`Racz et al.
`
`(10) Patent No.:
`(45) Date of Patent:
`
`US 7,942,317 B2
`*May 17, 2011
`
`US0079423l7B2
`
`DATA STORAGE AND ACCESS SYSTEMS
`
`(56)
`
`References Cited
`
`(54)
`
`(75)
`
`(73)
`
`Inventors: Patrick Racz, Saint Heller (JE);
`Hermen-ard Hulst, Amsterdam (NL)
`
`Assignee: Smartflash Technologies Limited, Road
`Town, Tortola
`
`(*)
`
`Notice:
`
`Subject to any disclaimer, the term of this
`patent is extended or adjusted under 35
`U.S.C. 154(b) by 245 days.
`
`This patent is subject to a terminal dis-
`claimer.
`
`(21)
`
`Appl. No.: 12/014,558
`
`(22)
`
`Filed:
`
`Jan. 15, 2008
`
`(65)
`
`(63)
`
`Prior Publication Data
`
`US 2008/0314974 A1
`
`Dec. 25, 2008
`
`Related U.S. Application Data
`
`Continuation of application No. 11/336,758, filed on
`Jan. 19, 2006, now Pat. No. 7,334,720, which is a
`continuation of application No. 10/111,716, filed as
`application No. PCT/GB00/04110 on Oct. 25, 2000,
`now abandoned.
`
`(30)
`
`Foreign Application Priority Data
`
`NOV. 25, 1999
`
`(GB) ................................. .. 9925227.2
`
`Int. Cl.
`
`(51)
`
`G06K 5/00
`
`(2006.01)
`
`(52)
`
`(58)
`
`U.S. Cl.
`
`...................................... .. 235/380; 235/382
`
`Field of Classification Search ................ .. 235/451,
`235/380, 382, 492; 711/100,101,103
`See application file for complete search history.
`
`U.S. PATENT DOCUMENTS
`
`4,697,073 A
`5,226,145 A
`5,367,150 A
`5,406,619 A
`5,457,746 A
`5,532,466 A
`5,588,146 A
`5,677,953 A
`5,703,951 A
`5,740,369 A *
`5,744,787 A
`5,754,654 A
`
`9/1987 Hara
`7/1993 Moronaga et al.
`11/1994 Kitta et al.
`4/1995 Akhteruzzaman et al.
`10/1995 Dolphin
`7/1996 Konno et al.
`12/1996 Leroux
`10/1997 Dolphin
`12/1997 Dolphin
`4/1998 Yokozawa et al.
`4/1998 Teicher
`5/1998 Hiroya et al.
`(Continued)
`
`.......... .. 709/217
`
`EP
`
`FOREIGN PATENT DOCUMENTS
`0 195 098
`10/1990
`
`(Continued)
`
`Primary Examiner — Thien M Le
`(74) Attorney, Agent, or Firm—Kilpatrick Townsend
`Stockton LLP
`
`ABSTRACT
`(57)
`Data storage and access systems are described for download-
`ing and paying for data such as audio and video data, text,
`software, games and other types of data. A portable data
`carrier has an interface for sending and receiving data, non-
`volatile data memory for storing received content data and
`non-volatile payment validation memory for providing pay-
`ment validation data to an external device. The carrier may
`also store a record of access made to the stored content, and
`content use rules for controlling access to the stored content.
`Preferred embodiments store further access control data and
`supplementary data such as hot links to web sites and/or
`advertising data. A complementary data access terminal, data
`supply computer system and data access device are also
`described. The combination of payment data and stored con-
`tent data and, in preferred embodiments, use rule data, helps
`reduce the risk of unauthorized access to data such as com-
`
`pressed music and video data, especially over the Internet.
`
`19 Claims, 17 Drawing Sheets
`
`
`
`Apple Exhibit 10111
`Page 00001
`
`Apple Exhibit 1010
` Page 00001
`
`
`
`US 7,942,317 B2
`Page 2
`
`D>>>>>>>>>D>D>D>D>D>>
`
`U.S. PATENT DOCUMENTS
`8/1998 Kim
`9/1998 Hanel et al.
`12/1998 Benson et a1.
`12/1998 Kreft
`3/1999 Eller et al.
`5/1999 Sun et al.
`6/ 1999 Bernard et al.
`7/1999 Peyret et al.
`8/1999 Schneck et al.
`8/1999 Hoshino et al.
`1/2000 Brogan et al.
`1/2000 Fujimoto
`6/2000 Paulsen et a1.
`9/2000 Muller et al.
`11/2000 Jonstromer
`3/2001 Nuttall
`5/2002 Ananda
`7/2002 Walter et a1.
`8/2002 Wu
`10/2002 Dahman et al.
`1/2003 Crane et al.
`4/2003 Leighton et al.
`4/2003 Tingl
`.......................... .. 235/487
`6/2003 Walter et a1.
`12/2003 Ginter et a1.
`
`B1
`B2
`B1
`B1
`B1
`B1
`B1
`B2 *
`B2
`B1
`
`5,794,202
`5,809,241
`5,845,281
`5,847,372
`5,889,860
`5,901,330
`5,918,213
`5,923,884
`5,933,498
`5,936,220
`6,012,634
`6,018,720
`6,078,917
`6,119,945
`6,142,369
`6,202,056
`6,385,731
`6,424,975
`6,442,570
`6,473,829
`6,510,236
`6,553,413
`6,554,192
`6,574,643
`6,658,568
`
`1/2006
`6,993,507 B2*
`2/2006
`6,999,936 B2
`2/2006
`7,000,836 B2
`5/2006
`7,044,362 B2
`8/2006
`7,083,081 B2
`2/2008
`7,334,720 B2*
`3/2010
`7,677,446 B2*
`9/2003
`2003/0168515 A1
`2006/0249570 A1* 11/2006
`2008/0041938 A1*
`2/2008
`
`.................. .. 705/40
`
`Meyer et al.
