Abstract
Due to the rapid development of computer science, data compression, and optical storage technique, digital multimedia stored on CD or DVD has become more and more popular. However, an unrestricted user can arbitrarily copy the unprotected digital data on the media. That will cause great damage to intellectual property rights.Because of various paths of copying data, a content protection system must be a comprehensive system in order to prevent all kinds of them. It is obvious that any weakness of this system may let it become feeble and die; in other words, the system should pay equal attention to every path of copy. However, in practice, to design a complete and perfect protection expends the large cost so that the system in chief focuses on avoiding byte-to-byte copy, which is so popular a duplication since the commercial CD burner is much widespread. That is the target what we try to achieve.In this thesis, we propose a one-way hierarchical block-based key management and transmission system. By using block-based method, our proposed key management can achieve an important function that many sets of device keys can retrieve a shared media key, but there is only one device key used in traditional systems. The main idea of this achievement is via two blocks, a direct Media Keys Block (MKB) and an indirect MKB. By using this achievement, License Authority (LA) can distribute different set of keys to different compliant participant. The function of one-way hierarchical architecture is to generate a hindrance so that the higher layer of key management is invisible to the lower layers. In other words, the architecture is irreversible. It provides a good property – the higher layer the higher security. Our proposed key transmission method can be taken as an extension of our key management. It accomplished a complete authentication and a secret key exchange by using key management. Other advantages of our key transmission method are that the system does not need additional installations, and that the procedure of it does not need additional encryption process.