12.07.2015 Views

DCI Specs - Digital Cinema Initiatives

DCI Specs - Digital Cinema Initiatives

DCI Specs - Digital Cinema Initiatives

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

• Log Data – Security event information that is recorded and stored within theSecurity Entity (SE), where such an event took place or was observed.• Log Record – Standardized XML structure representing a discrete logged event.• Log Report – Standardized XML structure containing one or more log recordsspanning a continuous sequence in time. The log record content in a report isintended to be organized by class, and may be filtered prior to delivery accordingto specified criteria (Rights Owner, CPL, etc.).Following the above definitions, a basic logging process is described:• Surrounding a showing will be a number of security events that result in loggeddata. Discrete logged event data shall be placed in an XML structure called arecord.• A number of records are collected in sequence and by class to make up logreports.• A complete (unfiltered) report is useful for transferring entire sets of log data forarchiving or post-processing outside of the security system.• A “filtered” report is useful for responding to a request for log data according tospecified bounds (e.g., report the SE key usage records for CPL(id) for specificdate(s) and time(s)).• Reports may be delivered via the theater network using log messages (IntratheaterMessages), or simply transferred to a physical device (e.g., USBremovable flash memory).9.4.6.3.1. Logging Requirements1. Logging subsystem implementations shall not affect the ability of Exhibition tooperate their projection systems in a standalone fashion.2. Security Entities (SE) shall have normative requirements for the specific logdata to be recorded for each record (see see Section 9.4.6.3.7 Security LogRecords and Section 9.4.6.3.8 Log Record Information).3. Log records and reports shall be protected from undetected alteration(integrity and authentication) or deletion (continuity).4. Log records and reports shall be non-repudiable and traceable back to thesource SE device (i.e., where the logged event took place).5. Log records and reports shall carry proof of authenticity, which does not relyon the trustworthiness of the systems and channels they pass through.Systems or devices which communicate, handle or store log messages (orrecords) need not be trusted or secure.6. The content of log records shall be protected from exposure to parties otherthan the intended recipient (see Section 9.4.6.3.6 Log Filtering).7. Each Rights Owner shall be able to cryptographically confirm the integrity andcontinuity of log records and their log data independently of other RightsOwners (see Section 9.4.6.3.6 Log Filtering).8. Image Media Block SMs shall collect log information from all remote SecureProcessing Blocks in the suite it enables at the earliest equipment idle timebetween scheduled showings. To assure timely collection, TLS sessions shall<strong>DCI</strong> <strong>Digital</strong> <strong>Cinema</strong> System Specification v.1.2 Page 130

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!