`US 7,942,317 B2
`(10) Patent N0.:
`Racz et al.
`
`(45) Date of Patent: *May 17, 2011
`
`USOO7942317B2
`
`DATA STORAGE AND ACCESS SYSTEMS
`
`(56)
`
`References Cited
`
`(54)
`
`(75)
`
`(73)
`
`Inventors: Patrick Racz, Saint Heller (JE);
`Hermen—ard Hulst, Amsterdam (NL)
`
`Assignee: Smartflash Technologies Limited, Road
`Town, Tortola
`
`(*)
`
`Notice:
`
`Subject to any disclaimer, the term of this
`patent is extended or adjusted under 35
`U.S.C. 154(b) by 245 days.
`
`This patent is subject to a terminal dis-
`claimer.
`
`(21)
`
`Appl. N0.: 12/014,558
`
`(22)
`
`Filed:
`
`Jan. 15, 2008
`
`(65)
`
`(63)
`
`Prior Publication Data
`
`US 2008/0314974 A1
`
`Dec. 25, 2008
`
`Related U.S. Application Data
`
`Continuation of application No. 11/336,758, filed on
`Jan. 19, 2006, now Pat. No. 7,334,720, which is a
`continuation of application No. 10/111,716, filed as
`application No. PCT/GB00/04110 on Oct. 25, 2000,
`now abandoned.
`
`(30)
`
`Foreign Application Priority Data
`
`NOV. 25, 1999
`
`(GB) ................................... 9925227.2
`
`Int. Cl.
`
`(51)
`
`G06K 5/00
`
`(2006.01)
`
`(52)
`
`(58)
`
`U.S. Cl.
`
`........................................ 235/380; 235/382
`
`Field of Classification Search .................. 235/451,
`235/380, 382, 492; 711/100,101,103
`See application file for complete search history.
`
`U.S. PATENT DOCUMENTS
`
`4,697,073 A
`5,226,145 A
`5,367,150 A
`5,406,619 A
`5,457,746 A
`5,532,466 A
`5,588,146 A
`5,677,953 A
`5,703,951 A
`5,740,369 A *
`5,744,787 A
`5,754,654 A
`
`9/1987 Hara
`7/1993 Moronaga et al.
`11/1994 Kitta et 31.
`4/1995 Akhteruzzaman et al.
`10/1995 Dolphin
`7/1996 Konno et al.
`12/1996 Leroux
`10/1997 Dolphin
`12/1997 Dolphin
`4/1998 Yokozawa et al.
`4/1998 Teicher
`5/1998 Hiroya et al.
`(Continued)
`
`............ 709/217
`
`EP
`
`FOREIGN PATENT DOCUMENTS
`0 195 098
`10/1990
`
`(Continued)
`
`Primary Examiner 7 Thien M Le
`(74) Attorney, Agent, or FirmiKilpatrick Townsend
`Stockton LLP
`
`ABSTRACT
`(57)
`Data storage and access systems are described for download-
`ing and paying for data such as audio and Video data, text,
`software, games and other types of data. A portable data
`carrier has an interface for sending and receiving data, non-
`volatile data memory for storing received content data and
`non-volatile payment validation memory for providing pay-
`ment validation data to an external device. The carrier may
`also store a record of access made to the stored content, and
`content use rules for controlling access to the stored content.
`Preferred embodiments store further access control data and
`supplementary data such as hot links to web sites and/or
`advertising data. A complementary data access terminal, data
`supply computer system and data access device are also
`described. The combination of payment data and stored con-
`tent data and, in preferred embodiments, use rule data, helps
`reduce the risk of unauthorized access to data such as com-
`
`pressed music and video data, especially over the Internet.
`
`19 Claims, 17 Drawing Sheets
`
`
`
`COMMUNICATIONS
`
`
`
`Apple Exhibit 1010 Page 00001
`
`Apple Exhibit 1010 Page 00001
`
`
`
`US 7,942,317 B2
`
`Page 2
`
`US. PATENT DOCUMENTS
`5794 202 A
`8/1998 Kim
`5,809,241 A
`9/1998 Haneletal.
`53451281 A
`12/1998 Benson “1'
`5,847,372 A
`12/1998 Krefi
`gggfigg:
`$333 1833;151:111.
`,
`,
`5918213 A
`6/1999 Bernardetal.
`2333,3381:
`5133; gjfijcitgal
`5,936,220 A
`8/1999 Hoshino et al.
`6,012,634 A
`1/2000 Brogan et al.
`6,018,720 A
`1/2000 Fujimoto
`6,078,917 A
`6/2000 Paulsen etal.
`6,119,945 A
`9/2000 Muller et al.
`6,142,369 A
`11/2000 Jonstromer
`6,202,056 B1
`3/2001 Nuttall
`6,385,731 B2
`5/2002 Ananda
`6,424,975 B1
`7/2002 Walter etal.
`6,442,570 B1
`8/2002 Wu
`6,473,829 131
`10/2002 Dahman etal.
`6,510,236 B1
`1/2003 Crane etal.
`6,553,413 B1
`4/2003 Leighton etal.
`6,554,192 B2*
`4/2003 Tingl
`............................ 235/487
`6,574,643 B2
`6/2003 Walter etal.
`6,658,568 B1
`12/2003 Ginter et al.
`
`.................... 705/40
`
`1/2006 Meyer et al.
`6,993,507 B2*
`2/2006 Sehr_
`6,999,936 B2
`$882 if“
`7822?; 3%
`8/2006 McGee etal.
`7:083:081 B2
`2/2008 Hulstetal. .................... 235/380
`7,334,720 B2*
`3/2010 Wise ............................. 235/380
`7,677,446 B2*
`
`2006/0249570 A1* 11/2006 Seifertetal.
`235/380
`2003/0168515 A1
`”003 Gray
`2008/0041938 A1*
`2/2008 Wise ............................. 235/380
`FOREIGN PATENT DOCUMENTS
`
`0713198 A2
`EP
`0 823 694 A1
`EP
`0 542 298
`EP
`0 843 449 A2
`EP
`0914 001 A1
`EP
`10-269291 A
`JP
`11-53184 A
`JP
`11-212785 A
`JP
`11-213010 A
`JP
`11-272762 A
`JP
`W0 98/19237 A1
`W0
`W0 98/33343
`W0
`WO 98/37526
`W0
`* cited by examiner
`
`5/1996
`2/1998
`4/1998
`5/1998
`5/1999
`10/1998
`2/1999
`8/1999
`8/1999
`10/1999
`5/1998
`7/1998
`8/1998
`
`Page 00002
`
`Page 00002
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 1 of 17
`
`US 7,942,317 B2
`
`Fig. 1
`
`
`
`18
`
`
`
`Page 00003
`
`Page 00003
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 2 of 17
`
`US 7,942,317 B2
`
`
`
`42
`
`30
`46 \ ._.._£'
`1.4
`
`10
`
` 40
`
`«T
`30
`
`Page 00004
`
`Page 00004
`
`
`
`US. Patent
`
`May 17, 2011
`
`Sheet 3 of 17
`
`US 7,942,317 B2
`
`
`
`Fig. 4
`
`A
`
`
`
`
`Page 00005
`
`Page 00005
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet4of17
`
`US 7,942,317 B2
`
`ARTIST
`TERMINAL
`
`
`
`
`
`ARTIST
`TERMINAL
`
`ARTIST
`TERMINAL
`
`ARTIST
`
`TERMINAL
`
`
`
`1048
`104b
`
` CONTENT
`
`CONTENT
`1068
`CREATOR
`CREATOR
`
`
`
`
`
`STORED
`STCNUED
`
`
`CONTENT
`"’8"
`CONTENT
`
`
`
`
`
`
`CONTENT
`PROWDER
`
`108C
`
`CONTENT
`PROWDER
`
`
`
`108d
`
`CONTENT
`PROWDER
`
`108a
`
`CONTENT
`PROVDER
`
`"28
`
`«In.»
`
`STORED
`CONTENT
`
`1103
`
`CONTENT
`PUBLISHER
`
`11°b-\
`CONTENT
`
`112a
`
`PUBLISHER
`
`COMMUMCANONS
`NEFNORK
`
`
`
`
`101
`
`1
`
`14
`
`108e
`
`CONTENT
`PROWDER
`
`(BAJTBAUVY
`SERVER
`
`116
`CONTENT
`DISTRIBUTOR
`WAN GATEWAY
`
`
`
`mm“
`
`117
`
`a.
`
`STORED
`CONTENT
`
`100/
`
` CONTENT
`
`
`ACCESS
`TERhflNAL
`
`
`118
`
`
` CONTENT
`ACCESS
`
`
`TERNHNAL
`
`118
`
`Fig. 5
`
`Page00006
`
`Page 00006
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 5 of 17
`
`US 7,942,317 B2
`
`118b
`
`CONTENT
`ACCESS
`TERMINAL
`
`1
`
`138
`
`CONTENT
`ACCESS
`TERMINAL
`
`BANK
`
`e-PAYMENT
`SYSTEM
`
`122a
`
`1213
`
`m 1221.
`
`128
`
`CONTENT
`ACCESS
`TERMINAL
`
`1186
`
`1220
`
`142
`
`e-PAYMENT
`SYSTEM
`
`121
`
`d-
`
`
`
`WEB_ERVER_ODESTORAGE
`
`CONTENT ACCESS
`WEB SERVER
`
`
`
`
`
`CONTENT
`
`
`PAYMENT
`DRM
`ACCESS ONTROL
`DISTRIBUTION
`
`PROCESSOR
`
`
`
`
`PROCESSOR
`PROCESSOR
`PROCESSOR
`
`
`
`ENT
`FA
`DRM CODE
`
`CRM l1 PAYMEN
`
`
`
`MANAGEMENT
`STORAGE
`
`DISTRIBUTION
`
`
`CODE STORAGE
`CODE STORAG =
`
`
`
`
`
`
`1308
`1288
`
`
`
`136
`
`138
`
`
`
`
`
`CONTENT
`ACCESS &
`DRM DATA
`
`STORE
`
`
`120
`
`Page 00007
`
`ACCESS CONTROL
`CODE STORAGE
`
`1323
`
`1348
`
`
`
`
`Page 00007
`
`
`
`US. Patent
`
`May 17, 2011
`
`Sheet 6 of 17
`
`US 7,942,317 B2
`
`144
`
`
`
`142
`
`HOME PC
`
`1448
`
`148
`
`146
`
`‘
`MobIIe Comms
`System
`
`MOBILE COMMS
`NETWORK GATEWAY
`
`J!
`“ 150
`n
`
`u #
`
`5
`as
`Q'
`Radio tower
`
`
` MOBILE
`COMMS
`
`DEVICE
`
`152a
`
`Video In
`154::
`
`154
`
`RETAILER LAN
`SERVER
`
`160
`
`164
`
`DVD
`
`158
`
`154a
`
`‘55
`
`l-l
`
`170
`
`
`
`CD/DVD PLAYER
`
`spc
`
`1103
`
`LAN
`
`166
`
`68
`
`CONTENT
`
`
`ACCESS
`TERMINAL
`
`
`
`
`CONTENT
`
`
`ACCESS
`TERMINAL
`
`
`
`
`1663
`
`168a
`
`Page 00008
`
`Page 00008
`
`
`
`11
`
`hS
`
`7t
`
`1
`
`2B713,2
`
`.5528
`
`83
`
`S88Ummdszm
`M183005
`
`
`
`4mmwamomooo.0/vmzzoomofimmhz.«mm:
`
`
`7mm;Ew2><m:96
`
`
`$2595Em2m0<z<2
`
`
`
`wDOOism—Emkzwhzoo$2...qu
`
`
`
`wDOOEw2w0<z<s~Pzwsrrsu:90
`
`
`
`NDOOwo<umwhz_m02<onm<._.<o
`macemmzmoBEE?Em$0.292
`
`
`
`E05:33on@2253
`
`U.S. Patent
`
`7,1w
`
`mg
`
`DZ<
`
`ZOF<OT=KN>
`
`Sukw>m
`
`5%.:968.3:
`
`«2mo_>waBEES.
`
`
`wzeBm#522053
`our0:
`
`Sni—Soms.Izmwbz
`
`moanI0<umwh2_
`
`mufgwpz.
`
`
`
`whmOm5&2.
`
`
`
`
`
`O:mEEOOOwn.)
`
`m:
`
`%SN
`
`a.[I
`
`
`
`wooommmgommmm;
`
`
`
`
`
`wDOUm4m2<mszkZOU
`
`
`
`wDOUw0<mmmkz_mum:
`
`wmwzmo@2200WEED
`
`m.9”.
`
`Page 00009
`
`Page 00009
`
`
`
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 8 of 17
`
`US 7,942,317 B2
`
`SN
`
`«6
`N
`
`arm
`
`
`
`
`
`>102w2<._.<Dw.=._.<._O>.ZOz
`
`<P<DO.Dm<0
`
`9N
`
`
`
`521001.”.Emzfizmwa
`
`>m02w2
`
`
`592008mea02.2:
`E052<55022%;49:2825.3%.
`
`
`
`$93“:>552mommwooma060..mofimmhz.
`
`
`
`NPN9Nmom
`
`can
`
`
`
`
`
`<P<oJOEZOOwwm00<
`
`
`
`
`
`mDOOkaw>mOZF<mmao
`
`
`
`<._.<D._.Zm3—><m
`
`
`
`(.20wDJ<>om<0
`
`<._.<O5E1
`
`<._.<DSEQ
`
`
`
`<._.<D>._.._<>OmaSEQ
`
`
`
`
`
`<._.<QmmADmmm:DZ<xmoz.hzwkzoo
`
`
`
`
`
`wDOOhzw2m0<z<2Ew2><m
`
`
`
`wOOOEmDwad5.10
`
`waooSEQ
`
`
`
`
`
`woOow_wwEZ>mhzthOO
`
`
`
`
`
`xmozcwzwZOF<QZDs=200w.=m0_2
`
`(.55mmmoo<
`
`(.20omoowmmm:
`
`
`
`(baa22:0>._n_m3w
`
`m.9“.
`
`Page 00010
`
`Page 00010
`
`
`
`
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 9 of 17
`
`US 7,942,317 B2
`
`«mm:
`
`><.Ew5
`
`gw
`
`0mm
`
`ll3HqumPZOO
`
`w0<mmm._.z_
`
`0.00..
`
`m0<mmm1r2_
`
`O_DD<
`
`JOEZOOd02.2....
`
`0mm
`
`mNNw
`NNQNN
`
`mOmmwoomn—
`
`>m02w2
`
`
`
`EéOOm—lPzwz<21mm
`
`
`
`mo<mmw...z.Cum
`
`amnw
`
`
`
`
`
`mDOOw0<umwhz_0mm
`
`
`
`wQOQ405200mm:
`
`mDOU5E8mug/Em;—mmw:
`
`
`
`
`
`wooomw><aaPZwPZOO
`
`2.9“.
`
`3E1]
`
`N
`
`Page 00011
`
`Page 00011
`
`
`
`
`
`
`
`US. Patent
`
`May 17, 2011
`
`Sheet 10 of 17
`
`US 7,942,317 B2
`
`810
`
`SMART FLASH CARD INSERTED
`INTO CONTENT ACCESS
`TERMINAL CARD INTERFACE
`
`811
`
`SCHEME OWNER REGISTRATION
`WEB PAGE LOADED ONTO
`CONTENT ACCESS TERMINAL
`
`812
`
`USER REGISTRATION DATA
`ENTERED INTO CONTENT ACCESS
`TERMINAL
`
`S13
`USER REGISTRATION DATA
`TRANSMITTED TO SCHEME OWNER
`
`$14
`PAYMENT REQUEST RECEIVED
`FROM SCHEME OWNER AT
`CONTENT ACCESS TERMINAL
`
`$15
`
`PAYMENT DATA ENTERED INTO
`CONTENT ACCESS TERMINAL AND
`TRANSMITTED TO SCHEME OWNER
`
`S16
`
`
`CARD VALUE DATA AND CARD
`VALUE ACCESS CODE RECEIVED
`BY CONTENT ACCESS TERMINAL
`FROM SCHEME OWNER
`
`
`
`
`SIT
`
`CARD REGISTRATION DATA
`RECEIVED FROM SCHEME OWNER
`AND WRITTEN ONTO CARD
`
`S18
`
`VALUE DATA AND ACCESS CODE
`WRITTEN ONTO CARD AND
`OUTPUT TO USER
`
`S19
`
`CARD AVAILABLE FOR USE
`
`FI911a
`
`Page 00012
`
`Page 00012
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 11 of 17
`
`US 7,942,317 B2
`
`820
`
`REQUEST FOR CARD
`REGISTRATION WEB PAGE
`RECEIVED FROM CONTENT
`
`ACCESS DEVICE
`
`$21
`TRANSMIT CARD REGISTRATION
`WEB PAGE TO CONTENT
`ACCESS DEVICE
`
`$22
`RECEIVE USER REGISTRATION
`DATA FROM CONTENT ACCESS
`TERMINAL AND STORE IN ACCESS
`CONTROL DATA STORE
`
`
`
`
`
`
`
`
`
`
`
`
`
`823
`TRANSMIT PAYMENT REQUEST TO
`CONTENT ACCESS TERMINAL
`
`524
`
`RECEIVE PAYMENT DATA FROM
`CONTENT ACCESS TERMINAL
`
`$25
`
`PAYMENT PROCESSOR VERIFIES
`PAYMENT DATA WITH PAYMENT
`SYSTEM
`
`$26
`PAYMENT PROCESSOR
`
`
`TRANSMITS VALUE DATA AND
`
`
`VALUE ACCESS CODE TO
`
`
`CONTENT ACCESS TERMINAL
`
`$27
`
`PAYMENT PROCESSOR UPDATES
`PAYMENT RECORD DATA STORE
`WITH TRANSACTION DATA
`
`828
`CARD REGISTRATION DATA
`
`
`LOADED FROM ACCESS CONTROL
`
`
`DATA STORE AND TRANSMI‘ITED
`
`
`TO CONTENT ACCESS TERMINAL
`
`
`$29
`
`TRANSACTION COMPLETE
`
`Fig.11b
`
`Page 00013
`
`Page 00013
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 12 of 17
`
`US 7,942,317 B2
`
`830
`
`INSERT CARD IN CONTENT
`ACCESS TERMINAL
`
`831
`
`
`
`USER ENTERS PASSWORD INTO
`CONTENT ACCESS TERMINAL
`
`
`$32
`
`
`
`
`CONTENT ACCESS TERMINAL
`
`TRANSMITS PASSWORD TO CARD
`FOR VERIFICATION
`
`
`
`
`
`
`
`833
`
`S40
`
`ACCESS PERMITTED?
`
`YES
`
`LOAD OUTLINE CRM
`DATA FROM CARD
`
`DISPLAY WARNING AND
`INCREMENT TERMINAL ACCESS
`DENIED COUNT
`
`
`
`S35
`
`READ CARD THRESHOLD AND
`TOTAL CARD ACCESS DENIED
`
`COUNT FROM CARD
`
`ARD COUNT>(CAR'
`
`THRESHOLD -3)?
`
`$36
`
`$41
`
`LOAD RETAILER DATA FROM
`RETAILER LAN / WAN
`
`o
`
`S42
`
`
`
`DISPLAY MENU, RETAILER DATA
`AND OUTLINE CRM DATA ON
`CONTENT ACCESS TERMINAL
`
`
`S43
`
`$37
`DISPLAY CONTENT ERASURE
`WARNING
`
`
`
`
`
`INPUT MENU OPTION
`TERMINAL
`$38
`
`(DOWNLOAD CONTENT:
`
`
`ADD MONETARY VALUE;
`COUNT>TERMINAL
`
`
`
`CHECK / SPEND CRM VALUE;
`THRESHOLD?
`
`WEB SITE LINKS: EXIT)
`
`
`DOWNLOAD CONTENT
`YES
`
`344
`
`$39
`
`
`LOAD SCHEME OWNER CONTENT
`ACCEss WEB PAGE ONTO
`
` CONTENT ACCESS TERMINAL
`
`
`
`
`OUTPUT ACCESS REFUSED
`ggachE AND AWArr CARD
`AL
`
`0
`
`Fig. 128
`
`Page 00014
`
`Page 00014
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 13 0f 17
`
`US 7,942,317 B2
`
`S45
`
`
`
`
`
`CONTENT SEARCH REQUEST
`DATA INPUT AND TRANSMITTED
`TO SCHEME OWNER CONTENT
`DISTRIBUTION PROCESSOR
`
`
`
`
`$46
`
`
`
`
`CONTENT SEARCH RESULTS
`RECEIVED FROM CONTENT
`DISTRIBUTION PROCESSOR AND
`DISPLAYED ON CONTENT ACCESS
`
`
`TERMINAL
`
`
`
`
`
`S47
`
`CONTENT ITEM SELECTION DATA
`INPUT AND TRANSMITTED TO
`SCHEME OWNER
`
`S48
`
`CONTENT COST DATA, CONTENT
`USE RULES AND PURCHASE
`OPTIONS DATA RECEIVED FROM
`SCHEME OWNER
`
`
`
`
`
`S49
`PURCHASE OPTION SELECTION
`AND PURCHASE REQUEST INPUT
`OR EXIT TO MENU SELECTED
`
`EXIT
`
`$50
`
`CARD VALUE AND CRM DATA
`READ FROM CARD
`
`Fig.12b
`
`$52
`
`
`
`N0 DISPLAY INSUFFICIENT
`VALUE WARNING
`
`$51
`
`CARD VALUE SUFFICIENT?
`
`
`YES
`
`853
`
`PAYMENT REQUEST
`TRANSMITTED TO CARD
`
`Page 00015
`
`Page 00015
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 14 of 17
`
`US 7,942,317 B2
`
`SS4
`
`PAYMENT FOR SCHEME OWNER
`
`
`
`RECEIVED FROM CARD BY
`
`
`FORWARDED TO e-PAYMENT
`
`
`SYSTEM
`
`
`CONTENT ACCESS TERMINAL AND
`
`PAYMENT RECORD DATA
`
`SYSTEM BY CONTENT ACCESS
`
`TERMINAL AND FORWARDED TO
`
`$55
`
`
`RECEIVED FROM e-PAYMENT
`
`
`
`
`
`
`CARD
`
`Fig.120
`
`$56
`
`REGISTRATION DATA
`
`
`
`PAYMENT RECORD DATA.
`PURCHASE REQUEST AND CARD
`
`
`
`
`TRANSMITTED TO SCHEME
`
`
`OWNER
`
`
`$57
`
`CONTENT AND CONTENT ACCESS
`
`RULES DOWNLOADED TO CARD
`
`RECEIVE CRM DATA FROM
`
`CONTENT DISTRIBUTION
`
`PROCESSOR
`
`$58
`
`$59
`
`WRITE AUDIT TRAIL TO CARD
`
`AND UPDATE CARD CRM DATA
`
`Page 00016
`
`Page 00016
`
`
`
`US. Patent
`
`May 17, 2011
`
`Sheet 15 of 17
`
`US 7,942,317 B2
`
`860
`
`CONTENT ACCESS WEB PAGE
`
`REQUESTED AND TRANSMITTED
`TO CONTENT ACCESS TERMINAL
`
`$61
`
`CONTENT SEARCH REQUEST
`RECEIVED FROM CONTENT
`ACCESS TERMINAL
`
`862
`
`
`
`
`
`
`CONTENT DISTRIBUTION
`PROCESSOR SEARCHES
`CONTENT ACCESS DATA STORE
`AND TRANSMITS SEARCH
`RESULTS TO CONTENT ACCESS
`TERMINAL
`
`
`
`
`
`
`
`$63
`
`CONTENT ITEM SELECTION
`
`RECEIVED FROM CONTENT
`ACCESS TERMINAL
`
`$64
`
`CONTENT ITEM PURCHASE DATA
`RETRIEVED FROM CONTENT
`ACCESS DATA STORE
`
`865
`CONTENT PURCHASE DATA
`TRANSMITTED TO CONTENT
`ACCESS TERMINAL
`
`$56
`
`
`PAYMENT RECORD DATA.
`PURCHASE REQUEST DATA AND
`
`
`CARD REGISTRATION DATA
`RECEIVED FROM CONTENT
`
`ACCESS TERMINAL
`
`$67
`
`PAYMENT RECORD DATA
`VALIDATED WITH e-PAYMENT
`SYSTEM
`
`0
`
`.
`
`F lg. 12d
`
`Page 00017
`
`Page 00017
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 16 0f 17
`
`US 7,942,317 B2
`
`0
`
`$68
`
`PAYMENT DISTRIBU ION DATA
`READ FROM CONTENT ACCESS
`DATA STORE
`
`$69
`PAYMENT DISTRIBUTION
`INSTRUCTION TRANSMITI'ED TO
`e-PAYMENT SYSTEM
`
`S70
`CONTENT ACCESS RULES FOR
`
`PURCHASED LEVEL OF SERVICE,
`
`CRM DATA AND CONTENT
`PROVIDER ID DATA READ FROM
`
`CONTENT ACCESS DATA STORE
`
`
`
`
`
`
`
`
`
`$71
`
`CONTENT ACCESS RULES
`TRANSMITTED TO CONTENT
`ACCESS TERMINAL
`
`S72
`
`DRM PROCESSOR TRANSMITS
`
`
`TRANSACTION REQUEST AND
`
`
`AUTHENTICATION TO CONTENT
`PROVIDER
`
`
`873
`
`Fig. 12e
`
`CONTENT ACCESS WEB SERVER
`RECEIVES PROTECTED CONTENT
`FROM CONTENT PROVIDER AND
`TRANSMITS CONTENT TO
`CONTENT ACCESS TERMINAL
`
`
`
`
`
`
`
`
`S74
`
`PURCHASE DATA AND CONTENT
`ACCESS RECORD WRITTEN TO
`PAYMENT RECORD DATA STORE
`
`875
`
`USING STORED RULES UPDATED
`CRM DATA WRITTEN TO CONTENT
`ACCESS DATA STORE AND
`TRANSMITTED T0 CONTENT
`ACCESS TERMINAL
`
`
`
`
`
`S76
`
`PROCESS ENDS
`
`Page 00018
`
`Page 00018
`
`
`
`US. Patent
`
`May 17, 2011
`
`Sheet 17 of 17
`
`US 7,942,317 B2
`
`S 77
`
`CARD INSERTED INTO PLAYER
`
`$78
`
`USER PASSWORD ENTERED INTO
`PLAYER AND TRANSMITTED TO
`CARD FOR VALIDATION
`
`CONTENT ACCESS PERMITTED
`
`S79
`
`
`
`
`STORED CONTENT INDEX LOADED
`
`
`FROM CARD AND DISPLAYED WITH
`MENU (ACCESS CONT ENT; CHECK
`
`
`VALUE; CHECK CRM; PLAY OPTIONS)
`880
`
`SELECTION OF CONTENT ITEMS
`
`FOR ACCESS ENTERED INTO
`PLAYER
`
`581
`
`Fig. 13
`
`
`
`
`CONTENT USE STATUS AND
`
`CONTENT USE RULES LOADED
`FROM CARD
`
`882
`
`
`
`
`
`USE RULES AND USE STATUS
`COMPARED AND DISPLAYED WITH
`
`CONTENT PLAY MENU
`
`
`
`
`IS CONTENT USE
`PERMITTED?
`
`
`YES
`PLAY
`
`
`$84
`CONTENT AND SUPPLEMENTARY
`DATA MADE AVAILABLE TO USER
`
`
`PAUSE WRITE/READ CARDS
`
`
`PLAY STATUS DATA
`
`PLAY
`COMPLETE
`
`885
`
`UPDATED CONTENT USE DATA
`WRITTEN TO CARD
`
`$86
`
`CRM DATA AND CRM REWARD
`RULES LOADED FROM THE CARD
`AND UPDATED
`
`Page 00019
`
`Page 00019
`
`
`
`US 7,942,317 B2
`
`1
`DATA STORAGE AND ACCESS SYSTEMS
`
`CROSS-REFERENCES TO RELATED
`APPLICATIONS
`
`This application is a continuation of US. patent applica-
`tion Ser. No. 11/336,758, filed on Jan. 19, 2006; which is a
`continuation of US. patent application Ser. No. 10/111,716,
`filed on Sep. 17, 2002, which application is a national stage
`application under 35 U.S.C. 371, claiming the priority of
`international PCTApplication No. GB00/041 10, filed on Oct.
`25, 2000; which claims priority to UK Application No.
`99252272 filed on Oct. 25, 1999, each of which is incorpo-
`rated by reference in its entirety for all purposes.
`
`BACKGROUND OF THE INVENTION
`
`This invention is generally concerned with data storage and
`access systems. More particularly, it relates to a portable data
`carrier for storing and paying for data and to computer sys-
`tems for providing access to data to be stored. The invention
`also includes corresponding methods and computer pro-
`grams. The invention is particularly useful for managing
`stored audio and video data, but may also be applied to stor-
`age and access of text and software, including games, as well
`as other types of data.
`One problem associated with the increasingly wide use of
`the internet
`is the growing prevalence of so-called data
`pirates. Such pirates obtain data either by unauthorized or
`legitimate means and then make this data available essentially
`world-wide over the internet without authorization. Data can
`
`be a very valuable commodity, but once it has been published
`on the internet it is difficult to police access to and use of it by
`internet users who may not even realize that it is pirated. This
`is a particular problem with audio recordings, and, once the
`bandwidth becomes available, is also likely to be evident with
`video.
`
`Over the past three or four years compressed audio sources
`have become increasingly widely available on web pages.
`One widely used audio data compression format is MP3
`(MPEG-Audio Layer 3 of the MPEG1 compression algo-
`rithm), which is an internationally defined standard including
`a definition of compressed audio information such as speech
`or music. It relies on psycho-acoustic properties of human
`hearing to achieve very large data compression factors. It is
`thus feasible to download usefully long passages of music in
`a practically convenient short time. Pirate data suppliers have
`not been slow to realize the potential of this, and many unau-
`thorized websites have sprung up offering popular industry
`considerable concern and there is an urgent need to find a way
`to address the problem of data piracy.
`
`SUMMARY OF THE INVENTION
`
`According to the present invention there is therefore pro-
`vided a method of providing portable data comprising pro-
`viding a portable data storage device comprising downloaded
`data storage means and payment validation means; providing
`a terminal for internet access; coupling the portable data
`storage device to the terminal; reading payment information
`from the payment validation means using the terminal; vali-
`dating the payment information; and downloading data into
`the portable storage device from a data supplier.
`Another aspect of the invention provides a corresponding
`mobile data retrieval device for retrieving and outputting data
`such as stored music and/or noise from the data storage
`device.
`
`10
`
`15
`
`20
`
`25
`
`30
`
`35
`
`40
`
`45
`
`50
`
`55
`
`60
`
`65
`
`2
`
`The payment validation means is, for example, means to
`validate payment with an external authority such as a bank or
`building society. The combination of the payment validation
`means with the data storage means allows the access to the
`downloaded data which is to be stored by the data storage
`means, to be made conditional upon checked and validated
`payment being made for the data. Binding the data access and
`payment together allows the legitimate owners of the data to
`make the data available themselves over the internet without
`
`fear of loss of revenue, thus undermining the position of data
`pirates.
`A further advantage of the system is that it allows users
`under the age of 18 to make internet purchases. Currently
`internet users pay for goods and/or services by credit card.
`Since credit cards cannot legitimately be used by persons
`under the age of 18 (at least in the UK), a significant fraction
`of adventurous internet users are excluded from e-commerce,
`one of the most significant predicted uses of the internet. In
`one embodiment ofthe invention, however, the payment vali-
`dation means comprises e-cash; that is, the payment valida-
`tion means stores transaction value information on a cash
`
`value oftransactions validatable by the data storage means. In
`simple terms, the data storage means can be a card which is
`charged up to a desired cash value (if necessary limited to a
`maximum value) at a suitable terminal. This might be an
`internet access terminal but could, more simply, be a device to
`accept the data storage card and to receive and count money
`deposited by the user to charge the card, writing update cash
`value information onto the card. More sophisticated ways of
`updating the cash value on the card are also possible, such as
`direct bank transfer. Since, with this type of embodiment, the
`data storage means is, essentially, precharged with cash rather
`than acting as a credit card, it can be used by young people
`without the risk of their incurring large debts.
`In one embodiment the data storage means is powered by
`the retrieval device when it is connected to the device and
`
`retains a memory of the downloaded data when it is unpow-
`ered. This can be achieved by the use of Flash RAM or, more
`generally, any form of programmable read-only memory.
`Alternatively the data storage means may incorporate a
`rechargeable cell or capacitor and store information in battery
`backed-up static RAM.
`The downloaded data may be entered into the data storage
`device by means of an interface such as a magnetically or
`capacitatively coupled connection or an optical connection,
`but preferably the interface comprises contacts for direct elec-
`trical connection to the storage means. The payment valida-
`tion means may likewise have one of a variety of interfaces
`but again preferably comprises a set of electrical contacts.
`The payment validation means could, however, comprise a
`magnetic or holographic data-strip such as is known for use
`with credit cards and phone cards. The interface to receive the
`downloaded data may be separate from the interface to the
`payment validation means, to facilitate separate and simulta-
`neous access to both these systems. In other embodiments a
`single interface may serve for both data storage and payment.
`Advantageously the payment validation means includes a
`memory storing information to identify the person who is
`paying for the downloaded data.
`For additional security the downloaded data may be
`encrypted. In this case data decryption may be necessary at
`some stage, either in the data storage means or in the retrieval
`device or in an information delivering apparatus such as a data
`access terminal. Alternatively the data decryption function
`can be shared amongst one or more of these devices. The
`skilled person will be aware of a range of suitable encryption/
`decryption techniques, including Pretty Good Privacy (Reg-
`
`Page 00020
`
`Page 00020
`
`
`
`US 7,942,317 B2
`
`3
`istered Trade Mark) and PKI (Public Key Infrastructure).
`Normally when the downloaded data is encrypted a decryp-
`tion key must be supplied. This can be generated automati-
`cally by the data access terminal or data access service pro-
`vider or it can be entered by the user into the data access
`terminal or into the mobile data retrieval device.
`
`The data storage means and/or the retrieval device can be
`provided with access control means to prevent unauthorized
`access to the downloaded data. Additionally or alternatively,
`use control means can be provided to stop or provide only
`limited access of the user to the downloaded data in accor-
`
`dance with the amount paid. These access and use control
`functions may in some embodiments be combined, permitted
`use controlling access or permitted access controlling use.
`Thus, for example, a complete set of data information relating
`to a particular topic, a particular music track, or a particular
`software package might be downloaded, although access to
`part ofthe data set might thereafter be controlled by payments
`made by a user at a later stage. In this way, a user could pay to
`enable an extra level on a game or to enable further tracks of
`an album.
`In embodiments where the access or use control means is
`
`responsive to the payment validation means, access or use
`control information may be stored with the downloaded data
`or in a separate storage area, for example in the payment
`validation means. The user’s access to the downloaded data
`
`could advantageously be responsive to the payment valida-
`tion means, for example, by means of a control line coupling
`the payment validation means with a memory access or
`decryption control element.
`In one embodiment the data storage means comprises an
`electronic memory card or smart card and the mobile data
`retrieval device is provided with a slot to receive the card.
`Preferably the card is a push-fit within the retrieval device,
`and retention of the card may be effected by pressure from
`electrical interface connections and/or resilience of the hous-
`
`ing, or by using a resilient retaining means. In a preferred
`embodiment the retrieval device includes an audio output and
`a display, to play a downloaded track and to show information
`about the track and/or an accompanying video.
`To download data onto the data storage means the user can
`employ a data access terminal coupled to the intemet. The
`terminal can directly validate payment; for example in the
`case of a smart card charged with electronic cash it can deduct
`a cash value from the card. Alternatively it can communicate
`with a bank or other financial services provider to control
`payment. In a preferred embodiment, however, the terminal
`connects to a data access service provider which provides a
`portal to other sites and which validates payment and then
`forwards data from a data supplier to the user’s local access
`terminal. The data access service provider may alternatively
`forward payment validation information and/or information
`from the payment validation authority to the data supplier for
`control by the supplier of the data supplied. Thus, access to
`the payment validation system and/or data for downloading
`may be entirely controlled by the data supplier.
`Data held on the data storage means may advantageously
`include data relating to the user’s or payer’s usage of the
`system. This information may include, for example, informa-
`tion on a user’ s spending pattern, information on data suppli-
`ers used and information on the downloaded data. This infor-
`
`mation may be accessed by the data supplier and/or data
`access service provider and can be used for targeted market-
`ing or loyalty-based incentive schemes such as air miles or the
`like.
