IP Library Granted Patent US 9,467,285
Granted Patent B2
US 9,467,285 · App. 12/876,814 · Granted Oct 11, 2016

Security of a multimedia stream

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,467,285
App. No.
12/876,814
Granted
Oct 11, 2016
Kind
B2
Abstract

A method including receiving encrypted multimedia information of a multimedia broadcast multicast service streaming session, wherein the multimedia information is encrypted using an encryption key. An indication allowing to switch the receiving of the encrypted multimedia information to a peer-to-peer streaming session is received and receiving of the encrypted multimedia information from the multimedia broadcast multicast service streaming session to the peer-to-peer streaming session is switched. Encrypted multimedia information of the peer-to-peer streaming session is received.

Claims (43)

1. A method comprising:

receiving at an apparatus, inside a multimedia broadcast multicast streaming service coverage area of a first access point of a wide-area network, encrypted multimedia information from a multimedia broadcast multicast service streaming session, wherein the multimedia information is encrypted using an encryption key and is received from the first access point of the wide-area network;

receiving, at said apparatus, from the wide-area network, an indication that a handover of the receiving of the encrypted multimedia information from the first access point of the wide-area network to a service area remnant peer-to-peer streaming session conduit is allowed by the wide-area network;

switching, at said apparatus, receiving of the encrypted multimedia information from the first access point of the wide-area network to receiving of the encrypted multimedia information via the service area remnant peer-to-peer streaming session conduit; and

receiving at said apparatus, outside said multimedia broadcast multicast streaming service coverage area of said first access point of the wide-area network, after said handover, the encrypted multimedia information indirectly from the first access point of the wide-area network, wherein said indirect receipt is from inside said multimedia broadcast multicast streaming service coverage area of the first access point of the wide-area network via said service area remnant peer-to-peer streaming session conduit.

2. The method of claim 1 , further comprising:

receiving a protected service key and the encryption key, wherein the encryption key is protected by the service key before switching of the receiving of the encrypted multimedia information to receiving of the encrypted multimedia information via the service area remnant peer-to-peer streaming session conduit.

3. The method of claim 2 , further comprising:

decrypting the multimedia information using the encryption key.

4. The method of claim 2 , further comprising:

generating a user key;

unprotecting the protected service key using the user key;

unprotecting the protected encryption key using the unprotected service key; and

decrypting the multimedia information using the encryption key.

5. The method of claim 4 , wherein the user key is derived from a ciphering key and an integrity key.

6. The method of claim 1 , wherein the switching of the receiving of the encrypted multimedia information to receiving of the encrypted multimedia information via the service area remnant peer-to-peer streaming session conduit is triggered in response to at least one of the following criteria:

losing the broadcast multicast service streaming session;

load balancing by mobile network operator.

7. The method of claim 1 , wherein the multimedia information comprises real-time streaming data or file download data.

8. The method of claim 1 , further comprising:

determining a lifetime of a time period for the encryption key during which time period the encryption key is valid for data decryption.

9. The method of claim 8 , further comprising:

extending the lifetime of the encryption key for the peer-to-peer streaming session.

10. The method of claim 8 , further comprising:

switching back from the peer-to-peer streaming session to the multimedia broadcast multicast service streaming session.

11. An apparatus comprising:

at least one processor; and

at least one memory including computer program code, the at least one memory and the computer program code being configured to, with the at least one processor, cause the apparatus at least to perform:

receive, inside a multimedia broadcast multicast streaming service coverage area of a first access point of a wide-area network, encrypted multimedia information from a multimedia broadcast multicast service streaming session, wherein the multimedia information is encrypted using an encryption key and is received from the first access point of the wide-area network;

receive from the wide-area network an indication that a handover of the receiving of the encrypted multimedia information from the first access point of the wide-area network to a service area remnant peer-to-peer streaming session conduit is allowed by the wide-area network;

switch receiving of the encrypted multimedia information from the first access point of the wide-area network to receiving of the encrypted multimedia information via the service area remnant peer-to-peer streaming session conduit; and

receive, outside said multimedia broadcast multicast streaming service coverage area of said first access point of the wide-area network, after said handover, the encrypted multimedia information indirectly from the first access point of the wide-area network, wherein said indirect receipt is from inside said multimedia broadcast multicast streaming service coverage area of the first access point of the wide-area network via said service area remnant peer-to-peer streaming session conduit.

12. The apparatus of claim 11 , wherein the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus to further perform:

receive a service key and the encryption key, wherein the encryption key is protected by the service key before switching of the receiving of the encrypted multimedia information to receiving of the encrypted multimedia information via the service area remnant peer-to-peer streaming session conduit.

13. The apparatus of claim 12 , wherein the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus to further perform:

decrypt the multimedia information using the encryption key.

14. The apparatus of claim 12 , wherein the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus to further perform:

derive encryption key from the protected encryption key by the service key.

15. A computer program embodied on a computer readable non-transitory medium comprising computer executable program code which, when executed by at least one processor of an apparatus, causes the apparatus to perform:

receive, inside a multimedia broadcast multicast streaming service coverage area of a first access point of a wide area network, encrypted multimedia information from a multimedia broadcast multicast service streaming session, wherein the multimedia information is encrypted using an encryption key and is received from the first access point of the wide-area network;

receive from the wide-area network an indication that a handover of the receiving of the encrypted multimedia information from the first access point of the wide area network to a service area remnant peer-to-peer streaming session conduit is allowed by the wide-area network;

switch receiving of the encrypted multimedia information from the first access point of the wide area network to receiving of the encrypted multimedia information via the service area remnant peer-to-peer streaming session conduit; and

receive, outside said multimedia broadcast multicast streaming service coverage area of said first access point of the wide area network, after said handover, the encrypted multimedia information indirectly from the first access point of the wide-area network, wherein said indirect receipt is from inside said multimedia broadcast multicast streaming service coverage area of the first access point of the wide-area network via said service area remnant peer-to-peer streaming session conduit.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 22, 2015
From: NOKIA CORPORATION
To: NOKIA TECHNOLOGIES OY
Reel/Frame 035468/0686 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 6, 2010
From: HOLTMANNS, SILKE; LAITINEN, PEKKA JOHANNES
To: NOKIA CORPORATION
Reel/Frame 025098/0387 →