`Sehr
`Saeki
`Yu
`McGee et al.
`Hulst et a1.
`.................. .. 235/380
`Wise ........................... .. 235/380
`Gray
`
`235/380
`Seifert et al.
`Wise ........................... .. 235/380
`
`EP
`EP
`EP
`EP
`EP
`JP
`JP
`JP
`JP
`JP
`W0
`W0
`W0
`
`FOREIGN PATENT DOCUMENTS
`0 713 198 A2
`5/1996
`0 823 694 A1
`2/1998
`0 542 298
`4/1998
`0 843 449 A2
`5/1998
`0 914 001 A1
`5/1999
`10-269291 A
`10/1998
`11-53184 A
`2/1999
`11-212785 A
`8/1999
`11-213010 A
`8/1999
`11-272762 A
`10/1999
`WO 98/19237 A1
`5/1998
`WO 98/33343
`7/1998
`WO 98/37526
`8/1998
`
`* cited by examiner
`
`Page 00002
`
`Page 00002
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 1 of 17
`
`US 7,942,317 B2
`
`Fig. 1
`
`
`
`Page 00003
`
`Page 00003
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 2 of 17
`
`US 7,942,317 B2
`
`Page 00004
`
`Page 00004
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 3 of 17
`
`US 7,942,317 B2
`
`Page 00005
`
`Fig. 4
`
`A
`
`Page 00005
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 4 of 17
`
`US 7,942,317 B2
`
`
`
`ARTIST
`
`TERMINAL
`
`104b
`
`CONTENT
`CREATOR
`
` ARTIST
`
`RMINAL
`
`
`
`
`
`
`ARTIST
`
`TERMINAL
`
`1048
`
`
`
`CONTENT
`CREATOR
`
`
`
`108b
`
`CONTENT
`PROWDER
`
`
`
`STCNUED
`CONTENT
`
`
`
`
`108d
`
`CONTENT
`PROWDER
`
`108a
`
`CONTENT
`PROWDER
`
`
`
`COMMUNICATIONS
`”ETW°R*‘
`
`
`
`1103
`CONTENT
`PUBLISHER
`
`108e
`
`CONTENT
`PROVIDER
`
`101
`
`114
`
`GATEWAY
`
`SERVER
`
`Page 00006
`
`CONTENT
`DISTRIBUTOR
`WAN GATEWAY
`
`"7
`
`mm“
`
`
`
`113
`
`
`CONTENT
`ACCESS
`
`
`
`TERNHNAL
`
`118
`
`«aux
`
`CONTENT
`
`P”°"'5”ER
`
`
`
`CONTENT
`ACCESS
`
`
`
`TERhflNAL
`
`
`Fig. 5
`
`ARTIST
`TERMINAL
`
`106a
`
`
`
`STORED
`CONTENT
`
`106a
`
`CONTENT
`PRovIoER
`
`"23
`
`4-—
`
`§2‘3I‘¥E‘I’n
`
`"2"
`
`STORED
`CONTENT
`
`106////
`
`Page 00006
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 5 of 17
`
`US 7,942,317 B2
`
`118a
`
`CONTENT
`ACCESS
`TERMINAL
`
`flab CONTENT
`ACCESS
`TERMINAL
`
`BANK
`
`SYSTEM
`
`1228
`
`1213
`
`W 1222:
`
`126
`
`CONTENT
`Accgss
`TEF*M'NN-
`
`118c
`
`"2 12¢
`
`3A“K
`
`svsrem
`121
`
`122d BANK
`
`124
`
`WEB SERVER
`CODE STORAGE
`
`CONTENT ACCESS
`WEB SERVER
`
`
`
`
`PAYMENT
`DRM
`ACCESS ONTROL
`PROCESSOR
`
`
`
`PROCESSOR
`PROCESSOR
`
`ENT
`PA
`DRM CODE
`
`MANAGEMENT
`ACCESS CONTROL
`STORAGE
`CODE STORAG =
`CODE STORAGE
`1308
`
`CONTENT
`DISTRIBUTION
`PROCESSOR
`CRM In PAYMEN
`DISTRIBUTION
`
`CODE STORAGE
`
`
`
`
`
`
`
`
`
`1288
`
`136
`
`
`
`
`
`1348
`
` CONTENT
`ACCESS &
`DRM DATA
`STORE
`
`
`
`1323
`
`138
`
`
`
`120
`
`Page 00007
`
`Page 00007
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 6 of 17
`
`US 7,942,317 B2
`
`143
`
`146
`
`_
`M°°"° °°'“"‘5
`System
`
`MOBILE COMMS
`NETWORK GATEWAY
`
`‘J’
`
`150
`
`6 §Txx.‘--—
`
`
`15.“,
`
`154
`
`SERVER
`
`160
`
`144
`
`
`
`142
`
`HOME PC
`
`1443
`
`158
`
`164
`
`DVD
`
`LA“
`
`166
`
`68
`
`CONTENT
`
`ACCESS
`TERMINAL
`
`
`
`
`CONTENT
`
`ACCESS
`
`TERMINAL
`
`
`
`166a
`
`168a
`
`1542
`
`‘55
`
`-
`
`170
`
`
` CD/DVD PLAYER
`
`31:3
`
`1703
`
`Page 00003
`
`Page 00008
`
`
`
`U.S. Patent
`
`7,1WM
`
`mwt
`
`
`.502.:m<o8.3:
`
`oz<0Z_._.Z_On_é=w_2o_o:<
`
`
`SmZ_sows...mzmw»z_8.at
`
`ZO_.P<O_n=KW>N2mo_>wnmo<“Em»z_
`
`
`mo_>mowo<u_mm»2_
`
`smFw>m
`
`oaw09.
