20070226076 | Sale system of optical characteristic image data | September, 2007 | Fukuma et al. |
20060111922 | Home planner system | May, 2006 | Phillips et al. |
20090083195 | FEATURE-BASED SIMILARITY MEASURE FOR MARKET INSTRUMENTS | March, 2009 | Aymeloglu et al. |
20060122861 | Corporate introduction system and method | June, 2006 | Scott et al. |
20030120586 | Systems and methods to facilitate analysis of commercial credit customers | June, 2003 | Litty |
20020046088 | Thank-you gift order/dispatch system | April, 2002 | Oba |
20020065677 | Computer implemented method of managing information disclosure statements | May, 2002 | Grainger et al. |
20080270193 | Transfer of risk of repair costs with renewal rights | October, 2008 | Beikmann |
20010027430 | Method of financial investment in stocks and shares or other financial entities | October, 2001 | Sabourian |
20060229909 | Lifecharts medical information system | October, 2006 | Kaila et al. |
20020082984 | Automated method for loan settlement | June, 2002 | Zappier |
[0001] The present invention is a continuation-in-part of Ser. No. 08/925,547 filed Sept. 8, 1997, which is a continuation of Ser. No. 08/375,995, filed Jan. 20, 1995, now U.S. Pat. No. 5,666,412.
[0002] The present invention relates to secure access systems generally and more particularly to secure access systems which employ integrated circuit cards, especially to secure access systems for electronic books.
[0003] Access systems generally provide access to restricted means, such as communication systems and data, or to restricted areas such as buildings and departments. There are known in the art access systems which employ integrated circuit (IC) cards, or as more commonly referred to “smart cards”, to provide secure access to restricted means or areas.
[0004] Smart cards are employed in systems such as pay TV systems and telephone systems. Such systems generally employ one card per unit which is to be accessed, whereby access is enabled whenever a valid smart card is inserted in a card slot.
[0005] U.S. Pat. No. 4,709,136 to Watanabe describes an IC card reader/writer apparatus which includes at least two contactors in which IC cards are inserted, respectively, card detecting means for detecting that at least two IC cards have been loaded, and collating means verifying that correct cipher codes of the two IC cards coincide with those inputted externally, respectively, wherein access to the contents stored in the IC cards is allowed only when the collation results in coincidence.
[0006] U.S. Pat. 4,594,663 to Nagata et al describes a credit transaction processing system which processes data related to a commodity entered into by using a card owned by a customer and a recording card owned by a store.
[0007] U.S. Pat. No. 5,010,571 to Katznelson describes a system for controlling and accounting for retrieval of data from a CD-ROM memory containing encrypted data files from which retrieval must be authorized.
[0008] Various aspects of electronic book technology, representing an attempt to instantiate various qualities of paper-based books in an electronic device, are known in the art. Related technologies include technologies for storing, retrieving, and updating book-like documents in electronic form. The following references described some aspects of electronic book and related technology:
[0009] U.S. Pat. No. 4,159,417 to Rubincam;
[0010] U.S. Pat. No. 4,160,242 to Fowler et al;
[0011] U.S. Pat. No. 4,290,062 to Marti et al;
[0012] U.S. Pat. No. 4,350,070 to Bahu;
[0013] U.S. Pat. No. 4,589,659 to Yokoi et al;
[0014] U.S. Pat. No. 4,639,225 to Washizuka;
[0015] U.S. Pat. No. 4,680,459 to Drexler;
[0016] U.S. Pat. No. 4,740,912 to Whitaker;
[0017] U.S. Pat. No. 4,855,725 to Fernandez;
[0018] U.S. Pat. No. 4,917,292 to Drexler;
[0019] U.S. Pat. No. 4,937,821 to Boulton;
[0020] U.S. Pat. No. 4,985,697 to Boulton;
[0021] U.S. Pat. No. 5,113,178 to Yasuda et al;
[0022] U.S. Pat. No. 5,167,508 to McTaggart;
[0023] U.S. Pat. No. 5,239,665 to Tsuchiya;
[0024] U.S. Pat. No. 5,285,496 to Frank et al;
[0025] U.S. Pat. No. 5,339,091 to Yamazaki et al;
[0026] U.S. Pat. No. 5,371,493 to Sharpe et al;
[0027] U.S. Pat. No. 5,413,486 to Burrows et al;
[0028] U.S. Pat. No. 5,438,344 to Oliva;
[0029] U.S. Pat. No. 5,466,158 to Smith III;
[0030] U.S. Pat. No. 5,469,506 to Berson et al;
[0031] U.S. Pat. No. 5,484,292 to McTaggart;
[0032] U.S. Pat. No. 5,533,124 to Smith et al;
[0033] U.S. Pat. No. 5,534,888 to Lebby et al;
[0034] U.S. Pat. No. 5,555,446 to Jasinski;
[0035] U.S. Pat. No. 5,625,404 to Grady et al;
[0036] U.S. Pat. No. 5,630,103 to Smith et al;
[0037] U.S. Pat. No. 5,661,635 to Huffman et al;
[0038] U.S. Pat. No. 5,663,748 to Huffman et al;
[0039] U.S. Pat. No. 5,689,648 to Diaz et al;
[0040] U.S. Pat. No. 5,697,793 to Huffman et al; and
[0041] European Patent Application 0 683 613 A2, assigned to AT&T Corp.
