Abstract
Digital Rights Management frameworks (DRM) aim at protecting and controlling information contents widely distributed on client devices. Using a license, the content owner specifies which rights can be rendered to end-users. Basically, only the content owner must be able to define this license, but some DRM models go further. In superdistribution scenario, the content owner does not directly manage enduser’s rights but rather delegate this task to a third-party called a distributor. Nevertheless, this distribution cannot be done without any control. In existing approaches, the content owner restricts the license issued by the distributors. In this paper, we provide a new approach, called the Onion Policy Administration approach (OPA). Rather than restricting licenses issued by the different distributors, OPA aims at controlling which rights are finally rendered to end-users. The main idea of OPA is to have a traceability of the content distribution. The content must keep track of all third-parties it crossed in the distribution chain. In this case, everyone can distribute the content and define a new license without any restriction. In these licenses, the content owner and distributors specify end-user’s rights. Using the content traceability, the DRM controller can gather all licenses involved in the distribution chain and evaluate them. In order to be rendered, a right must be allowed by both the content owner and all distributors involved in the distribution chain.
Please use the following formal when citing this chapter: Sans, T., Cuppens, F., and Cuppens-Boulahia, N., 2007, in 1FIF international Federation for Information Processing, Volume 232, New Approaches for Security, Privacy and Trust in Complex Environments, eds. Venter. H., Eloff, M., Labuschagne, L., Eloff, J., von Solms, R., (Boston: Springer), pp. 349–360.
Chapter PDF
Similar content being viewed by others
References
Eberhard Becker, Willems Buhse, Dirk Gnnewig, and Niels Rump, editors. Digital Rights Management: Technological, Economic, Legal and Political Aspects. Lecture Notes in Computer Science — Springer Berlin / Heidelberg, 2003.
Microsoft Corporation. Using windows media encoder to protect content. Technical report, March 2003.
Microsoft Corporation. Architecture of windows media rights manager. Technical report, May 2004.
John S. Erickson. Fair Use, DRM and Trusted Computing. Communication of the ACM, 46(4), April 2003.
Richard Gooch. Requirements for DRM Systems Introduction — The Requirement for DRM, volume 2770. January 2003.
Susanne Guth. Rights Expression Languages, volume 2770. January 2003.
Susanne Guth. A Sample DRM System, volume 2770. January 2003.
International Organization for Standardization (ISO). ISO/IEC 21000:2004 Information technology — Multimedia framework (MPEG-21), 2004.
Dirk Kuhlmann and Robert A. Gehring. Trusted Platforms, DRM, and Beyond, volume 2770. January 2003.
Open Mobile Alliance (OMA). OMA Digital Rights Management V2.0, 2006. http://www.openmobilealliance.org/release-program/drm-v2-0.html.
David Parott. Requirements for a Rights Data Dictonary and Rights Expression Language. Technical report, Reuters, June 2001.
Bill Rosenblatt, Bill Trippe, and Stephen Mooney. Digital Rights Management: Business and Technology. Wiley, Decembre 2001.
World Wide Web Consortium (W3C). XML-Signature Syntax and Processing, 2002. http://www.w3.org/TR/xmldsig-core.
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2007 International Federation for Information Processing
About this paper
Cite this paper
Sans, T., Cuppens, F., Cuppens-Boulahia, N. (2007). OPA: Onion Policy Administration Model — Another approach to manage rights in DRM. In: Venter, H., Eloff, M., Labuschagne, L., Eloff, J., von Solms, R. (eds) New Approaches for Security, Privacy and Trust in Complex Environments. SEC 2007. IFIP International Federation for Information Processing, vol 232. Springer, Boston, MA. https://doi.org/10.1007/978-0-387-72367-9_30
Download citation
DOI: https://doi.org/10.1007/978-0-387-72367-9_30
Publisher Name: Springer, Boston, MA
Print ISBN: 978-0-387-72366-2
Online ISBN: 978-0-387-72367-9
eBook Packages: Computer ScienceComputer Science (R0)