`
`3.
`
`mt.
`
`V5.
`
`mo<“Em:.z_
`
`20%.
`
`
`
`mEon_5&2.mo<nEw._.z
`
`
`
`0:mzzooownsz<>2z5
`
`_
`
`11
`
`hS
`
`7t
`
`SU
`
`2B713,
`
`%8~
`
`
`
`
`
`8.H3.
`
`
`
`
`
`mnoommzmomo<u_mm»z_Em
`
`>mo_2w2
`
`7mm;._.zms_><mzwaommommwooma
`0Z_v_mO3
`
`>mo_2ms_.2<mooE
`
`awesomeEms_mo<z<s_
`
`
`NDOOmo<u_mw»z_mwz<:oxm<._.<o
`
`
`
`
`
`
`MDOUmmmaommmm;
`
`
`
`
`
`Mmooo.0/Vmo<u_mm»z_«mm:
`
`
`
`mooowo<n_mm._.z_mum:
`
`
`
`
`
`wmmzmoQ2200mmrfio
`
`m.9“.
`
`Page 00009
`
`
`
`wnoo..<>m_Ewm._.Zw._.ZOUmz:.u_"_o
`
`
`
`
`
`
`
`MDOUmdszmwzmpzoo
`
`
`
`MDOOEw2mw<z<:»zms_><n.IW<0
`
`
`
`
`
`Page 00009
`
`
`
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 8 of 17
`
`US 7,942,317 B2
`
`SN
`
`3
`N
`
`m_.N
`
`
`
`>mo_2mz<55m._E§o>.zoz
`
`<h<DO.920
`
`
`
`zéoommEmz<s.mmn_
`
`>mo_2m_2
`
`Eu
`
`
`Emfizooommohma0z=2F
`>mos_ms_<»<oozimo;55200izmmbxm
`
`
`
`
`
`fw<.c.>mo_2ms_mommmooma98..mo<n_mm+z_
`
`
`
`~—~Emmow
`
`Sm
`
`
`
`
`
`<h<D._Om._.ZO0mmmoo<
`
`
`
`
`
`MDOOs_m5>mozckmmao
`
`
`
`<._.<D..zm.z><..
`
`
`
`
`
`MDOO_.zm_2mw<z<.2._.ZwS_><n_
`
`
`
`
`
`<._.<0w:..<>om<o
`
`<._.<OSEE
`
`<._.<DSEO
`
`
`
`<._.<D>5<>omasac
`
`
`
`
`
`<._.<omm._:mmm:D2<xmoz_pzmpzoo
`
`
`
`<._.<Domoommmm:
`
`
`
`
`
`<._.<DZ_<I0>._n_.5m
`
`
`
`
`
`xmozcmzmzo_.Eo_z:_2:oomemos.
`
`<55mmmoo<
`
`
`
`moooEmzowma5.10
`
`waooSEO
`
`
`
`
`
`MQOOm_wwEz>mh2m._r2OO
`
`m.9“.
`
`Page 00010
`
`Page 00010
`
`
`
`
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 9 of 17
`
`US 7,942,317 B2
`
`,,~
`
`
`
` 1Hw._oEzoo><#_wa
`
`«mm...
`
`
`
`NMNown
`
`o_o:<
`
`mo<u_mm_.z_
`
`mo<u_mm»z_
`
`cum
`
`mum
`
`m
`
`NNVNN
`
`can
`
`mommwooma
`
`>mos_ms_
`
`
`
`s.<mooEEmz<2mmm
`
`
`
`mo<u_mm.:,__cum
`
`83
`
`
`
`
`
`mooomo<0Ew..z_o.._m
`
`
`
`
`
`mnoo6528mo<nEm»z_«mm:
`
`
`
`
`
`
`
`mooo.._Om_.._.ZOUmm:
`
`
`
`
`
`M000mm>S._._.Zw._.ZOO
`
`2.9“.
