Xin Qiu - Del Mar CA Eric J. Sprunk - Carlsbad CA Daniel Z. Simon - San Diego CA Lawrence Tang - Del Mar CA Lawrence R. Cook - San Diego CA
Assignee:
General Instrument Corporation - Horsham PA
International Classification:
G06F 1130
US Classification:
713194, 713193, 380 30
Abstract:
A cryptography circuit provides secure processing of data by utilizing countermeasures that combat timing and power attacks. Superfluous operations such as multiplication operations, modular reductions by an integer, storage of data to memory are available for use by a processor to disguise the amount of power usage and the amount of time required to perform a cryptographic operation. A cryptographic key is available for use in order to trigger when these emulated operations occur. The occurrences of the emulated operations is controlled by the user to provide the preferred tradeoff between security and use of resources.
System For Securing Encryption Renewal System And For Registration And Remote Activation Of Encryption Device
John I. Okimoto - San Diego CA, US Lawrence W. Tang - San Diego CA, US
Assignee:
General Instrument Corporation - Horsham PA
International Classification:
H04N007/167 H04L009/00
US Classification:
380211, 380201, 713167, 713193, 713201
Abstract:
An encryption renewal system for generating entitlement control messages, the system being secured by physical separation of components. The encryption renewal system has a first computing platform for performing non-secure tasks associated with one or more control messages that transmit one or more keys to a subscriber; and a second computing platform physically separate from the first computing platform containing one or more application specific integrated circuit chip for generating the one or more control messages. In addition, a method by the encryption renewal system is used to register an off-line encryption device in order to begin encrypting clear content. The method includes generating data for registering the off-line encryption device; encrypting the data with one or more cryptographic keys to form encrypted data; forwarding the encrypted data to the off-line encryption device; and retrieving the data from the encrypted data, wherein the off-line encryption device begins to encrypt clear content only after the data is retrieved.
System For Denying Access To Content Generated By A Compromised Off Line Encryption Device And For Conveying Cryptographic Keys From Multiple Conditional Access Systems
Annie On-yee Chen - Del Mar CA, US Lawrence W. Tang - San Diego CA, US Akiko Wakabayashi - Encinitas CA, US
Assignee:
General Instrument Corporation - Horsham PA
International Classification:
H04L 9/00 H04N 7/167
US Classification:
713178, 726 30, 380239
Abstract:
A method for forwarding messages containing cryptographic keys from a conditional access system that controls a population of set-top boxes to an encryption renewal system. The method includes storing a fictitious address of a virtual set-top box; generating a message based on the fictitious address, the message containing a cryptographic key; and forwarding the message to the fictitious address of the virtual set-top box. The encryption renewal system has information regarding the virtual set-top box, and is the recipient of the message. In addition, the encryption renewal system is for controlling access to pre-encrypted content generated by an encryption device. The system includes software instructions for receiving a request to retrofit an entitlement control message that allows a home device to access pre-encrypted content; and software instructions for retrofitting the entitlement control message only after verifying that the pre-encrypted content was generated prior to or contemporaneous with an authorized timestamp.
System For Denying Access To Content Generated By A Compromised Off Line Encryption Device And For Conveying Cryptographic Keys From Multiple Conditional Access Systems
Annie On-yee Chen - Del Mar CA, US Lawrence W. Tang - San Diego CA, US Akiko Wakabayashi - Encinitas CA, US
Assignee:
General Instrument Corporation - Horsham PA
International Classification:
H04L 9/00
US Classification:
380211, 380210, 380239, 380240, 725 31
Abstract:
A method for forwarding messages containing cryptographic keys from a conditional access system that controls a population of set-top boxes to an encryption renewal system. The method includes storing a fictitious address of a virtual set-top box; generating a message based on the fictitious address, the message containing a cryptographic key; and forwarding the message to the fictitious address of the virtual set-top box. The encryption renewal system has information regarding the virtual set-top box, and is the recipient of the message. In addition, the encryption renewal system is for controlling access to pre-encrypted content generated by an encryption device. The system includes software instructions for receiving a request to retrofit an entitlement control message that allows a home device to access pre-encrypted content; and software instructions for retrofitting the entitlement control message only after verifying that the pre-encrypted content was generated prior to or contemporaneous with an authorized timestamp.
