Digital Rights Management An Introductionipr/mmsec2008/data... · Needs for DRM Systems Prevalence...

37
Digital Rights Management Digital Rights Management An Introduction An Introduction

Transcript of Digital Rights Management An Introductionipr/mmsec2008/data... · Needs for DRM Systems Prevalence...

  • Digital Rights Management Digital Rights Management –– An IntroductionAn Introduction

  • OutlineOutline

    What is digital rights management?What is digital rights management?Major players in DRM marketsMajor players in DRM marketsDRM StandardsDRM Standards–– MPEGMPEG--21IPMP21IPMP–– MPEGMPEG

    DRM LawsDRM Laws

  • A Interesting Description A Interesting Description of DRMof DRM

    ……a subject that has been lurking in the underbrush of a subject that has been lurking in the underbrush of the digital information world for many years and is the digital information world for many years and is finally coming to the front. finally coming to the front. Right management is, in Right management is, in some ways, the ugly beast that content some ways, the ugly beast that content providersproviders –– publishers, broadcasters, market publishers, broadcasters, market researchers, consultancies, major corporations, and researchers, consultancies, major corporations, and others others –– have wanted to keep in the closethave wanted to keep in the closet. The . The Internet has forced the closet door open; really, it has Internet has forced the closet door open; really, it has eliminated the door itself. What used to be relatively eliminated the door itself. What used to be relatively simple is now uncomfortably complex. What used to simple is now uncomfortably complex. What used to be a source of moderate business overhead is now a be a source of moderate business overhead is now a significant undertaking. What used to be the province significant undertaking. What used to be the province of lawyers, agents, and administrators is now also of lawyers, agents, and administrators is now also the domain of technologiesthe domain of technologies……

    Is DRM a ugly beast to content providers?

    Adopted from the book “Digital Rights Management, Business and Technology”

  • Rights to ContentsRights to Contents

    Printed Books Digital Content

    Implicit rights for traditional content (printed books) and digital content

  • Needs for DRM SystemsNeeds for DRM Systems

    Prevalence of new types of commercePrevalence of new types of commerce–– EE--commercecommerce has become a huge business and a driving factor in the has become a huge business and a driving factor in the

    development of the Internet.development of the Internet.–– With the advent of evolved 2G and 3G mobile network, mobile eWith the advent of evolved 2G and 3G mobile network, mobile e--

    commerce (commerce (mm--commercecommerce) will be more and more significant.) will be more and more significant.Importance of digital contentsImportance of digital contents–– Online delivery of digital mediaOnline delivery of digital media, such as MP3 audio or video, is , such as MP3 audio or video, is

    becoming an increasing important part in ebecoming an increasing important part in e--commerce and mcommerce and m--commerce.commerce.

    –– Unlimited consecutive copying in the digital domainUnlimited consecutive copying in the digital domain is the major is the major obstacle for digital media distribution and associated business.obstacle for digital media distribution and associated business.

    Digital rights management systems are required to Digital rights management systems are required to protect protect both rights and businessboth rights and business

    The term Digital Rights Management (DRM) was coined by some combThe term Digital Rights Management (DRM) was coined by some combination of ination of vendors, their marketers, and industry analysts in the late 1990vendors, their marketers, and industry analysts in the late 1990ss

  • Definitions of Digital Definitions of Digital Rights Management Rights Management

    DRM is the chain of hardware and software services and technologDRM is the chain of hardware and software services and technologies ies governing the authorized use of digital content and managing anygoverning the authorized use of digital content and managing anyconsequences of that use throughout the entire life cycle of theconsequences of that use throughout the entire life cycle of the contentcontent

    Creator Publisher Aggregator Distributor Retailer Consumer

    A DRM system enables the secure exchange of intellectual property, such as copyright-protected music, video, or text, in digital form over the Internet or other electronic media, such as CDs, removable disks, or mobile networks