`
`SE”
`
`N
`
`Page 00011
`
`Page 00011
`
`
`
`
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 10 of 17
`
`US 7,942,317 B2
`
`S10
`
`SMART FIASH CARD INSERTED
`INTO CONTENT ACCESS
`TERMINAL CARD INTERFACE
`
`S11
`
`SCHEME OWNER REGISTRATION
`WEB PAGE LOADED ONTO
`CONTENT ACCESS TERMINAL
`
`S12
`
`USER REGISTRATION DATA
`ENTERED INTO CONTENT ACCESS
`TERMINAL
`
`S13
`USER REGISTRATION DATA
`TRANSMITTED TO SCHEME OWNER
`
`S14
`PAYMENT REQUEST RECEIVED
`FROM SCHEME OWNER AT
`CONTENT ACCESS TERMINAL
`
`S15
`
`PAYMENT DATA ENTERED INTO
`CONTENT ACCESS TERMINAL AND
`TRANSMITTED TO SCHEME OWNER
`
`S16
`
`Fig11a
`
`CARD VALUE DATA AND CARD
`VALUE ACCESS CODE RECEIVED
`BY CONTENT ACCESS TERMINAL
`FROM SCHEME OWNER
`
`
`
`
`
`S17
`
`CARD REGISTRATION DATA
`RECEIVED FROM SCHEME OWNER
`AND WRITTEN ONTO CARD
`
`S18
`
`VALUE DATA AND ACCESS CODE
`WRITTEN ONTO CARD AND
`OUTPUT TO USER
`
`S19
`
`CARD AVAILABLE FOR USE
`
`Page 00012
`
`Page 00012
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 11 of 17
`
`US 7,942,317 B2
`
`S20
`
`REQUEST FOR CARD
`REGISTRATION WEB PAGE
`RECEIVED FROM CONTENT
`
`ACCESS DEVICE
`
`S21
`TRANSMIT CARD REGISTRATION
`WEB PAGE TO CONTENT
`ACCESS DEVICE
`
`S22
`RECEIVE USER REGISTRATION
`DATA FROM CONTENT ACCESS
`TERMINAL AND STORE IN ACCESS
`CONTROL DATA STORE
`
`
`
`
`
`
`
`
`
`
`
`
`Fig.11b
`
`S23
`TRANSMIT PAYMENT REQUEST TO
`CONTENT ACCESS TERMINAL
`
`S24
`
`RECEIVE PAYMENT DATA FROM
`CONTENT ACCESS TERMINAL
`
`S25
`
`PAYMENT PROCESSOR VERIFIES
`PAYMENT DATA WITH PAYMENT
`SYSTEM
`
`S26
`PAYMENT PROCESSOR
`
`
`TRANSMITS VALUE DATA AND
`
`
`VALUE ACCESS CODE TO
`
`CONTENT ACCESS TERMINAL
`
`
`
`,2,
`
`PAYMENT PROCESSOR UPDATES
`PAYMENT RECORD DATA STORE
`WITH TRANSACTION DATA
`
`
`
`S28
`CARD REGISTRATION DATA
`LOADED FROM ACCESS CONTROL
`DATA STORE AND TRANSMITTED
`
`
`TO CONTENT ACCESS TERMINAL
`
`
`
`
`S29
`
`TRANSACTION COMPLETE
`
`Page 00013
`
`Page 00013
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 12 of 17
`
`US 7,942,317 B2
`
`830
`
`INSERT CARD IN CONTENT
`ACCESS TERMINAL
`
`S31
`
`USER ENTERS PASSWORD INTO
`
`CONTENT ACCESS TERMINAL
`
`S32
`
`CONTENT ACCESS TERMINAL
`TRANSMITS PASSWORD TO CARD
`FOR VERIFICATION
`
`
`
`ACCESS PERMITTED?
`
`YES
`
`LOAD OUTLINE CRM
`DATA FROM CARD
`
`S33
`
`S40
`
`S41
`
`
`
`DISPLAY WARNING AND
`INCREMENT TERMINAL ACCESS
`DENIED COUNT
`
`
`
`
`
`S35
`
`READ CARD THRESHOLD AND
`TOTAL CARD ACCESS DENIED
`COUNT FROM CARD
`
`LOAD RETAILER DATA FROM
`RETAILER LAN I WAN
`
`$35
`
`0
`
`S42
`
`ARD COUNWCAR
`THRESHOLD -3)?
`
`S37
`DISPLAY CONTENT ERASURE
`WARNING
`
`
`
`DISPLAY MENU. RETAILER DATA
`AND OUTLINE CRM DATA oN
`CONTENT AccEss TERMINAL
`
`
`
`S43
`
`
`TERMINAL
`538
`
`
`
`couNT>TERMINAI.
`THRESHOLD?
`
`
`
`
`INPUT MENU OPTION
`(DOWNLOAD CONTENT:
`ADD MONETARY VALUE;
`CHECK I SPEND CRM VALUE;
`WEB SITE LINKS: EXIT)
`
`s44
`
`s39
`
`DowNI.oAD coNrENT
`
`YES
`
`
`LDAD SCHEME OWNER CONTENT
`ACCESS WEB PAGE oNTo
`
` CONTENT ACCESS TERMINAL
`
`
`
`
`OUTPUT ACCESS REFUSED
`ggfigcif AND AWAFF CARD
`
`9
`
`Fig. 12a
`
`Page 00014
`
`Page 00014
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 13 of 17
`
`US 7,942,317 B2
`
`S45
`
`
`
`
`
`CONTENT SEARCH REQUEST
`DATA INPUT AND TRANSMITTED
`TO SCHEME OWNER CONTENT
`DISTRIBUTION PROCESSOR
`
`
`
`
`S46
`
`
`
`
`CONTENT SEARCH RESULTS
`RECEIVED FROM CONTENT
`DISTRIBUTION PROCESSOR AND
`DISPLAYED ON CONTENT ACCESS
`
`
`TERMINAL
`
`
`
`
`
`S47
`
`CONTENT ITEM SELECTION DATA
`INPUT AND TRANSMITTED TO
`SCHEME OWNER
`
`S48
`
`CONTENT COST DATA, CONTENT
`USE RULES AND PURCHASE
`OPTIONS DATA RECEIVED FROM
`SCHEME OWNER
`
`
`
`
`
`S49
`PURCHASE OPTION SELECTION
`AND PURCHASE REQUEST INPUT
`OR EXIT TO MENU SELECTED
`
`EXIT
`
`S50
`
`CARD VALUE AND CRM DATA
`READ FROM CARD
`
`Fig.12b
`
`$52
`
`
`
`N0 DISPLAY INSUFFICIENT
`VALUE WARNING
`
`S51
`
`CARD VALUE SUFFICIENT?
`
`
`YES
`
`S53
`
`PAYMENT REQUEST
`TRANSMITTED TO CARD
`
`Page 00015
`
`Page 00015
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 14 of 17
`
`US 7,942,317 B2
`
`354
`
`
`RECEIVED FROM CARD BY
`
`
`
`FORWARDED TO e-PAYMENT
`
`
`
`SYSTEM
`
`PAYMENT RECORD DATA
`
`S55
`
`
`RECEIVED FROM e-PAYMENT
`
`
`
`
`
`
`SYSTEM BY CONTENT ACCESS
`
`TERMINAL AND FORWARDED TO
`
`CARD
`
`Fig.12c
`
`Page 00016
`
`S56
`
`
`
`PAYMENT RECORD DATA.
`PURCHASE REQUEST AND CARD
`
`
`
`REGISTRATION DATA
`
`
`
`TRANSMITTED TO SCHEME
`
`
`
`
`
`
`OWNER
`
`S57
`
`CONTENT AND CONTENT ACCESS
`
`RULES DOWNLOADED TO CARD
`
`RECEIVE CRM DATA FROM
`
`CONTENT DISTRIBUTION
`
`PROCESSOR
`
`S58
`
`S59
`
`WRITE AUDIT TRAIL TO CARD
`
`AND UPDATE CARD CRM DATA
`
`PAYMENT FOR SCHEME OWNER
`
`CONTENT ACCESS TERMINAL AND
`
`
`
`
`Page 00016
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 15 of 17
`
`US 7,942,317 B2
`
`S60
`
`CONTENT ACCESS WEB PAGE
`
`REQUESTED AND TRANSMITTED
`TO CONTENT ACCESS TERMINAL
`
`S61
`
`CONTENT SEARCH REQUEST
`RECEIVED FROM CONTENT
`ACCESS TERMINAL
`
`S62
`
`
`
`
`
`
`CONTENT DISTRIBUTION
`PROCESSOR SEARCHES
`CONTENT ACCESS DATA STORE
`AND TRANSMITS SEARCH
`RESULTS TO CONTENT ACCESS
`TERMINAL
`
`
`
`
`
`
`
`s63C0NTENT ITEM SELECTION F . 1
`
`RECEIVED FROM CONTENT
`ACCESS TERMINAL
`
`S64
`
`CONTENT ITEM PURCHASE DATA
`RETRIEVED FROM CONTENT
`ACCESS DATA STORE
`
`S65
`CONTENT PURCHASE DATA
`TRANSMITTED TO CONTENT
`ACCESS TERMINAL
`
`S56
`
`
`PAYMENT RECORD DATA.
`PURCHASE REQUEST DATA AND
`
`
`CARD REGISTRATION DATA
`RECEIVED FROM CONTENT
`
`ACCESS TERMINAL
`
`S67
`
`PAYMENT RECORD DATA
`VALIDATED WITH e-PAYMENT
`SYSTEM
`
`0
`
`Page 00017
`
`Page 00017
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 16 of 17
`
`US 7,942,317 B2
`
`S68
`
`PAYMENT DISTRIBU ION DATA
`READ FROM CONTENT ACCESS
`DATA STORE
`
`S69
`PAYMENT DISTRIBUTION
`INSTRUCTION TRANSMITTED TO
`e-PAYMENT SYSTEM
`
`S70
`
`CONTENT ACCESS RULES FOR
`
`
`
`
`
`
`
`
`PURCHASED LEVEL OF SERVICE,
`CRM DATA AND CONTENT
`PROVIDER ID DATA READ FROM
`
`CONTENT ACCESS DATA STORE
`
`
`
`
`
`
`S71
`
`CONTENT ACCESS RULES
`TRANSMITTED TO CONTENT
`ACCESS TERMINAL
`
`S72
`
`DRM PROCESSOR TRANSMITS
`
`
`TRANSACTION REQUEST AND
`
`
`AUTHENTICATION TO CONTENT
`PROVIDER
`
`
`S73
`
`Fig. 12e
`
`CONTENT ACCESS WEB SERVER
`RECEIVES PROTECTED CONTENT
`FROM CONTENT PROVIDER AND
`TRANSMITS CONTENT TO
`CONTENT ACCESS TERMINAL
`
`
`
`
`
`
`
`
`
`
`
`S74
`
`PURCHASE DATA AND CONTENT
`ACCESS RECORD WRITTEN TO
`PAYMENT RECORD DATA STORE
`
`S75
`
`USING STORED RULES UPDATED
`CRM DATA WRITTEN TO CONTENT
`ACCESS DATA STORE AND
`TRANSMITTED TO CONTENT
`ACCESS TERMINAL
`
`
`
`
`
`S76
`
`PROCESS ENDS
`
`Page 00013
`
`Page 00018
`
`
`
`U.S. Patent
`
`May 17, 2011
`
`Sheet 17 of 17
`
`US 7,942,317 B2
`
`S77
`
`CARD INSERTED INTO PLAYER
`
`S78
`
`USER PASSWORD ENTERED INTO
`PUKYER AND TRANSMITTED TO
`CARD FOR VALIDATION
`
`CONTENT ACCESS PERMITTED
`
`
`
`S79
`
`
`
`STORED CONTENT INDEX LOADED
`
`FROM CARD AND DISPLAYED WITH
`MENU (ACCESS CONT ENT: CHECK
`
`
`VALUE: CHECK CRM: PLAY OPTIONS)
`
`S80
`SELECTION OF CONTENT ITEMS
`FOR ACCESS ENTERED INTO
`PIAYER
`
`
`
`CONTENT USE STATUS AND
`CONTENT USE RULES LOADED
`FROM CARD
`
`Fig. 13
`
`S81
`
`S82
`
`USE RULES AND USE STATUS
`COMPARED AND DISPLAYED WITH
`CONTENT PLAY MENU
`
`
`IS CONTENT USE
`PERMITTED?
