF NAME Recorded Aug 24, 2017
From: AOL INC.
To: OATH INC.
Reel/Frame 043672/0369 →
RELEASE OF SECURITY INTEREST IN PATENT RIGHTS -RELEASE OF 030936/0011 Recorded Jul 1, 2015
From: JPMORGAN CHASE BANK, N.A.
To: AOL ADVERTISING INC.; AOL INC.; BUYSIGHT, INC.; MAPQUEST, INC.; PICTELA, INC.
Reel/Frame 036042/0053 →
SECURITY AGREEMENT Recorded Aug 2, 2013
From: AOL INC.; AOL ADVERTISING INC.; BUYSIGHT, INC.; MAPQUEST, INC.; PICTELA, INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 030936/0011 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Nov 16, 2010
From: BANK OF AMERICA, N A
To: AOL INC; AOL ADVERTISING INC; GOING INC; LIGHTNINGCAST LLC; MAPQUEST, INC; NETSCAPE COMMUNICATIONS CORPORATION; QUIGO TECHNOLOGIES LLC; SPHERE SOURCE, INC; TACODA LLC; TRUVEO, INC; YEDDA, INC
Reel/Frame 025323/0416 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 31, 2010
From: PARE, DAVID F.; BIDERMAN, DAVID L.; LOOMIS, STEPHEN; BROWN, SCOTT K.; WISE, MICHAEL; WEXELBLAT, DAVID; CAHILL, CONOR P.; BILL, DAVID S.
To: AMERICA ONLINE, INC.
Reel/Frame 024164/0434 →
CONVERSION Recorded Mar 31, 2010
From: AMERICA ONLINE, INC.
To: AOL LLC
Reel/Frame 024164/0551 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 31, 2010
From: AOL LLC
To: AOL INC.
Reel/Frame 024168/0769 →
SECURITY AGREEMENT Recorded Dec 14, 2009
From: AOL INC.; AOL ADVERTISING INC.; BEBO, INC.; ICQ LLC; GOING, INC.; LIGHTNINGCAST LLC; MAPQUEST, INC.; NETSCAPE COMMUNICATIONS CORPORATION; QUIGO TECHNOLOGIES LLC; SPHERE SOURCE, INC.; TACODA LLC; TRUVEO, INC.; YEDDA, INC.
To: BANK OF AMERICAN, N.A. AS COLLATERAL AGENT
Reel/Frame 023649/0061 →