John I. Okimoto - San Diego CA, US Eric J. Sprunk - Carlsbad CA, US Lawrence W. Tang - San Diego CA, US Annie On-yee Chen - Del Mar CA, US Bridget Kimball - Encinitas CA, US Douglas Petty - San Diego CA, US
A system is described for uniquely mating components of a communication network such as a smartcard and a set-top box. When mated, the smartcard and set-top box are tied together and have a single identity. Further, the smartcard operates properly only when inserted into an authorized set-top box. Exchanges of information between both components are secured by encryption and authentication to guard against piracy of the exchanged information. The system provides the same authentication key to the set-top box and the smartcard. This key is used for authenticating communication between the set-top box and the smartcard. First, the authentication key is encrypted by a set-top box mating key. The set-top box employs this mating key to decrypt the authentication key. After it is derived, the authentication key is stored in the set-top box's memory. Further, the same authentication key is encrypted by a smartcard mating key.
Method To Leverage A Secure Device To Grant Trust And Identity To A Second Device
Xin Qiu - San Diego CA, US Bridget D. Kimball - Encinitas CA, US Eric J. Sprunk - Carlsbad CA, US Lawrence W. Tang - San Diego CA, US
Assignee:
General Instrument Corporation - Horsham PA
International Classification:
H04L 29/06 H04K 1/00 H04N 7/16 H04N 7/167
US Classification:
380255, 713155, 725 25
Abstract:
According to one embodiment of the invention a system is utilized to leverage the security arrangement between a first and second device to establish a secure link between the first device and a third device. One embodiment of the invention is particularly suitable for loading security data on a set top box, such as that utilized in the cable television industry.
Method And Apparatus For Providing A Secure System Time
Bridget D. Kimball - Encinitas CA, US Michael T. Habrat - San Diego CA, US John I. Okimoto - San Diego CA, US Douglas M. Petty - San Diego CA, US Eric J. Sprunk - Carlsbad CA, US Lawrence W. Tang - San Diego CA, US
Assignee:
General Instrument Corporation - Horsham PA
International Classification:
H04B 7/212
US Classification:
370324, 370350, 370509, 713155, 713165
Abstract:
The present invention discloses a system and method for providing a secured system time reference to a subscriber device, e. g. , a set top box or a receiver. In one embodiment, the system time reference is provided in a secure system time message that is broadcasted to a plurality of subscriber devices. Each subscriber device has a security device or software application that is capable of determining whether the received system time reference is legitimate. If the system time reference is determined to be legitimate, a local time reference is synchronized with said received system time reference.
Method And Apparatus For Providing A Border Guard Between Security Domains
John I. Okimoto - San Diego CA, US Bridget D. Kimball - Encinitas CA, US Annie O. Chen - Del Mar CA, US Michael T. Habrat - San Diego CA, US Douglas M. Petty - San Diego CA, US Eric Sprunk - Carlsbad CA, US Lawrence W. Tang - San Diego CA, US
The present invention discloses an apparatus and method for defining and enforcing rules of transition between two security domains, e. g. , a transport domain and a persistent security domain. In turn, a border guard, e. g. , a security device, is provided between these two domains that enforce rules for transition between the two security domains. This novel approach of defining a transport domain and a persistent security domain simplifies the classification of the digital content and its movement through the system. Namely, the border guard once established between the two systems can enforce DRM rules associated with how contents are moved between the two domains.
Name / Title
Company / Classification
Phones & Addresses
Lawrence Tang Techadministrator
El Monte City School District Elementary/Secondary School · Child Day Care Services · Elementary/Secondary School Child Day Care Services
4300 Esto Ave, El Monte, CA 91731 6265752310, 6265752349
TRA Medical Imaging 315 Martin Luther King Jr Way, Tacoma, WA 98405 2537614200 (phone), 2533833553 (fax)
TRA Medical Imaging 2502 S Un Ave, Tacoma, WA 98405 2537614200 (phone), 2537614201 (fax)
TRA Medical ImagingTacoma Radiological Associates Medical Imaging 2202 S Cedar St STE 200, Tacoma, WA 98405 2537614200 (phone), 2533833919 (fax)
TRA Medical Imaging 5919 100 St SW, Lakewood, WA 98499 2537614200 (phone), 2533833919 (fax)
TRA Medical ImagingTacoma Radiological Associates Medical Imaging 33915 1 Way S STE 130, Federal Way, WA 98003 2538151231 (phone), 2538151225 (fax)
TRA Medical Imaging 4700 Pt Fosdick Dr NW STE 110, Gig Harbor, WA 98335 2537614200 (phone), 2537614201 (fax)
TRA Medical Imaging 4525 S 19 St, Tacoma, WA 98405 2537592622 (phone), 2535724324 (fax)
Education:
Medical School Washington University School of Medicine Graduated: 1999
Languages:
English
Description:
Dr. Tang graduated from the Washington University School of Medicine in 1999. He works in Gig Harbor, WA and 6 other locations and specializes in Diagnostic Radiology and Musculoskeletal Radiology. Dr. Tang is affiliated with Saint Anthony Hospital, St Joseph Medical Center and Tacoma General Hospital.