[0042] The disclosures of all references mentioned above and throughout the present specification are hereby incorporated herein by reference.
[0043] The present invention seeks to provide access systems having improved security and flexible applications.
[0044] The term “access systems” is used throughout the specification and claims in a broad sense to include systems which allow controlled access to communication apparatus, software programs, restricted areas, such as buildings, terrain and departments in a plant, television and cable television transmissions, video programs, audio programs, computer data and electronic mail and voice information.
[0045] The present invention particularly seeks to provide access systems for use with an electronic book system, in which information is typically loaded into an information storage medium such as a smart card, typically for viewing in a viewing device. Typically, loading of information into the information storage medium is performed in a first device, while the viewing device typically comprises a separate device, typically a device not capable of loading information into the information storage medium or not connected to an appropriate external source of information.
[0046] It is appreciated that functions described throughout the present specification and claims as being performed separately in a first device and a viewing device may alternatively be performed in a single device combining the capabilities of the first device and the viewing device.
[0047] The term “smart card” is used herein interchangeably with the term “IC card”, and is meant to include any device of whatever external form, whether the form of a card or another form such as a key, having internal structure and characteristics similar to those of an IC card.
[0048] The term “CATV systems” is used throughout the specification and claims in a broad sense to include any form of pay TV systems which are either one-way systems or two-way systems utilizing cable communication networks, satellite communication networks, telephone communication networks or any combination thereof.
[0049] There is thus provided in accordance with a preferred embodiment of the present invention a method for downloading a document via a communications medium operatively associated with a communications interface, the method including receiving the document from the communications medium, placing an information storage smart card in removable operative association with the communications interface, and conditionally transmitting the document from the communications interface to the information storage smart card and storing the document in the information storage smart card.
[0050] Further in accordance with a preferred embodiment of the present invention the conditionally transmitting step includes comparing a price associated with the document to a spending limit and transmitting the document only if the price is in accordance with the spending limit.
[0051] Still further in accordance with a preferred embodiment of the present invention the document includes at least one of the following: text, graphics, sound, an animated scene, multimedia information, hypertext information, navigation information, a map, a book, a periodical, and a game.
[0052] Additionally in accordance with a preferred embodiment of the present invention the method includes the step of sending a message from the information storage smart card to an information storage facility, wherein the message includes at least one of the following: a request for information, and status information.
[0053] Moreover in accordance with a preferred embodiment of the present invention the message is encrypted.
[0054] Further in accordance with a preferred embodiment of the present invention the message is signed.
[0055] Still further in accordance with a preferred embodiment of the present invention the method also includes placing an authorization smart card in removable operative association with the communications interface, and the conditionally transmitting step includes transmitting the document to the information storage smart card only if the authorization smart card is authorized to access the item of information.
[0056] Additionally in accordance with a preferred embodiment of the present invention the information storage smart card is paired with the communications interface.
[0057] Moreover in accordance with a preferred embodiment of the present invention the method also includes removing the information storage smart card from operative association with the communications interface, placing the information storage smart card in operative association with an information access device, and utilizing the document stored in the information storage smart card with the information access device.
[0058] Further in accordance with a preferred embodiment of the present invention the information access device includes at least one of the following a document display device, a personal computer, a personal communications device, a personal display device, a television, a radio, a sound system, and a guidance system.
[0059] Still further in accordance with a preferred embodiment of the present invention the utilizing step includes conditionally utilizing the document.
[0060] Additionally in accordance with a preferred embodiment of the present invention the utilizing step includes formatting the document.
[0061] Moreover in accordance with a preferred embodiment of the present invention the formatting step includes formatting based on formatting information stored in the information storage smart card.
[0062] Further in accordance with a preferred embodiment of the present invention the formatting information is included in the document.