`
`
`
`
`
`
`YES
`PLAY
`
`S84
`CONTENT AND SUPPLEMENTARY
`DATA MADE AVAILABLE TO USER
`
`
`PAUSE WRITE/READ CARDS
`
`
`PLAY STATUS DATA
`
`PLAY
`COMPLETE
`
`S85
`
`UPDATED CONTENT USE DATA
`WRITTEN TO CARD
`
`S86
`
`CRM DATA AND CRM REWARD
`RULES LOADED FROM THE CARD
`AND UPDATED
`
`Page 00019
`
`Page 00019
`
`
`
`US 7,942,317 B2
`
`1
`DATA STORAGE AND ACCESS SYSTEMS
`
`CROSS-REFERENCES TO RELATED
`APPLICATIONS
`
`This application is a continuation of U.S. patent applica-
`tion Ser. No. 11/336,758, filed on Jan. 19, 2006; which is a
`continuation of U.S. patent application Ser. No. 10/111,716,
`filed on Sep. 17, 2002, which application is a national stage
`application under 35 U.S.C. 371, claiming the priority of
`international PCTApplication No. GB00/041 10, filed on Oct.
`25, 2000; which claims priority to UK Application No.
`9925227.2 filed on Oct. 25, 1999, each of which is incorpo-
`rated by reference in its entirety for all purposes.
`
`BACKGROUND OF THE INVENTION
`
`This invention is generally concerned with data storage and
`access systems. More particularly, it relates to a portable data
`carrier for storing and paying for data and to computer sys-
`tems for providing access to data to be stored. The invention
`also includes corresponding methods and computer pro-
`grams. The invention is particularly useful for managing
`stored audio and video data, but may also be applied to stor-
`age and access of text and software, including games, as well
`as other types of data.
`One problem associated with the increasingly wide use of
`the internet
`is the growing prevalence of so-called data
`pirates. Such pirates obtain data either by unauthorized or
`legitimate means and then make this data available essentially
`world-wide over the intemet without authorization. Data can
`
`be a very valuable commodity, but once it has been published
`on the intemet it is difficult to police access to and use of it by
`internet users who may not even realize that it is pirated. This
`is a particular problem with audio recordings, and, once the
`bandwidth becomes available, is also likely to be evident with
`video.
`
`Over the past three or four years compressed audio sources
`have become increasingly widely available on web pages.
`One widely used audio data compression format is MP3
`(MPEG-Audio Layer 3 of the MPEG1 compression algo-
`rithm), which is an internationally defined standard including
`a definition of compressed audio information such as speech
`or music. It relies on psycho-acoustic properties of human
`hearing to achieve very large data compression factors. It is
`thus feasible to download usefully long passages of music in
`a practically convenient short time. Pirate data suppliers have
`not been slow to realize the potential of this, and many unau-
`thorized websites have sprung up offering popular industry
`considerable concern and there is an urgent need to find a way
`to address the problem of data piracy.
`
`SUMMARY OF THE INVENTION
`
`According to the present invention there is therefore pro-
`vided a method of providing portable data comprising pro-
`viding a portable data storage device comprising downloaded
`data storage means and payment validation means; providing
`a terminal for internet access; coupling the portable data
`storage device to the terminal; reading payment information
`from the payment validation means using the terminal; vali-
`dating the payment information; and downloading data into
`the portable storage device from a data supplier.
`Another aspect of the invention provides a corresponding
`mobile data retrieval device for retrieving and outputting data
`such as stored music and/or noise from the data storage
`device.
`
`10
`
`15
`
`20
`
`25
`
`30
`
`35
`
`40
`
`45
`
`50
`
`55
`
`60
`
`65
`
`2
`
`The payment validation means is, for example, means to
`validate payment with an external authority such as a bank or
`building society. The combination of the payment validation
`means with the data storage means allows the access to the
`downloaded data which is to be stored by the data storage
`means, to be made conditional upon checked and validated
`payment being made for the data. Binding the data access and
`payment together allows the legitimate owners of the data to
`make the data available themselves over the intemet without
`
`fear of loss of revenue, thus undermining the position of data
`pirates.
`A further advantage of the system is that it allows users
`under the age of 18 to make internet purchases. Currently
`internet users pay for goods and/or services by credit card.
`Since credit cards carmot legitimately be used by persons
`under the age of 18 (at least in the UK), a significant fraction
`of adventurous intemet users are excluded from e-commerce,
`one of the most significant predicted uses of the internet. In
`one embodiment ofthe invention, however, the payment vali-
`dation means comprises e-cash; that is, the payment valida-
`tion means stores transaction value information on a cash
`
`value oftransactions validatable by the data storage means. In
`simple terms, the data storage means can be a card which is
`charged up to a desired cash value (if necessary limited to a
`maximum value) at a suitable terminal. This might be an
`internet access terminal but could, more simply, be a device to
`accept the data storage card and to receive and count money
`deposited by the user to charge the card, writing update cash
`value information onto the card. More sophisticated ways of
`updating the cash value on the card are also possible, such as
`direct bank transfer. Since, with this type of embodiment, the
`data storage means is, essentially, precharged with cash rather
`than acting as a credit card, it can be used by young people
`without the risk of their incurring large debts.
`In one embodiment the data storage means is powered by
`the retrieval device when it is connected to the device and
`
`retains a memory of the downloaded data when it is unpow-
`ered. This can be achieved by the use of Flash RAM or, more
`generally, any form of programmable read-only memory.
`Alternatively the data storage means may incorporate a
`rechargeable cell or capacitor and store information in battery
`backed-up static RAM.
`The downloaded data may be entered into the data storage
`device by means of an interface such as a magnetically or
`capacitatively coupled connection or an optical connection,
`but preferably the interface comprises contacts for direct elec-
`trical connection to the storage means. The payment valida-
`tion means may likewise have one of a variety of interfaces
`but again preferably comprises a set of electrical contacts.
`The payment validation means could, however, comprise a
`magnetic or holographic data-strip such as is known for use
`with credit cards and phone cards. The interface to receive the
`downloaded data may be separate from the interface to the
`payment validation means, to facilitate separate and simulta-
`neous access to both these systems. In other embodiments a
`single interface may serve for both data storage and payment.
`Advantageously the payment validation means includes a
`memory storing information to identify the person who is
`paying for the downloaded data.
`For additional security the downloaded data may be
`encrypted. In this case data decryption may be necessary at
`some stage, either in the data storage means or in the retrieval
`device or in an information delivering apparatus such as a data
`access terminal. Alternatively the data decryption function
`can be shared amongst one or more of these devices. The
`skilled person will be aware of a range of suitable encryption/
`decryption techniques, including Pretty Good Privacy (Reg-
`
`Page 00020
`
`Page 00020
`
`
`
`US 7,942,317 B2
`
`3
`istered Trade Mark) and PKI (Public Key Infrastructure).
`Normally when the downloaded data is encrypted a decryp-
`tion key must be supplied. This can be generated automati-
`cally by the data access terminal or data access service pro-
`vider or it can be entered by the user into the data access
`terminal or into the mobile data retrieval device.
`
`The data storage means and/or the retrieval device can be
`provided with access control means to prevent unauthorized
`access to the downloaded data. Additionally or alternatively,
`use control means can be provided to stop or provide only
`limited access of the user to the downloaded data in accor-
`
`dance with the amount paid. These access and use control
`functions may in some embodiments be combined, permitted
`use controlling access or permitted access controlling use.
`Thus, for example, a complete set of data information relating
`to a particular topic, a particular music track, or a particular
`software package might be downloaded, although access to
`part ofthe data set might thereafter be controlled by payments
`made by a user at a later stage. In this way, a user could pay to
`enable an extra level on a game or to enable further tracks of
`an album.
`In embodiments where the access or use control means is
`
`responsive to the payment validation means, access or use
`control information may be stored with the downloaded data
`or in a separate storage area, for example in the payment
`validation means. The user’s access to the downloaded data
`
`could advantageously be responsive to the payment valida-
`tion means, for example, by means of a control line coupling
`the payment validation means with a memory access or
`decryption control element.
`In one embodiment the data storage means comprises an
`electronic memory card or smart card and the mobile data
`retrieval device is provided with a slot to receive the card.
`Preferably the card is a push-fit within the retrieval device,
`and retention of the card may be effected by pressure from
`electrical interface connections and/or resilience of the hous-
`
`ing, or by using a resilient retaining means. In a preferred
`embodiment the retrieval device includes an audio output and
`a display, to play a downloaded track and to show information
`about the track and/or an accompanying video.
`To download data onto the data storage means the user can
`employ a data access terminal coupled to the intemet. The
`terminal can directly validate payment; for example in the
`case of a smart card charged with electronic cash it can deduct
`a cash value from the card. Alternatively it can communicate
`with a bank or other financial services provider to control
`payment. In a preferred embodiment, however, the terminal
`connects to a data access service provider which provides a
`portal to other sites and which validates payment and then
`forwards data from a data supplier to the user’s local access
`terminal. The data access service provider may alternatively
`forward payment validation information and/or information
`from the payment validation authority to the data supplier for
`control by the supplier of the data supplied. Thus, access to
`the payment validation system and/or data for downloading
`may be entirely controlled by the data supplier.
`Data held on the data storage means may advantageously
`include data relating to the user’s or payer’s usage of the
`system. This information may include, for example, informa-
`tion on a user’ s spending pattern, information on data suppli-
`ers used and information on the downloaded data. This infor-
`
`mation may be accessed by the data supplier and/or data
`access service provider and can be used for targeted market-
`ing or loyalty-based incentive schemes such as air miles or the
`like.
`
`The data access terminal may be a conventional computer
`or, alternatively, it may be a mobile phone. Wireless Applica-
`
`10
`
`15
`
`20
`
`25
`
`30
`
`35
`
`40
`
`45
`
`50
`
`55
`
`60
`
`65
`
`4
`
`tion Protocol (WAP) and i-mode allow mobile phones to
`efiiciently access the intemet and this allows a mobile phone
`to be used to download data to the data storage means, advan-
`tageously, directly. The data storage means can, if desired,
`incorporate the functionality of a mobile phone SIM (Sub-
`scriber Identity Module) card, which cards already include a
`user identification means, to allow user billing through the
`phone network operator.
`In a preferred embodiment the downloaded data is MP3 or
`other encoded audio data, but the system finds more general
`application for other data types. For example, download data
`can include software, and particularly games, share price
`information, current news information, transport timetable
`information, weather information and catalog shopping
`information. The downloaded information may also include
`compressed video data. The storage capacity of the data stor-
`age means is adaptable to suit the type of data intended to be
`downloaded; for example, 32 megabytes is sufficient for CD
`quality music, but for video it is preferable that the data
`storage means has a capacity of 128 megabytes or greater.
`In another aspect, the invention provides a portable data
`carrier comprising an interface for reading and writing data
`from and to the carrier; non-volatile data memory, coupled to
`the interface, for storing data on the carrier; non-volatile
`payment data memory, coupled to the interface, for providing
`payment data to an external device.
`These features allow the data carrier to store both payment
`data and content data, thus providing the advantages outlined
`above. Depending upon the payment system used, the pay-
`ment data memory may also store code for validating or
`confirming a payment to an external payment system. The
`payment data will normally be linked to a card or card holder
`identification data for payment by the card holder. The non-
`volatile memory ensures that stored content and payment data
`is retained in the data carrier when the data carrier is not
`
`receiving power from an external source. Thus “non-volatile”
`encompasses, for example, low-power memory whose con-
`tents are retained by a battery back-up system. In one embodi-
`ment the payment data memory comprises EEPROM and the
`content data memory comprises Flash memory, but other
`types of content data memory, such as optical, for example,
`holographic, data memory can also be used. The data carrier
`may also be integrated into other apparatus, such as a mobile
`communications device.
`
`Preferably, the portable data carrier further comprises a
`program store for storing code implementable by a processor;
`and a processor, coupled to the content data memory, the
`payment data memory, the interface and to the program store
`for implementing code in the program store, wherein the code
`comprises code to output payment data from the payment
`data memory to the interface and code to provide external
`access to the data memory.
`Normally, the (content) data memory allows both write and
`read access for both storing and retrieving data, but in some
`embodiments the content data memory may be read-only
`memory (ROM). In such embodiments, content may be pre-
`loaded onto the carrier and payment may then be made for
`permission to access the pre-loaded data.
`Preferably, the data carrier also stores a record of access
`made to the content data and updates this in response to
`external access, preferably read access, made to the data
`memory. The carrier may also store content use rules pertain-
`ing to allowed use of stored data items. These use rules may
`be linked to payments made from the card to provide payment
`options such as access to buy content data outright; rental
`access to content data for a time period or for a specified
`number of access events; and/or rental/purchase, for example
`
`Page 00021
`
`Page 00021
`
`
`
`US 7,942,317 B2
`
`5
`where rental use is provided together with an option to pur-
`chase content data at the reduced price after rental access has
`expired.
`Thus where the data carrier stores, for example, music, the
`purchase outright option may be equivalent to the purchase of
`a compact disc (CD), preferably with some form of content
`copy protection such as digital watermarking.
`In this
`example, the rental or subscription payment option may be a
`pay-per-play option, and with this option payment may either
`be before or after access to the stored data so that the carrier
`
`may operate in either a debit or credit payment mode.
`The portability ofthe data carrier potentially allows it to be
`used to access content or, in the example, play music without
`the need to be linked to a communications system or to be
`on-line to the internet. By providing a use record memory on
`the data carrier, use of the stored data can be tracked while
`ff-line and then any necessary payment can be made when the
`data carrier is next coupled to a communication system. This
`allows the data carrier to operate in a credit mode. In a debit
`mode, the additional storage of use rules facilitates the regu-
`lation of access to content data stored on the carrier without
`
`the need for further exchange of payment/use data with an
`external system to validate the use.
`By combining digital rights management with content data
`storage using a single carrier, the stored content data becomes
`mobile and can be accessed anywhere while retaining control
`over the stored data for the data content provider or data
`copyright owner. Preferably,
`the data carrier also stores
`access control data, such as a user ID and a password, as the
`stored data may be valuable. The access control data may be
`combined with access control to the payment data, which is
`typically by means ofa PIN (Personal Identification Number)
`to simplify access to valued content stored on the carrier.
`In one embodiment the stored content data is encrypted and
`a unique password or PIN and/or biometric data is required
`for decryption. The data carrier may be arranged so that the
`content is erased after a predetermined number of incorrect
`access attempts. Additionally or alternatively, a permanently
`stored flag may be set and/or a hardware modification (such as
`a fusable link) may be made to prevent the data carrier from
`functioning for further data storage/retrieval. Preferably,
`however, access to any stored value/payment data is never-
`theless retained.
`
`Supplementary data may also be stored on