`
`The data access terminal may be a conventional computer
`or, alternatively, it may be a mobile phone. Wireless Applica-
`
`10
`
`15
`
`20
`
`25
`
`30
`
`35
`
`40
`
`45
`
`50
`
`55
`
`60
`
`65
`
`4
`
`tion Protocol (WAP) and i-mode allow mobile phones to
`efficiently access the intemet and this allows a mobile phone
`to be used to download data to the data storage means, advan-
`tageously, directly. The data storage means can, if desired,
`incorporate the functionality of a mobile phone SIM (Sub-
`scriber Identity Module) card, which cards already include a
`user identification means, to allow user billing through the
`phone network operator.
`In a preferred embodiment the downloaded data is MP3 or
`other encoded audio data, but the system finds more general
`application for other data types. For example, download data
`can include software, and particularly games, share price
`information, current news information, transport timetable
`information, weather information and catalog shopping
`information. The downloaded information may also include
`compressed video data. The storage capacity of the data stor-
`age means is adaptable to suit the type of data intended to be
`downloaded; for example, 32 megabytes is sufficient for CD
`quality music, but for video it is preferable that the data
`storage means has a capacity of 128 megabytes or greater.
`In another aspect, the invention provides a portable data
`carrier comprising an interface for reading and writing data
`from and to the carrier; non-volatile data memory, coupled to
`the interface, for storing data on the carrier; non-volatile
`payment data memory, coupled to the interface, for providing
`payment data to an external device.
`These features allow the data carrier to store both payment
`data and content data, thus providing the advantages outlined
`above. Depending upon the payment system used, the pay-
`ment data memory may also store code for validating or
`confirming a payment to an external payment system. The
`payment data will normally be linked to a card or card holder
`identification data for payment by the card holder. The non-
`volatile memory ensures that stored content and payment data
`is retained in the data carrier when the data carrier is not
`
`receiving power from an external source. Thus “non-volatile”
`encompasses, for example, low-power memory whose con-
`tents are retained by a battery back-up system. In one embodi-
`ment the payment data memory comprises EEPROM and the
`content data memory comprises Flash memory, but other
`types of content data memory, such as optical, for example,
`holographic, data memory can also be used. The data carrier
`may also be integrated into other apparatus, such as a mobile
`communications device.
`
`Preferably, the portable data carrier further comprises a
`program store for storing code implementable by a processor;
`and a processor, coupled to the content data memory, the
`payment data memory, the interface and to the program store
`for implementing code in the program store, wherein the code
`comprises code to output payment data from the payment
`data memory to the interface and code to provide external
`access to the data memory.
`Normally, the (content) data memory allows both write and
`read access for both storing and retrieving data, but in some
`embodiments the content data memory may be read-only
`memory (ROM). In such embodiments, content may be pre-
`loaded onto the carrier and payment may then be made for
`permission to access the pre-loaded data.
`Preferably, the data carrier also stores a record of access
`made to the content data and updates this in response to
`external access, preferably read access, made to the data
`memory. The carrier may also store content use rules pertain-
`ing to allowed use of stored data items. These use rules may
`be linked to payments made from the card to provide payment
`options such as access to buy content data outright; rental
`access to content data for a time period or for a specified
`number of access events; and/or rental/purchase, for example
`
`Page 00021
`
`Page 00021
`
`
`
`US 7,942,317 B2
`
`5
`where rental use is provided together with an option to pur-
`chase content data at the reduced price after rental access has
`expired.
`Thus where the data carrier stores, for example, music, the
`purchase outright option may be equivalent to the purchase of
`a compact disc (CD), preferably with some form of content
`copy protection such as digital watermarking.
`In this
`example, the rental or subscription payment option may be a
`pay-per-play option, and with this option payment may either
`be before or after access to the stored data so that the carrier
`
`may operate in either a debit or credit payment mode.
`The portability ofthe data carrier potentially allows it to be
`used to access content or, in the example, play music without
`the need to be linked to a communications system or to be
`on-line to the internet. By providing a use record memory on
`the data carrier, use of the stored data can be tracked while
`ff-line and then any necessary payment can be made when the
`data carrier is next coupled to a communication system. This
`allows the data carrier to operate in a credit mode. In a debit
`mode, the additional storage of use rules facilitates the regu-
`lation of access to content data stored on the carrier without
`
`the need for further exchange of payment/use data with an
`external system to validate the use.
`By combining digital rights management with content data
`storage using a single carrier, the stored content data becomes
`mobile and can be accessed anywhere while retaining control
`over the stored data for the data content provider or data
`copyright owner. Preferably,
`the data carrier also stores
`access control data, such as a user ID and a password, as the
`stored data may be valuable. The access control data may be
`combined with access control to the payment data, which is
`typically by means ofa PIN (Personal Identification Number)
`to simplify access to valued content stored on the carrier.
`In one embodiment the stored content data is encrypted and
`a unique password or PIN and/or biometric data is required
`for decryption. The data carrier may be arranged so that the
`content is erased after a predetermined number of incorrect
`access attempts. Additionally or alternatively, a permanently
`stored flag may be set and/or a hardware modification (such as
`a fusable link) may be made to prevent the data carrier from
`functioning for further data storage/retrieval. Preferably,
`however, access to any stored value/payment data is never-
`theless retained.
`
`Supplementary data may also be stored on the carrier in
`association with stored content data. This supplementary dat