12.07.2015 Views

DCI Specs - Digital Cinema Initiatives

DCI Specs - Digital Cinema Initiatives

DCI Specs - Digital Cinema Initiatives

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

4. Projector SPB designs shall not allow physical access to signals runningbetween the companion SPB and the projector SPB without breaking themarriage, in which case a re-installation shall be required and tampering willbe observed by the authorized installer (see Section 9.5.2.4 SpecificRequirements for Type 2 Secure Processing Blocks).5. The projector SPB shall accept the decrypted streaming image signal fromeither the Image Media Block (IMB) or Link Decryptor Block (LDB) SPB andprocess accordingly.6. The projector SPB shall provide at least a type 2 image signal path andtamper/access protection container. The physical requirements for a type 2SPB are given in Section 9.5.2.4 Specific Requirements for Type 2 SecureProcessing Blocks.7. The projector SPB shall include a secure silicon host device (see Section9.5.2 Robustness and Physical Implementations) to support an identity keypair (private key), and appropriate intelligence for support of the following:• Authentication per implementation options in Section 9.4.3.6.5 SPBSystems Implementation and Standards Options• Electronic marriage and SPB “open” signal• SPB access door opening event detection• Secure silicon device operational status (e.g., keys zeroed, etc.)9.4.3.6.2. Normative Requirements: Link Decryptor Block (LDB)The following requirements are normative where Link Encryption is used:1. As part of the installation (mechanical connection to projector and electricalinitiation), perform electrical and logical marriage with the projector SPB.Electrical connection integrity between the Link Decryptor Block and theprojector SPB shall be monitored 24/7. Should the integrity of the connectionbe broken, log the event and require a re-installation process beforebecoming active again.Breaking of the LDB/projector SPB marriage shall not zero the LDB SPBlong-term identity keys (RSA private keys).2. Perform content link decryption, and pass the decrypted streaming image tothe appropriate circuitry inside the projector SPB.3. Respond to the Security Manager’s (SM’s) initiatives in establishing aTransport Layer Security (TLS) session and Link Decryptor Blockauthentication. Maintain this session until commanded to terminate.4. Link Decryptor Blocks (LDBs) shall not establish security communicationswith more than one SM at a time.5. The LDB shall contain a UTC time reference clock which is battery backedand operative for time stamping log events under powered and un-poweredconditions. The LDB shall communicate time information with the SM usingstandardized Intra-Theater Messaging.6. Respond to SM “status” queries, and other Intra-theater Messages (ITMs)and SM commands as necessary to support SM behavior requirements.<strong>DCI</strong> <strong>Digital</strong> <strong>Cinema</strong> System Specification v.1.2 Page 114

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!