<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>discretix &#187; OMA DRM</title>
	<atom:link href="http://www.discretix.com/blog/tag/oma-drm/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.discretix.com/blog</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Wed, 21 Sep 2011 08:22:40 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Hardware Assisted DRM</title>
		<link>http://www.discretix.com/blog/2010/11/hardware-assisted-drm/</link>
		<comments>http://www.discretix.com/blog/2010/11/hardware-assisted-drm/#comments</comments>
		<pubDate>Tue, 16 Nov 2010 15:21:10 +0000</pubDate>
		<dc:creator>CobyS</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[android drm]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[DRM]]></category>
		<category><![CDATA[embedded security]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[mobile embedded security]]></category>
		<category><![CDATA[OMA DRM]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[smartphones]]></category>

		<guid isPermaLink="false">http://www.discretix.com/blog/?p=242</guid>
		<description><![CDATA[Hardware and software working in tandem create effective content protection for connected devices]]></description>
			<content:encoded><![CDATA[<p><em><strong>Hardware and software working in tandem to create effective content protection for connected devices</strong></em><br />
<img src="http://www.discretix.com/blog/wp-content/uploads/2010/11/EstacadaTandemTT.gif" alt="Tandem Racer" title="Tandem Racer" width="360" height="240" class="alignright size-full wp-image-247" /><br />
There was never any doubt about a mobile device’s ability to display video, however the large screens and powerful processors of the new generation mobile devices (smartphones and tablets) offer the consumer a more compelling viewing experience than ever. Moreover, home entertainment devices (TVs, set-top boxes (STB) and DVRs) are increasingly connected to the Internet, opening up a host of new viewing options for TV viewers, outside of the cable operator’s walled garden. </p>
<p>These trends are disrupting the traditional relationships existing between subscribers and service providers. This so-called disintermediation is being felt in the market, with cable operators offering video services to mobile subscribers and mobile operators offering video-on-demand to TV subscribers. Content owners and studios are also modifying their approach by offering services directly to consumers, circumventing the incumbent service providers. </p>
<p>These changes in the market have created new content service providers who must now “prove” their ability to securely deploy premium content in order to gain the approval of the major studios. Content protection – or Digital Rights Management (DRM) as it is more commonly known – is most effective when deployed in conjunction with hardware-based security elements. Principally, the objective of the hardware assets is to hinder scalable attacks, i.e., attacks that allow distribution in the form of exploit code, allowing the service provider to achieve a level of security similar to STBs. </p>
<p>In particular, the hardware-based embedded security is used to protect key elements in the DRM, as follows:</p>
<p><em><strong>Permanent key material and other permanent sensitive data, including group private keys, device keys, security management keys, metering data</strong></em><br />
This type of data can be classified as long-term, sensitive data that must be stored permanently in the device. The solution takes the form of an encrypted, integrity-protected secure storage facility. A hardware-based secure storage mechanism is based on an embedded root key that is unique per each device. In order to obtain the Root Key and access the sensitive data, the attacker must physically probe the main processor chip which often results in its destruction. In addition, any information obtained by the attacker is relevant only for that specific device. Physical probing must be repeated to access the sensitive data of another device. This endeavor is both expensive and impractical, and certainly not scalable.</p>
<p><strong><em>Title related and short term keys (content keys, session keys)</em></strong><br />
Mobile devices are open systems that run applications from many sources, some of them untrustworthy. The main processor in a mobile device must be deemed part of the threat model since it may be executing malicious code – malware – and attempting to access the content and session keys during run time. This threat is mitigated by running the security critical code that handles these keys in a secure execution environment – a secure subsystem that is inaccessible to the main processor. This hardware-based subsystem cannot be compromised by software-based attacks. </p>
<p><strong><em>Compressed content (plaintext content before decoding)</em></strong><br />
Compressed content is output by the DRM client that runs in a secure execution environment and is sent to a codec for decoding and rendering on the output display and audio devices. As noted above, the main processor is deemed part of the threat model, so the compressed content cannot simply be copied from the secure execution environment to the main memory to the codec. In order to secure this interface, the DRM client must be tightly integrated with the codec. The hardware-based solution is to send the compressed content in an encrypted form to the codec. The codec decrypts and then decodes the content.</p>
<p>Thus the combination of hardware-based security working in tandem with a software client creates a robust and effective content protection solution.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.discretix.com/blog/2010/11/hardware-assisted-drm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>OMA DRM as the 1st Choice for Carriers and Service Providers Deploying E-book Services</title>
		<link>http://www.discretix.com/blog/2010/03/oma-drm-as-the-1st-choice-for-carriers-and-service-providers-deploying-e-book-services/</link>
		<comments>http://www.discretix.com/blog/2010/03/oma-drm-as-the-1st-choice-for-carriers-and-service-providers-deploying-e-book-services/#comments</comments>
		<pubDate>Thu, 04 Mar 2010 15:05:54 +0000</pubDate>
		<dc:creator>OfirZ</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[android drm]]></category>
		<category><![CDATA[Android Security]]></category>
		<category><![CDATA[DRM]]></category>
		<category><![CDATA[eBook]]></category>
		<category><![CDATA[OMA DRM]]></category>

		<guid isPermaLink="false">http://www.discretix.com/blog/?p=114</guid>
		<description><![CDATA[E-book market is experiencing significant growth. Approximately four million electronic-book reading devices were sold last year. According to U.S.-based market intelligence firm iSuppli, number is expected to jump to 12 million in 2010 and 18 million in 2012 . Increasingly E-book readers are  equipped with a broadband mobile connectivity. For example Hanwang Science released a 3G e-reader capable [...]]]></description>
			<content:encoded><![CDATA[<p>E-book market is experiencing significant growth. Approximately four million electronic-book reading devices were sold last year. According to U.S.-based market intelligence firm iSuppli, number is expected to jump to 12 million in 2010 and 18 million in 2012 . Increasingly E-book readers are  equipped with a broadband mobile connectivity. For example Hanwang Science released a 3G e-reader capable of connecting with China Mobile Ltd.&#8217;s network, a feature that enables users to access the Internet and to download books. Other examples of e-book readers that include a cellular connection can be seen here</p>
<p><a href="http://gizmodo.com/5365676/irex-dr800sg-ebook-reader-verizon-3g-bn-books-stylus-touchscreen">http://gizmodo.com/5365676/irex-dr800sg-ebook-reader-verizon-3g-bn-books-stylus-touchscreen  </a><br />
<a href="http://www.engadget.com/2009/10/29/asus-to-launch-3g-wimax-equipped-e-book-readers-by-march-2010/">http://www.engadget.com/2009/10/29/asus-to-launch-3g-wimax-equipped-e-book-readers-by-march-2010/</a></p>
<p>OMA DRM is the most common content protection and access system in use today by mobile carriers. All forms of digital content including multimedia, ringtones, music, video and games are secured using the OMA DRM solution.</p>
<p>By expanding OMA DRM to protect E-book content mobile carriers can leverage their existing back end infrastructure and qualified workforce. Moreover as an open standard DRM scheme it enjoys the support of content owners and service provides alike. The scheme is robust and widely deployed, and supports all the required business models including:</p>
<ul>
<li>Subscription</li>
<li>Time limited rental</li>
<li>Buy to own without sharing (forward lock)</li>
<li>Sharing with other users (super distribution)</li>
<li>Preview</li>
<li>Right to read on multiple devices (domains)</li>
<li>Usage metering and advertising funded models</li>
<li>Backup and recovery</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.discretix.com/blog/2010/03/oma-drm-as-the-1st-choice-for-carriers-and-service-providers-deploying-e-book-services/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