    DRMDRM

  • DRM Systems Principles DRM Systems Principles

    A DRM system enables the A DRM system enables the secure exchange of secure exchange of intellectual propertyintellectual property, such as copyright, such as copyright--protected protected music, video, or text, in digital form over the music, video, or text, in digital form over the Internet or other electronic media, such as CDs, Internet or other electronic media, such as CDs, removable disks, or mobile networksremovable disks, or mobile networksDRM allows DRM allows content ownerscontent owners to to distribute securely distribute securely to authorized recipientsto authorized recipients and gives them and gives them control control over the whole distribution chainover the whole distribution chain

  • DRM Systems: DRM Systems: The Technical View (1/2)The Technical View (1/2)

    DRM systems shall provideDRM systems shall provide–– EncryptionEncryption of the content or parts in order to disallow uncontrolled of the content or parts in order to disallow uncontrolled

    accessaccessPartial or full encryptionPartial or full encryptionRealReal--time or offtime or off--line encryptionline encryption

    –– Decryption key managementDecryption key management–– Access controlAccess control (conditional access) according to flexible usage rules(conditional access) according to flexible usage rules

    Usage rules can be adapted to the business modelUsage rules can be adapted to the business modelExamples:Examples:

    –– Restricting access to certain users, a limited time, or a limiteRestricting access to certain users, a limited time, or a limited d number of accessesnumber of accesses

    –– Trading access right for customer information or Trading access right for customer information or advertisement exchangeadvertisement exchange

    –– Initial access to digital data may be free, while subsequent Initial access to digital data may be free, while subsequent access must be paid foraccess must be paid for

  • DRM Systems: DRM Systems: The Technical View (2/2)The Technical View (2/2)

    –– Interface to billingInterface to billing systems or mechanismssystems or mechanismsDRM system must be able to trigger monetary transactionsDRM system must be able to trigger monetary transactions

    –– Copy controlCopy control or or copy preventioncopy preventionThe DRM system can enforce copy restrictions, such as The DRM system can enforce copy restrictions, such as no/one/several/unlimited copies of the multimedia data are allowno/one/several/unlimited copies of the multimedia data are allowed, ed, and with/without rights to produce copies of these copiesand with/without rights to produce copies of these copiesWatermarkingWatermarking is suitable for some usage rules.is suitable for some usage rules.

    –– Identification and tracing of multimedia dataIdentification and tracing of multimedia dataCopies produced from the analog outputCopies produced from the analog output cannot be prohibitedcannot be prohibitedIndividual watermarking (Individual watermarking (fingerprintingfingerprinting) of the distributed data shall ) of the distributed data shall be part of the DRM system be part of the DRM system

    –– TemperTemper--proofing of digital contentsproofing of digital contents

  • Building Blocks of DRMBuilding Blocks of DRM

    The diagram illustrates both technical and nonThe diagram illustrates both technical and non--technical building blocks of DRMtechnical building blocks of DRM

    Digital Rights Management (DRM)Access Control

    Integrity Checking

    Credential Authentication

    Copy Control

    Transaction Tracking

    Rule Specification

    Non-TeAs

    chnical pects

    Cryptography

    •Hashes and protocols•Block cipher•Public-key encryption/decryption

    Watermarking

    •Media specific techniques•Fingerprinting

    Rights Language

    •REL

    •XrML

    Business M

    odel

    Legislative Acts

    Basic Technological Researches Social Sciences

    Public Interests

    Digital Management of Rights Management of Digital Rights

  • Digital Rights Management Digital Rights Management

    Like any cryptographic system, a DRM Like any cryptographic system, a DRM system is as strong as its weakest componentsystem is as strong as its weakest component

    Digital Rights Management

    Encryption•DES•AES•RSA

    Conditional Access•XrML•ORDL•REL

    CopyControl

    •Watermark

    Identificationand

    Tracing•Fingerprint

    The DRM pillar model

  • ….………..………..

    Why do Corporations Why do Corporations Implement DRM?Implement DRM?

    Confiden

    tial !