[0063] Still further in accordance with a preferred embodiment of the present invention the formatting information includes decryption information.
[0064] Additionally in accordance with a preferred embodiment of the present invention the formatting step includes formatting based on formatting information stored in the information access device.
[0065] Moreover in accordance with a preferred embodiment of the present invention the method also includes updating the formatting information based on formatting update information stored in the information storage smart card.
[0066] Further in accordance with a preferred embodiment of the present invention the conditionally transmitting step includes transmitting the information to the information storage smart card only if the information storage smart card is authorized for use in the communications interface.
[0067] Still further in accordance with a preferred embodiment of the present invention the conditionally transmitting step includes transmitting the document to the information storage smart card only if the information storage smart card is authorized to receive the document.
[0068] Additionally in accordance with a preferred embodiment of the present invention the conditionally transmitting step includes transmitting the document to the information storage smart card upon external authorization.
[0069] Further in accordance with a preferred embodiment of the present invention the document is associated with a geographical region, and the conditionally transmitting step includes transmitting the document to the information storage smart card if the information storage smart card is associated with the geographical region.
[0070] Still further in accordance with a preferred embodiment of the present invention the document is associated with a geographical region, and the conditionally transmitting step includes preventing transmission of the document to the information storage smart card if the information storage smart card is associated with the geographical region.
[0071] Additionally in accordance with a preferred embodiment of the present invention the document includes authorization information including information indicating whether the information storage smart card is authorized to use the document.
[0072] Moreover in accordance with a preferred embodiment of the present invention the conditionally transmitting step includes transmitting the information to the information storage smart card only if the information storage smart card is authorized to use the document in accordance with the authorization information.
[0073] Further in accordance with a preferred embodiment of the present invention the storing includes updating previously stored information stored in the information storage smart card.
[0074] Still further in accordance with a preferred embodiment of the present invention the updating step includes at least one of the following: replacing the previously stored information, changing the previously stored information, deleting the previously stored information, and supplementing the previously stored information.
[0075] Additionally in accordance with a preferred embodiment of the present invention the formatting step includes at least one of the following: updating decryption information, and updating general formatting information.
[0076] Moreover in accordance with a preferred embodiment of the present invention the method also includes placing an auxiliary card in removable operative association with the information access device.
[0077] Further in accordance with a preferred embodiment of the present invention the auxiliary card includes an authorization card, and the utilizing step includes utilizing the document in the information storage smart card only if the authorization card is authorized to access the document.
[0078] Still further in accordance with a preferred embodiment of the present invention the document stored in the information storage smart card includes a plurality of stored documents, and the utilizing step includes utilizing at least one of the plurality of stored documents only if the authorization card is authorized to access the at least one of the plurality of stored documents.
[0079] Additionally in accordance with a preferred embodiment of the present invention the authorization card includes an authorization smart card.
[0080] Moreover in accordance with a preferred embodiment of the present invention the plurality of stored documents includes a plurality of versions of a single document.
[0081] Further in accordance with a preferred embodiment of the present invention each one of the plurality of versions is encrypted according to at least one encryption parameter which differs for each one of the plurality of versions.
[0082] Still further in accordance with a preferred embodiment of the present invention the auxiliary card includes an authorization card, and the utilizing step includes utilizing the document stored in the information storage smart card only if the authorization card is authorized to access the document.
[0083] Additionally in accordance with a preferred embodiment of the present invention the document includes parental control information, and the conditionally transmitting includes transmitting only in accordance with the parental control information.
[0084] Moreover in accordance with a preferred embodiment of the present invention the parental control information is associated with only a portion of the document, and the conditionally transmitting step includes transmitting the portion of the document only in accordance with the parental control information.
[0085] There is also provided in accordance with another preferred embodiment of the present invention a method for downloading a document via a communications medium attached to a communications interface, the method including receiving the document from the communications medium, placing an information storage smart card in removable operative association with the communications interface, placing an auxiliary card in removable operative association with the communications interface, transmitting the document from the communications interface to the information storage smart card and storing the information in the information storage smart card, and utilizing the document stored in the information storage smart card.
[0086] There is also provided in accordance with still another preferred embodiment of the present invention a method for downloading a document via a communications medium attached to a communications interface, the method including receiving, via a communications network, an authorization to receive the document via the communications medium, placing an information storage smart card in removable operative association with the communications interface, receiving the document from the communications medium, and conditionally transmitting the document, in accordance with the authorization, from the communications interface to the information smart card and storing the information in the information storage smart card.
