• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
  • Skip to footer

mkpeReport

top analysis covering digital cinema, 3-D, HFR, and laser illumination

  • Reports
  • About
  • mkpe.com
  • cinepedia.com

The KDM You Know May Not Be the KDM You Need

March 2016 by Michael Karagosian

If the FBI had the patience, it could wait for quantum computers to emerge that likely will make a walk in the park of present-day encryption. The good news is that the crypto community doesn’t expect such computers to emerge until around 2030. The bad news is that your iPhone will be long dismantled and recycled by that time, encouraging the FBI to find faster means to break into your top secret encrypted iMessages to family and friends. For digital cinema manufacturers who can afford to wait, encryption obsolescence is your friend, as it’s going to drive a lot of sales. But for those making media blocks, change will come sooner than you think. The KDM you know is doomed.

The US National Institute of Standards and Technology (NIST) establishes the security policies employed by digital cinema. Security is an ongoing process, and over time, security standards must get tougher to keep up with advances in technology. The KDM employs a “public” key-driven asymmetric encryption on the content keys and other secrets that it carries, in a manner that allows the media block to decrypt it with a “private” key. The nature of the encryption method used will be disallowed in new designs after December 2017. (Unless, of course, NIST moves the deadline.) The engineering changes required are likely to be tedious, but probably less onerous than the process of deciding and documenting the changes in DCI and SMPTE.

In practice, a revised KDM means that there will be dual KDM types in the field. But unlike the DCP, which is one-to-many in nature, KDMs are one-to-one. That is, a KDM will only work with one media block. If a media block is designed to accept the new KDM-type, then the KDM generation process must accommodate it. Accurate information will be needed at the time of KDM generation to insure that the right type is generated, but, fortunately, duplicate versions of KDMs, old and new, will not be needed.

DCI’s security consultant, Tony Wechselberger, has diligently waved the flag to warn that the deadline is on the horizon. But it appears this is one of those areas where nothing will get done until an emergency occurs. The reason is simple. The engineers needed to develop new products are likely the same engineers that will be charged with the formation of revisions to current specifications. With small exceptions, media block specifications have not changed so significantly as to cause an outburst of new designs. But the deadline almost assures that there will be a rush to get new product tested before the end of 2017. Pity the one who misses the deadline, as that’s the person who’ll shoulder the burden of pushing revisions through the committees.

Filed Under: Servers and IMBs, Technical Bodies Tagged With: DCI, KDM, NIST

Primary Sidebar

Search

Topics

  • 3-D
  • Accessibility
  • Alt Content & Advertising
  • Anti-Piracy
  • Color
  • Communications
  • Deployment Entities
  • Distributors
  • Exhibitors
  • Fulfillment
  • High Dynamic Range
  • Higher Frame Rates
  • Installations
  • Patents
  • Projectors
  • Servers and IMBs
  • Sound
  • Technical Bodies
  • Theatre Management Systems
  • Trade Organizations and Shows

Full Archives

a publication of
MKPE Consulting LLC

Footer

Important Stuff

  • About
  • Privacy Policy

Archives

  • Category & Monthly Archives
Archives date back to 2008.

MKPE

mkpeReport is a publication of MKPE, a world-class consultancy building business at the crossroads of cinema and technology.
Learn more about MKPE.

copyright © 2008 - 2026 mkpe consulting llc

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}