    To protect the monetary value of digital content by• protecting digital contents from unauthorized use• enforcing payment terms and conditions

    associated with its authorized use

    DRM for Commerce

    • to protect information from unauthorized use• to govern the way information may be used on

    an authorized basis• to record when and how information is used

    DRM for Confidentiality (DRM for privacy)

  • New Business Model and New Business Model and Profit by DRMProfit by DRM

    DRM DRM is much about the is much about the opportunity inherently in new business modelsopportunity inherently in new business models as it as it is about in is about in preserving the business of old onespreserving the business of old ones

    Revenues other than content transactions are possible noware possible now–– E.g. E.g.

    Drug regulation documentsDrug regulation documentsBlueprints and specifications for construction industryBlueprints and specifications for construction industry

    Subscribing expensive scientific journal v.s. buy single article

    Monthly fee for downloading certain types of music v.s. CD albums

  • The DRM MarketThe DRM Market

    Although the Internet was built Although the Internet was built with an with an ““information wants to information wants to be freebe free”” environment in mind, environment in mind, DRM is becoming a more and DRM is becoming a more and more fundamental idea in the more fundamental idea in the evolution. Recent research by evolution. Recent research by IDC predicts that the market IDC predicts that the market for DRM technology and for DRM technology and services will be services will be $200 million$200 million in in 2001, and ultimately 2001, and ultimately $3.5 $3.5 billionbillion in 2005. in 2005.

  • DRM Evolution DRM Evolution

  • DRMDRM--related Legislative related Legislative ConcernsConcerns

    Digital Millennium Copyright Acts (DMCA) Digital Millennium Copyright Acts (DMCA) –– Signed into law by U. S. President Clinton on October 28, 1998, Signed into law by U. S. President Clinton on October 28, 1998, is one of the response to the is one of the response to the

    requirements in two World Intellectual Property Organizations (Wrequirements in two World Intellectual Property Organizations (WIPO) treaties. IPO) treaties. –– The The antianti--circumventioncircumvention provision provision is the most controversial part of DMCA since it prohibits is the most controversial part of DMCA since it prohibits

    making or selling devices or services that circumvent technologimaking or selling devices or services that circumvent technological measure used to protect cal measure used to protect copyrighted workscopyrighted works

    –– Exception to antiException to anti--circumvention provision:circumvention provision:

    Government activities Decision making of educational institutes

    Reverse-engineering for program interoperability

    Encryptionresearches

    User privacy protection

    System security testing

    Protection for accessing Internet by minors

  • OutlineOutline

    What is digital rights management?What is digital rights management?–– MotivationsMotivations–– CorporationsCorporations’’ viewview–– Technological view Technological view

    Major players in DRM marketsMajor players in DRM markets–– DRM SystemsDRM Systems

    interTrustinterTrustMicrosoftMicrosoftRealNetworkRealNetwork

    –– AggregatorsAggregators–– Rights LanguageRights Language

    An introduction to MPEGAn introduction to MPEG--21 Part 4: IPMP 21 Part 4: IPMP

  • interTrust: Rights/SysteminterTrust: Rights/System

    •Standard format (like MPEG-4, PDF…)

    •Proprietary format (for AAC, MP3)

    •Metadata•Usage rules

    DRM systems not involved in commerce

    •Both HW/SW are supported

  • interTrust: Rights/System interTrust: Rights/System

    System componentsSystem components–– PackagersPackagers–– ServersServers–– ClientsClients–– ToolkitsToolkits

    CharacteristicsCharacteristics–– SDK for third party applications, such as music playersSDK for third party applications, such as music players–– Supporting both InternetSupporting both Internet--enabled or tethered devicesenabled or tethered devices

    ChallengesChallenges–– To recruit more content owners to distribute content over itTo recruit more content owners to distribute content over it

  • interTrustinterTrust NowNow

    InterTrustInterTrust restructured its operations and changed its strategy restructured its operations and changed its strategy and business modeland business model–– Software development was ceasedSoftware development was ceased–– Focus on licensing intellectual propertiesFocus on licensing intellectual properties