[0087] Further in accordance with a preferred embodiment of the present invention the step of receiving an authorization includes performing an authentication method.
[0088] Still further in accordance with a preferred embodiment of the present invention the authentication method includes a zero-knowledge authentication method.
[0089] Additionally in accordance with a preferred embodiment of the present invention the zero-knowledge authentication method includes a Fiat-Shamir authentication method.
[0090] There is also provided in accordance with another preferred embodiment of the present invention a document downloading system for downloading a document via a communications medium operatively associated with a communications interface, the system including document receiving apparatus for receiving the document from the communications medium, and a document transmission module adapted to receive an information storage smart card in removable operative association therewith and to conditionally transmit the document to the information storage smart card for storage therein.
[0091] There is also provided in accordance with still another preferred embodiment of the present invention a document downloading system for downloading a document via a communications medium attached to a communications interface, the system including document receiving apparatus for receiving the document from the communications medium, a document transmission module adapted to receive an information storage smart card in removable operative association therewith and to transmit the document to the information storage smart card for storage therein, an auxiliary card module adapted to receive an auxiliary card in removable operative association therewith, and utilization apparatus for utilizing the document stored in the information storage smart card.
[0092] There is also provided in accordance with yet another preferred embodiment of the present invention a document downloading system for downloading a document via a communications medium attached to a communications interface, the system including authorization apparatus for receiving, via a communications network, an authorization to receive the document via the communications medium, a document transmission module adapted to receive an information storage smart card in removable operative association therewith and to transmit the document, in accordance with the authorization, to the information storage smart card for storage therein.
[0093] The present invention will be understood and appreciated more fully from the following detailed description, taken in conjunction with the drawings in which:
[0094]
[0095]
[0096]
[0097]
[0098]
[0099]
[0100]
[0101]
[0102]
[0103]
[0104]
[0105]
[0106]
[0107]
[0108]
[0109] Reference is now made to
[0110] At a subscriber location a CATV decoder
[0111] CATV decoder includes, at a front panel
[0112] Reference is now made to
[0113] When the main card is inserted in the card receptacle
[0114] If both the main card and the parent card are inserted in card receptacles
[0115] In a preferred embodiment of the invention billing data is also kept in the main card. In that case the main card retains billing data of programs which are not restricted for viewing under parental control as well as billing data of programs which are restricted for viewing under parental control. Additionally, separate accounts may be held for restricted programs and for non-restricted programs. Preferably, the separate accounts may be accessed by separate accounting identification codes.
[0116] In another preferred embodiment of the invention the parent card may retain initialization data and algorithms for initialization of an authentication procedure which is performed when the main card is changed. Most smart card based CATV systems require replacement of the smart cards, either periodically or upon suspicion that the CATV system has been compromised. In that case, new smart cards are sent to the subscribers, generally by mail. However, since mailed smart cards are subject to possible theft, it is preferred that the mailed smart cards do not contain any entitlements or valuable data which may be stolen or compromised.
[0117] Preferably, the main card at a subscriber location may be frequently replaced while the parent card is seldom replaced. In that case all entitlements and billing data remaining in the main card since last report to a billing facility may be transmitted to the parent card prior to replacement of the main card. When the subscriber receives a new main card and places it in card receptacle
[0118] It is to be appreciated that card receptacles
[0119] Reference is now made to
[0120] The card reader/writer unit of
[0121] Card read/writer
[0122] In a write sequence, CPU
[0123] Reference is now made to
[0124] Combined memory card and smart card reader/writer unit, generally denoted by reference numeral
[0125] Combined memory card and smart card reader/writer unit
[0126] Reference is now made to
[0127] The access system of
[0128] In accordance with a preferred embodiment of the invention the access system
[0129] Part of the information in identification element
[0130] In accordance with a preferred embodiment of the invention various security levels may be employed in the system. Preferably, a selected security level is part of the input entered in one of application element
[0131] Preferably, access system
[0132] Reference is now made to
[0133] The access system of
[0134] In accordance with a preferred embodiment of the invention a CATV decoder
[0135] CATV decoder
[0136] It is to be appreciated that the CD-ROM unit may be replaced by an optical card unit, employing optical cards of the size of a credit-card, or a magnetic disk drive employing magnetic disks.
