5. ICMP
.pem
ICMP
Communicator,
Commander,
Web Commander.
Studios
Device
manufacturer
KDM DCP
Content distributors (Key supplier)
TDL
Barco signed
X.509 device certificate
(PKI CA)
BARCO-ICMP-0123456789.pem
QR
0123456789
Image 5-12
Trusted Device List (TDL)
The G oal of the T DL is to maintain timely and accurate information on participating auditoriums so that pa rticipating
subscribers c an o btain information needed to issue K DMs . The TDL has several data sources: Device manufacturers,
Exhibitors, Deployment E ntities, Integrators, Service Providers (interacting with Ex hibitors), regional authorities and
Support.
Public Key Infrastructure (PKI)
PKI is a framework for creating a secure method for exchanging information based on public key c ryptography. The
foundation of a PKI is the certifica
te authority (CA), which issues digital certificates that authenticate the identity of or-
ganizations and individuals over a public system such as the Internet. The certificates are also used to sign messages,
which ensures that messages have not been tampered with.
*.pem
Privacy-enhanced Electronic Mail. File format used to distribute d igital signed certificates. Base64 encoded DE R
certificate, e n closed between "-----B EGIN CERTI FICATE-- ---" an d "-----END CERTIF I CATE----- "
Key Delivery Messag e (KDM)
The security key fo r each movie is delivered in a unique KDM for each digital cinema server. The securit y key is
encrypted within the K DM, which means that the de livery of a KDM to the wrong server or wr ong location will not work,
and thus such errors cannot
compromise the se curity of the movie. The K D M is a s mall file, and is typically ema iled to
the exhibitor. To create the correct set of KDMs for a site requires knowledge of the digital certificate in the projection
system´s media block.
R5906787 THOR 26/01/2018 49