    On May 23, 2002, On May 23, 2002, interTrustinterTrust announce a global intellectual announce a global intellectual property licensing agreement with Sony that allow Sony to use property licensing agreement with Sony that allow Sony to use all of all of interTrustinterTrust’’ss patents for 28.5 million dollars (Sony is the patents for 28.5 million dollars (Sony is the 22ndnd large consumer electronics vendor)large consumer electronics vendor)AnalysisAnalysis–– interTrustinterTrust’’ss cash flow can be positive for the first time cash flow can be positive for the first time

    –– Sony is serious about DRMSony is serious about DRM

  • IBM: Electronic Multimedia IBM: Electronic Multimedia Management SystemManagement System

    The IBM EMMS Content Preparation Software Development Kit (SDK) The IBM EMMS Content Preparation Software Development Kit (SDK) –– integrates DRM capabilities into vertical or custom applicationsintegrates DRM capabilities into vertical or custom applications

    The IBM EMMS Content Mastering ProgramThe IBM EMMS Content Mastering Program–– a turnkey contenta turnkey content--preparation DRM application for music content and its preparation DRM application for music content and its

    associated promotional materialassociated promotional materialThe IBM EMMS Content Hosting ProgramThe IBM EMMS Content Hosting Program–– a storage facility for EMMS formatted contenta storage facility for EMMS formatted content

    The IBM EMMS Web Commerce EnablerThe IBM EMMS Web Commerce Enabler–– deploy EMMS DRM content into custom retail offerings or enterprideploy EMMS DRM content into custom retail offerings or enterprise se

    portals, facilitating endportals, facilitating end--user download or streaming of desired contentuser download or streaming of desired contentThe IBM EMMS Clearinghouse Program The IBM EMMS Clearinghouse Program –– provides DRM functions and acts as a central control point for provides DRM functions and acts as a central control point for

    managing, authorizing and reporting transactionsmanaging, authorizing and reporting transactions

  • Microsoft: Windows Microsoft: Windows Media DRM 9 SeriesMedia DRM 9 Series

    MicrosoftMicrosoft’’s Definitions of DRM s Definitions of DRM –– A set of technologies content owners can use to A set of technologies content owners can use to

    protect their copyrightsprotect their copyrights and and stay in closer contactstay in closer contactwith customerswith customers

    –– A technology that enables the A technology that enables the secure distributionsecure distribution, , promotionpromotion, and , and salesale of digital media content on the of digital media content on the Internet.Internet.

  • History of Microsoft DRMHistory of Microsoft DRM

    The first version of Windows Media DRM was The first version of Windows Media DRM was released in released in August 1999August 1999. . In In 20022002, Microsoft released Windows Media DMR , Microsoft released Windows Media DMR version 7, offering greater flexibility and better security version 7, offering greater flexibility and better security to its users. to its users. –– The The FreemeFreeme software can breach the DRM protectionsoftware can breach the DRM protection

    The latest release, Windows Media DRM 9 Series, The latest release, Windows Media DRM 9 Series, launched in launched in January 2003January 2003, supports real, supports real--time time encryption (also known as "Live DRM") and enables encryption (also known as "Live DRM") and enables content to be delivered simultaneously to consumers content to be delivered simultaneously to consumers as it happensas it happens

  • WMRM ArchitecturesWMRM Architectures

  • License and KeysLicense and Keys

  • Microsoft AdvertisementMicrosoft Advertisement

    MicrosoftMicrosoft®® Windows MediaWindows Media®® Digital Rights Digital Rights Management (DRM) 9 Series builds upon a Management (DRM) 9 Series builds upon a proven and secure endproven and secure end--toto--end DRM system end DRM system that offers content providers and retailers a that offers content providers and retailers a flexible platform for the secure distribution of flexible platform for the secure distribution of digital media files while providing users ease of digital media files while providing users ease of use and a greater opportunity to consume use and a greater opportunity to consume premium contentpremium content

  • Major ComponentsMajor Components

    Microsoft Windows Data Session ToolkitMicrosoft Windows Data Session ToolkitMicrosoft Windows Media Rights Manager 9 Microsoft Windows Media Rights Manager 9 Series Series –– Live DRMLive DRM–– Required SDKRequired SDK

    Windows Media Rights Manager 9 SeriesWindows Media Rights Manager 9 Series–– Approval of license is required Approval of license is required

    Windows Media Encoder 9 SeriesWindows Media Encoder 9 SeriesWindows Media Format 9 Series Windows Media Format 9 Series

  • Windows Media Digital Windows Media Digital Rights Management SDKsRights Management SDKs

    MicrosoftMicrosoft®® Windows MediaWindows Media®® Digital Rights Management Digital Rights Management (DRM) consists of the following products: (DRM) consists of the following products: –– Windows Media Rights Manager Software Development KitWindows Media Rights Manager Software Development Kit (SDK) (SDK)

    enables content owners to package content and license clearing enables content owners to package content and license clearing houses to issue licenses.houses to issue licenses.

    –– Windows Media Format SDKWindows Media Format SDK enables independent software vendors enables independent software vendors (ISVs) to develop player applications. In addition, a key to Win(ISVs) to develop player applications. In addition, a key to Windows dows Media DRM Runtime is needed to decrypt content protected using Media DRM Runtime is needed to decrypt content protected using Windows Media Digital Rights Management.Windows Media Digital Rights Management.

    –– Windows Media Portable Device DRM v1Windows Media Portable Device DRM v1 enables portable device enables portable device manufacturers to develop devices that decrypt content protected manufacturers to develop devices that decrypt content protected using using Windows Media DRM.Windows Media DRM.

  • MicrosoftMicrosoft®® Windows MediaWindows Media®®Data Session ToolkitData Session Toolkit

    An easy and secure way to deliver protected digital media contenAn easy and secure way to deliver protected digital media content to a t to a computer via physical medium (such as CD or DVD)computer via physical medium (such as CD or DVD)

  • MicrosoftMicrosoft®® Windows MediaWindows Media®®Data Session Toolkit (cont.)Data Session Toolkit (cont.)

    Flexible business modelFlexible business model–– New business modelNew business model–– Different format on the same diskDifferent format on the same disk–– Secure super distributionSecure super distribution

    Low impact, low cost implementationLow impact, low cost implementation–– Broad reach (450 million installed computers)Broad reach (450 million installed computers)–– Online and offline license acquisition Online and offline license acquisition

    Strong and persistent security Strong and persistent security

  • Microsoft Windows Media Rights Microsoft Windows Media Rights Manager 9 Series Manager 9 Series –– Live DRMLive DRM

    Live DRMLive DRM–– For onFor on--demand or live content, encryption can occur in demand or live content, encryption can occur in

    realreal--timetime–– Simultaneous encoding and encryptionSimultaneous encoding and encryption

    Broad ReachBroad Reach–– The number of installed compatible media player is largeThe number of installed compatible media player is large

    Secure Distribution of Digital MediaSecure Distribution of Digital Media–– System components can be renewed System components can be renewed

  • System Requirements for System Requirements for WMRMWMRM

    Microsoft WindowsMicrosoft Windows®® 2000 Server operating 2000 Server operating system system 133133--megahertz Pentium or higher central megahertz Pentium or higher central processing unit (CPU) processing unit (CPU) 256 megabytes (MB) of RAM 256 megabytes (MB) of RAM 4 MB of free hard disk space4 MB of free hard disk space

  • Content Providers and Content Providers and PartnersPartners

    WMRM– BMG Entertaiment– Cinemanow– EMI Recorded Music– Full Audio– Ifilm– Lionsgate Films Entertainment– Movielink– NHL.com– Pressplay Music Service– Sony Music Entertainment– Universal Music Group– Warner Music Group

    LiveDRMIn US

    CinemaNowEmpireDRMiStreamPlanetSyncCast

    In EuropeDMD SecureServecastStreamwide

    In AsiaAboutmedia TechnologyJ-StreamKeelNTT-ComVirtueBroadcasting

  • RealNetworksRealNetworks: Helix DRM: Helix DRM

    The first multiThe first multi--format digital rights format digital rights management platform for secure delivery of management platform for secure delivery of media to any devicesmedia to any devicesUnsurpassed securityUnsurpassed securitySupported formats Supported formats –– RealAudio, RealVideo, MP3, RealAudio, RealVideo, MP3,

    MPEGMPEG--4, H.263, AAC, NB4, H.263, AAC, NB--AMRAMRSupported platformsSupported platforms–– Win32, Sun Solaris, Linux, HPWin32, Sun Solaris, Linux, HP--UX, UX,

    AIX AIX

  • A widely distributed digital music service for streaming, A widely distributed digital music service for streaming, downloading, and burning music onlinedownloading, and burning music onlineA joint venture between A joint venture between RealNetworksRealNetworks, AOL Time , AOL Time Warner, Bertelsmann, AG, EMI Recorded Music, Warner, Bertelsmann, AG, EMI Recorded Music, ZombaZombaDistribution partnersDistribution partners–– AOL Time WarnerAOL Time Warner–– RealNetworkRealNetwork

  • 2003/5/15, China Times 2003/5/15, China Times

    蘋果電腦推低價下載軟體 五大唱片公司樂於結盟黃秀慧/綜合報導

    全球唱片產業拉警報,不少人怪罪盜版和網路檔案交換軟體風行,不過日前蘋果電腦史無前例成功整合五大國際唱片公司,推出低價音樂下載軟體iTune,消費者只要花0.99美元,就可以合法下載一首歌曲,果然這項音樂下載服務才推出,就寫下單周賣出一百萬首歌曲的驚人成績,連MP3播放機的新訂單都超過11萬台。

    蘋果推出的iTune是第一個獲得唱片業認可的網路音樂商店,這項下載服務之所以能讓向來各自為政的唱片公司攜手,是因為過去五大唱片公司雖然都推出音樂下載網站,不過限制較多,包括下載、燒錄都要另外付錢,而iTune改進這些缺點,不但整合五大國際唱片公司共同結盟,還制定統一的歌曲下載費用,不論天王巨星或是網路新秀的歌,統統平價下載,才會在推出首周就創下百萬首下載數字,如果這個榮景持續,一年的下載曲數就有5200萬首,比目前其他付費線上音樂服務網站1年下載總和3 500萬首要多得多。

  • The iTune Music StoreThe iTune Music Store

    http://www.apple.com/music/http://www.apple.com/music/

    Digital Rights Management �– An Introduction OutlineA Interesting Description of DRMRights to ContentsNeeds for DRM SystemsDefinitions of Digital Rights Management DRM Systems Principles DRM Systems: �The Technical View (1/2)DRM Systems: �The Technical View (2/2)Building Blocks of DRMDigital Rights Management Why do Corporations Implement DRM?New Business Model and Profit by DRMThe DRM MarketDRM Evolution DRM-related Legislative ConcernsOutlineinterTrust: Rights/SysteminterTrust: Rights/System interTrust NowIBM: Electronic Multimedia Management SystemMicrosoft: Windows �Media DRM 9 SeriesHistory of Microsoft DRMWMRM ArchitecturesLicense and KeysMicrosoft AdvertisementMajor ComponentsWindows Media Digital Rights Management SDKsMicrosoft® Windows Media® Data Session ToolkitMicrosoft® Windows Media® Data Session Toolkit (cont.)Microsoft Windows Media Rights Manager 9 Series – Live DRMSystem Requirements for WMRMContent Providers and PartnersRealNetworks: Helix DRM2003/5/15, China Times The iTune Music Store