[0137] Reference is now made to
[0138] Video, audio and data signals are provided by a CATV network (not shown) to a CATV receiver and tuner unit
[0139] In a preferred embodiment of the invention a decrypter
[0140] Preferably, smart card
[0141] In the absence of smart card
[0142] In a preferred embodiment of the invention the data on the compact disk is not encrypted, but access is denied unless a key is applied to access files on the compact disk. Alternatively, access to the data on the compact disk may be denied or permitted by CPU
[0143] CPU
[0144] It is to be appreciated that the systems of
[0145] If, however, compression/decompression of data is required the compression/decompression unit
[0146] The case of stand-alone compact disk access system may be also captured as a special configuration of the systems of
[0147] Reference is now made to
[0148] The CATV decoder of
[0149] If the subscriber is not entitled to the selected service, transmissions and data regarding the selected service remain scrambled. If the subscriber is entitled to the selected service the system checks if the compact disk or the other data source is in the respective receptacle. If the data source is not in inserted in the receptacle, the system delivers a message “data source not in the slot”. If the compact disk or data source is inserted in the card receptacle, the data is retrieved and decrypted and transmissions are descrambled so that the subscriber may make use of it.
[0150] Reference is now made to
[0151] Such application data may include the storage of video data, such as video clips or significant events in sports or politics. Alternatively, pictures, voice data, important computer data and music clips may be stored in the smart card. In a preferred embodiment of the invention application data may be stored in a read-only memory (ROM) in the smart card. Alternatively, application data may be stored in a random-access memory (RAM) in the smart card. In that case the application data may be updated, periodically or upon request, via the CATV network.
[0152] Reference is now made to
[0153] Reference is now made to
[0154] Reference is now made to
[0155] The term “document”, as used throughout the present specification and claims, is intended to include generally any collection of information distributable and storable in electronic form, in particular an electronic representation of any one or combination of the following: a text document; a text document with illustrations; an electronic representation of an article, a periodical, or a book; a video clip; an audio clip; an animated scene; an electronic representation of a map, including an electronic representation of a map comprising directions for finding at least one location; a game, such as an electronic game; hypertext information; and a multimedia document including one or all of the above. In some cases, the term “information” may be used alone synonymously with “document”. Methods of storing documents in electronic form in memory, such as in computer memory, are well-known in the art.
[0156] A communication channel
[0157] It is appreciated that, in the present invention, any of a low bandwidth channel, a high bandwidth channel, or no channel at all may be used in the direction from the CA document loading unit
[0158] The CA document loading unit
[0159] The document transmission module
[0160] As explained above, the term “smart card” is used herein interchangeably with the term “IC card”, and is meant to include any device of whatever external form, whether the form of a card or another form such as a key, having internal structure and characteristics similar to those of an IC card. It is appreciated that both the card reader/writer
[0161] The operation of the apparatus of
[0162] Optionally, as is well-known in the art of pay television, the information storage smart card
[0163] The processor
[0164] An authorization smart card
[0165] Typically, the authorization smart card
[0166] It is further appreciated that, as is well known in the art, authentication of the authorization smart card
[0167] It is further appreciated that the authorization smart card
[0168] A user of the system of
[0169] Typically, a request is sent to the document source
[0170] Alternatively, authorization information may be provided from any other appropriate source such as, for example, via a publicly-available communications network such as the Internet, using methods well known in the art. Further alternatively, the request may not include authorization information. Still further alternatively, no request need be sent, but rather the CA document loading unit
[0171] In a case where the request does not include authorization information or in which no request is sent, it is appreciated that the functions of applying conditional access, that is, determining whether the user has legitimate access to the document
[0172] Typically, the authorization module
[0173] The document transmission module
[0174] The document
[0175] Optionally, the system of
[0176] Preferably, the document access unit
[0177] The document utilization module
[0178] The operation of the document access unit
[0179] The document utilization module
[0180] The document utilization module
[0181] One example, not intended to be limiting, of conditional access information stored in the information smart card
[0182] It is appreciated that although the document loading unit
[0183] Similarly, the information smart card
[0184] Reference is now made to
[0185] Reference is now made to
[0186] A document is received from a communications medium (step
[0187] An information storage smart card is placed in removable operative association with a communications interface (step
[0188] The document is conditionally transmitted from the communications interface to the information storage smart card and stored in the information storage smart card (step
[0189] Further, in step
[0190] The information storage smart card is removed from operative association with the communications interface (step
[0191] It is appreciated that steps
[0192] It is appreciated that various features of the invention which are, for clarity, described in the contexts of separate embodiments may also be provided in combination in a single embodiment. Conversely, various features of the invention which are, for brevity, described in the context of a single embodiment may also be provided separately or in any suitable subcombination.
[0193] It will be appreciated by persons skilled in the art that the present invention is not limited by what has been particularly shown and described hereinabove. Rather the scope of the present invention is defined only by the claims which follow: