"We have valuable digital content we want to deliver to the right subscribers. How can we manage distribution so that the handset is authorized and the channel secure?" Challenge The increasing value of digital media and content requires a secure DRM chain of trust to administer the use of licensed content. When a consumer orders digital content via a mobile handset, the content is delivered along with an attached rights object containing policy information describing the authorized use of that content. This policy is read and enforced by a DRM application on the handset. For the DRM business model to succeed, mobile operators and content providers require assurance that the handset is operating in a ‘known-good’ state and that communications between the mobile operator and handset are secured. Solution With a secure boot process to assure platform integrity, developers can build a secure DRM application using the Certicom® Security Architecture™. Using symmetric keys like AES or public key algorithms like RSA or ECC, Certicom Security Architecture for Mobility can secure the rights object against tampering and secure content from illicit decryption. The protocol toolkits can also be used to secure communication channels to external parties, assuring the privacy and integrity of the information exchange. Using the same components, developers can also supply their DRM application on the handset with the underlying cryptography services it requires to decrypt and check the integrity of incoming digital rights objects and their corresponding content. Finally,Security Builder® BSP provides a link to hardware cryptographic providers to enable transparent acceleration of compute-intensive operations, which ensures the fast performance required to play large audio and video files. Value Using the Certicom Security Architecture provides a comprehensive solution to secure the entire DRM chain.
|