From 490a0b97c708c36dfbc6f5ec5d44182f751b5e07 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Maxime=20B=C3=A9dard?= Date: Mon, 17 Apr 2023 17:29:27 -0400 Subject: [PATCH 01/44] Detail the file structure of frame encrypted files --- doc/RecordingControl.xml | 72 ++++++++++++++++++++++++++++++++++++++-- 1 file changed, 69 insertions(+), 3 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index e1080ed8e..ec5c4a9cc 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -182,6 +182,7 @@ Change Request 2061, 2063, 2065, 2109 RFC 6381 — The 'Codecs' and 'Profiles' Parameters for "Bucket" Media Types <> ONVIF Core Specification <> ONVIF Schedule Service Specification <> + W3C "cenc" Initialization Data Format <> Terms and Definitions @@ -2001,10 +2002,10 @@ secfrac = "." 1*6DIGIT -
- Encryption +
+ Frame Encryption - A device signaling support for recording to an external target with encryption shall support writing encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). + A device signaling support for recording to an external target with frame encryption shall support writing encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). Each Encryption entry configured for a recording covers a distinct set of tracks for which to apply the encryption, identified by the Track element. If an encryption entry contains no Track elements, it covers all tracks of the recording. If an encryption entry contains one or more Track elements, it covers the tracks indicated by the track tokens contained in these elements. @@ -2038,6 +2039,71 @@ secfrac = "." 1*6DIGIT If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments. +
+ Encryption Keys Storage + + When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with "Protection system specific header" (or 'pssh') boxes [ISO/IEC 23001-7]. + +
+ Standard CENC system + + When a file is frame encrypted a pssh "CENC" box SHALL be present in the file according to [W3C "cenc" Initialization Data Format]. This is independant of the Frame Encryption Mode (CENC or CBCS).
+ "Version" field SHALL be "1" and the "SystemID" field SHALL be "1077efec-c0b2-4d02-ace3-3c1e52e2fb4b".
+ The "KID_count" SHALL be "1" with "KID" field equal to the value of KID configured for the encryption entry as the key identifier. +
+
+
+ Key rotation system + + When key rotation is configured (see section X.Y) an additional pssh box SHALL be present in the file, defined here.
+ "Version" field SHALL be "1" and the "SystemID" field SHALL be "ca774354-6f98-41b6-b17a-b15f7bbf678a".
+ The "KID_count" SHALL be "1" with "KID" field equal to a generated UUID by the device. This "KID" SHOULD be the same in all files until the symmetric key changes.
+ "DataSize" SHALL be the size of the following "Data" byte array, containing this binary structure: +
+ + + + CertificateThumbprintSize (uint) + + + Size of the CertificateThumbprint field. SHALL be '20'. + + + + + CertificateThumbprint (byte[CertificateThumbprintSize]) + + + Thumbprint of the certificate used to encrypted the symmetric key (Computed using SHA-1). + + + + + EncryptedKeySize (uint) + + + Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the Certificate. + + + + + EncryptedKey (byte[EncryptedKeySize]) + + + The symmetric key (identified by KID) used for frame encryption, encrypted with the Certificate. + + + + + + + This data structure and its containing "pssh" box defined here allow for a client application to decrypt the symmetric key and then decrypt the frames with it. The presence of the CENC pssh is highly recommended by W3C as it increase compatibility with standard players. However, if key rotation is being used the client application may not have access to the symmetric key generated by the device. The second "pssh" box contains the required information to obtain the symmetric key, provided it has access to the Certificate's private key (directly or through a key server, for example). A client application would be aware of this fact indicated by the presence of the second "pssh" box. This box SHOULD not be present if the symmetric key was configured by the user (no key rotation). Additionnal "pssh" boxes COULD be present to support alternative DRM systems. + + + Note that DRM systems and client implementations are outside the scope of this specification. + +
+
Object attributes From 060043fd9de1b6d72292b0754f506233f6481975 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Fri, 31 Mar 2023 04:36:44 -0400 Subject: [PATCH 02/44] Support key rotation for cloud recording --- doc/RecordingControl.xml | 7 ++++++- wsdl/ver10/schema/onvif.xsd | 5 +++++ 2 files changed, 11 insertions(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index ec5c4a9cc..eb3596a2c 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2033,8 +2033,13 @@ secfrac = "." 1*6DIGIT The device shall create an individual initialization vector for each segment. - The device shall encrypt with the Key configured for the encryption entry as the encryption key. The device shall interpret the KID configured for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. + When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry as the encryption key, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. + KeyRotationDuration must be a positive duration value. + New segments shall use the latest generated key for its encryption. + + When KeyRotationDuration is set, the Key shall be the public key from an asymmetric key pair, with the private key only known by the client. + The client shall use the private key to decrypt the key file containing the keys generated to encrypt the tracks. If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments. diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 56c50796e..9bd23f3a2 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7693,6 +7693,11 @@ and sample rate. + + + Frequency at which the device shall generate a new key to encrypt a new segment. If not specified, key rotation is disabled. + + From 32bdfbc23c671a40940b28783a7da25b9ccb4db5 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 6 Apr 2023 13:35:05 -0400 Subject: [PATCH 03/44] Clarify usage of sym key generated by key rotation --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index eb3596a2c..e36f1f773 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2034,7 +2034,7 @@ secfrac = "." 1*6DIGIT The device shall create an individual initialization vector for each segment. The device shall interpret the KID configured for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. - When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry as the encryption key, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. + When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. KeyRotationDuration must be a positive duration value. New segments shall use the latest generated key for its encryption. From 51a188f13bb4afa6c1760d6c275636458287d342 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Wed, 19 Apr 2023 09:23:09 -0400 Subject: [PATCH 04/44] Review formatting and wording of the latest changes --- doc/RecordingControl.xml | 42 +++++++++++++++++++++++++++------------- 1 file changed, 29 insertions(+), 13 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index e36f1f773..f8f3314a1 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2037,9 +2037,8 @@ secfrac = "." 1*6DIGIT When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. KeyRotationDuration must be a positive duration value. New segments shall use the latest generated key for its encryption. - + When KeyRotationDuration is set, the Key shall be the public key from an asymmetric key pair, with the private key only known by the client. - The client shall use the private key to decrypt the key file containing the keys generated to encrypt the tracks. If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments. @@ -2047,23 +2046,34 @@ secfrac = "." 1*6DIGIT
Encryption Keys Storage - When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with "Protection system specific header" (or 'pssh') boxes [ISO/IEC 23001-7]. + When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with 'Protection system specific header' (or 'pssh') boxes [ISO/IEC 23001-7].
Standard CENC system - When a file is frame encrypted a pssh "CENC" box SHALL be present in the file according to [W3C "cenc" Initialization Data Format]. This is independant of the Frame Encryption Mode (CENC or CBCS).
- "Version" field SHALL be "1" and the "SystemID" field SHALL be "1077efec-c0b2-4d02-ace3-3c1e52e2fb4b".
- The "KID_count" SHALL be "1" with "KID" field equal to the value of KID configured for the encryption entry as the key identifier. + When a file is frame encrypted a pssh 'CENC' box SHALL be present in the file according to [W3C 'cenc' Initialization Data Format]. + This is independent of the EncryptionMode. +
+ + 'Version' field SHALL be '1' and the 'SystemID' field SHALL be '1077efec-c0b2-4d02-ace3-3c1e52e2fb4b'. + + + The 'KID_count' SHALL be '1' with 'KID' field equal to the value of KID configured for the encryption entry as the key identifier.
Key rotation system - When key rotation is configured (see section X.Y) an additional pssh box SHALL be present in the file, defined here.
- "Version" field SHALL be "1" and the "SystemID" field SHALL be "ca774354-6f98-41b6-b17a-b15f7bbf678a".
- The "KID_count" SHALL be "1" with "KID" field equal to a generated UUID by the device. This "KID" SHOULD be the same in all files until the symmetric key changes.
- "DataSize" SHALL be the size of the following "Data" byte array, containing this binary structure: + When KeyRotationDuration is configured (see , an additional pssh box SHALL be present in the MP4 file, as defined here. +
+ + 'Version' field SHALL be '1' and the 'SystemID' field SHALL be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. + + + The 'KID_count' SHALL be '1' with 'KID' field equal to a generated UUID by the device. This 'KID' SHOULD be the same in all segments until the symmetric key changes. + + + 'DataSize' SHALL be the size of the following 'Data' byte array, containing this binary structure: @@ -2087,7 +2097,7 @@ secfrac = "." 1*6DIGIT EncryptedKeySize (uint) - Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the Certificate. + Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. @@ -2095,14 +2105,20 @@ secfrac = "." 1*6DIGIT EncryptedKey (byte[EncryptedKeySize]) - The symmetric key (identified by KID) used for frame encryption, encrypted with the Certificate. + The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate. - This data structure and its containing "pssh" box defined here allow for a client application to decrypt the symmetric key and then decrypt the frames with it. The presence of the CENC pssh is highly recommended by W3C as it increase compatibility with standard players. However, if key rotation is being used the client application may not have access to the symmetric key generated by the device. The second "pssh" box contains the required information to obtain the symmetric key, provided it has access to the Certificate's private key (directly or through a key server, for example). A client application would be aware of this fact indicated by the presence of the second "pssh" box. This box SHOULD not be present if the symmetric key was configured by the user (no key rotation). Additionnal "pssh" boxes COULD be present to support alternative DRM systems. + This data structure and its containing 'pssh' box defined here allows for a client application to decrypt the symmetric key and then decrypt the frames with it. + The presence of the CENC 'pssh' box is highly recommended by W3C as it increases compatibility with standard players. + However, if KeyRotationDuration is being used, the client application may not have access to the symmetric key generated by the device. + The second 'pssh' box contains the required information to obtain the symmetric key, provided it has access to the certificate's private key (directly or through a key server, for example). + A client application would be aware of this fact indicated by the presence of the second 'pssh' box. + This box SHOULD not be present if the symmetric key was configured by the user (no key rotation). + Additionnal 'pssh' boxes COULD be present to support alternative DRM systems. Note that DRM systems and client implementations are outside the scope of this specification. From 127560b91d4f0971d247a50053fcfd91b7669568 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Fri, 28 Apr 2023 08:33:33 -0400 Subject: [PATCH 05/44] Clarified wording for the initialization vector --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index f8f3314a1..adfff9329 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2032,7 +2032,7 @@ secfrac = "." 1*6DIGIT - The device shall create an individual initialization vector for each segment. + The device shall create a unique initialization vector for each segment. The device shall interpret the KID configured for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. KeyRotationDuration must be a positive duration value. From 1a7d3fdfa43d8f67c4176ad02243583d3058db76 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Tue, 23 May 2023 11:37:09 -0400 Subject: [PATCH 06/44] Add certificateId to the data model --- doc/RecordingControl.xml | 3 +-- wsdl/ver10/schema/onvif.xsd | 5 +++++ 2 files changed, 6 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index adfff9329..e2c92bda5 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2037,8 +2037,7 @@ secfrac = "." 1*6DIGIT When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. KeyRotationDuration must be a positive duration value. New segments shall use the latest generated key for its encryption. - - When KeyRotationDuration is set, the Key shall be the public key from an asymmetric key pair, with the private key only known by the client. + The device shall include one or more PSSH boxes as defined in when frame encryption is configured. If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments. diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 9bd23f3a2..cf9ad2df7 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7693,6 +7693,11 @@ and sample rate. + + + List of certificates used to encrypt the symmetric key for the PSSH box. + + Frequency at which the device shall generate a new key to encrypt a new segment. If not specified, key rotation is disabled. From 6a3141eca97d902badc32eb8055160a344b58536 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Mon, 12 Jun 2023 13:57:11 -0400 Subject: [PATCH 07/44] Update pssh box to support multiple certificates --- doc/RecordingControl.xml | 21 +++++++++++++++++++++ 1 file changed, 21 insertions(+) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index e2c92bda5..8160733d0 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2075,6 +2075,27 @@ secfrac = "." 1*6DIGIT 'DataSize' SHALL be the size of the following 'Data' byte array, containing this binary structure: + + + EncryptedKeyEntryCount (uint) + + + Number of entries containing encryption information required to decrypt the symmetric key. SHALL be 1 or more. + + + + + EncryptedKeyEntry ([EncryptionEntryCount]) + + + A list of entries containing encryption information required to decrypt the symmetric key. + + + + + + + The EncryptedKeyEntry model is defined as: CertificateThumbprintSize (uint) From 8e197fd942b2599b1fe0a39a01508a6212ebadb7 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 15 Jun 2023 08:49:08 -0400 Subject: [PATCH 08/44] Rename and change type for CertificateId in RecordingEncryption --- wsdl/ver10/schema/onvif.xsd | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index cf9ad2df7..5de8ed60e 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7693,7 +7693,7 @@ and sample rate. - + List of certificates used to encrypt the symmetric key for the PSSH box. From 3c565d8dd3b72b222d23069bd07539d19607de79 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 22 Jun 2023 10:32:34 -0400 Subject: [PATCH 09/44] Apply code review suggestions --- doc/RecordingControl.xml | 10 +++++----- wsdl/ver10/schema/onvif.xsd | 7 ++++++- 2 files changed, 11 insertions(+), 6 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 7ad47906e..a1c212d89 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2011,7 +2011,7 @@ secfrac = "." 1*6DIGIT
- Frame Encryption + Frame encryption A device signaling support for recording to an external target with frame encryption shall support writing encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). Each Encryption entry configured for a recording covers a distinct set of tracks for which to apply the encryption, identified by the Track element. @@ -2051,7 +2051,7 @@ secfrac = "." 1*6DIGIT If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments.
- Encryption Keys Storage + Encryption keys storage When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with 'Protection system specific header' (or 'pssh') boxes [ISO/IEC 23001-7]. @@ -2093,7 +2093,7 @@ secfrac = "." 1*6DIGIT - EncryptedKeyEntry ([EncryptionEntryCount]) + EncryptedKeyEntries (EncryptedKeyEntry[EncryptionEntryCount]) A list of entries containing encryption information required to decrypt the symmetric key. @@ -2145,8 +2145,8 @@ secfrac = "." 1*6DIGIT However, if KeyRotationDuration is being used, the client application may not have access to the symmetric key generated by the device. The second 'pssh' box contains the required information to obtain the symmetric key, provided it has access to the certificate's private key (directly or through a key server, for example). A client application would be aware of this fact indicated by the presence of the second 'pssh' box. - This box SHOULD not be present if the symmetric key was configured by the user (no key rotation). - Additionnal 'pssh' boxes COULD be present to support alternative DRM systems. + This box should not be present if the symmetric key was configured by the user (no key rotation). + Additionnal 'pssh' boxes may be present to support alternative DRM systems. Note that DRM systems and client implementations are outside the scope of this specification. diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 14cf9fe96..92331f894 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7671,7 +7671,12 @@ and sample rate. - + + + + + + Key ID of the associated key for encryption. From e23cca761adb0297d77005e9e70c6a0fac042577 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Mon, 10 Jul 2023 14:06:09 -0400 Subject: [PATCH 10/44] Update the specification and wording to explicitely define the 2 encryption methods --- doc/RecordingControl.xml | 28 ++++++++++--------- wsdl/ver10/schema/onvif.xsd | 54 +++++++++++++++++++++++-------------- 2 files changed, 49 insertions(+), 33 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index a1c212d89..10ac9bd9a 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2040,14 +2040,20 @@ secfrac = "." 1*6DIGIT - The device shall create a unique initialization vector for each segment. - The device shall interpret the KID configured for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. - When KeyRotationDuration is not set, the device shall encrypt with the Key configured for the encryption entry, otherwise the device shall generate a new encryption key at the specified interval as defined by KeyRotationDuration. - KeyRotationDuration must be a positive duration value. - New segments shall use the latest generated key for its encryption. - The device shall include one or more PSSH boxes as defined in when frame encryption is configured. + StaticKey or Certificate elements are mutually exclusive. + + + When using StaticKey then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. + The device shall include a Standard CENC PSSH box. + + + When using Certificate then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using a Key rotation system PSSH box. + When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval as defined by KeyRotationDuration. + New segments shall use the latest generated Key for its encryption. + The device shall create a unique initialization vector for each segment. + Each encrypted file shall include the moov box containing the required PSSH box(es) according to the encryption entry configuration. If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments.
@@ -2055,7 +2061,7 @@ secfrac = "." 1*6DIGIT When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with 'Protection system specific header' (or 'pssh') boxes [ISO/IEC 23001-7]. -
+
Standard CENC system When a file is frame encrypted a pssh 'CENC' box SHALL be present in the file according to [W3C 'cenc' Initialization Data Format]. @@ -2068,11 +2074,8 @@ secfrac = "." 1*6DIGIT The 'KID_count' SHALL be '1' with 'KID' field equal to the value of KID configured for the encryption entry as the key identifier.
-
+
Key rotation system - - When KeyRotationDuration is configured (see , an additional pssh box SHALL be present in the MP4 file, as defined here. - 'Version' field SHALL be '1' and the 'SystemID' field SHALL be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. @@ -2142,10 +2145,9 @@ secfrac = "." 1*6DIGIT This data structure and its containing 'pssh' box defined here allows for a client application to decrypt the symmetric key and then decrypt the frames with it. The presence of the CENC 'pssh' box is highly recommended by W3C as it increases compatibility with standard players. - However, if KeyRotationDuration is being used, the client application may not have access to the symmetric key generated by the device. + However, if Certificate is being used, the client application may not have access to the symmetric key generated by the device. The second 'pssh' box contains the required information to obtain the symmetric key, provided it has access to the certificate's private key (directly or through a key server, for example). A client application would be aware of this fact indicated by the presence of the second 'pssh' box. - This box should not be present if the symmetric key was configured by the user (no key rotation). Additionnal 'pssh' boxes may be present to support alternative DRM systems. diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 92331f894..2b333c2e4 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -8,12 +8,13 @@ Recipients of this document may copy, distribute, publish, or display this docum THIS DOCUMENT IS PROVIDED "AS IS," AND THE CORPORATION AND ITS MEMBERS AND THEIR AFFILIATES, MAKE NO REPRESENTATIONS OR WARRANTIES, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO, WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, NON-INFRINGEMENT, OR TITLE; THAT THE CONTENTS OF THIS DOCUMENT ARE SUITABLE FOR ANY PURPOSE; OR THAT THE IMPLEMENTATION OF SUCH CONTENTS WILL NOT INFRINGE ANY PATENTS, COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS. IN NO EVENT WILL THE CORPORATION OR ITS MEMBERS OR THEIR AFFILIATES BE LIABLE FOR ANY DIRECT, INDIRECT, SPECIAL, INCIDENTAL, PUNITIVE OR CONSEQUENTIAL DAMAGES, ARISING OUT OF OR RELATING TO ANY USE OR DISTRIBUTION OF THIS DOCUMENT, WHETHER OR NOT (1) THE CORPORATION, MEMBERS OR THEIR AFFILIATES HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES, OR (2) SUCH DAMAGES WERE REASONABLY FORESEEABLE, AND ARISING OUT OF OR RELATING TO ANY USE OR DISTRIBUTION OF THIS DOCUMENT. THE FOREGOING DISCLAIMER AND LIMITATION ON LIABILITY DO NOT APPLY TO, INVALIDATE, OR LIMIT REPRESENTATIONS AND WARRANTIES MADE BY THE MEMBERS AND THEIR RESPECTIVE AFFILIATES TO THE CORPORATION AND OTHER MEMBERS IN CERTAIN WRITTEN POLICIES OF THE CORPORATION. --> - + + @@ -7668,20 +7669,19 @@ and sample rate. - - + + + + + + - - - - - - + Key ID of the associated key for encryption. - + Key for encrypting content. @@ -7689,23 +7689,37 @@ and sample rate. - + + + + + - - Optional list of track tokens to be encrypted. - If no track tokens are specified, all tracks are encrypted and no other encryption configurations shall exist for the recording. - Each track shall only be contained in one encryption configuration. - + List of certificates used to encrypt the symmetric key for the PSSH box. - + - List of certificates used to encrypt the symmetric key for the PSSH box. + + Frequency at which the device shall generate a new key to encrypt a new segment. + If not specified, key rotation is disabled. + KeyRotationDuration must be a positive duration value. - + + + + + + + + - Frequency at which the device shall generate a new key to encrypt a new segment. If not specified, key rotation is disabled. + + Optional list of track tokens to be encrypted. + If no track tokens are specified, all tracks are encrypted and no other encryption configurations shall exist for the recording. + Each track shall only be contained in one encryption configuration. + From af7c1366cb3a5e03fe4b791c41412a9be1b86c13 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Mon, 24 Jul 2023 14:15:33 -0400 Subject: [PATCH 11/44] Update box definition by using ISOBMFF syntax --- doc/RecordingControl.xml | 138 +++++++++++++++++---------------------- 1 file changed, 60 insertions(+), 78 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 10ac9bd9a..b53d61338 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2064,95 +2064,77 @@ secfrac = "." 1*6DIGIT
Standard CENC system - When a file is frame encrypted a pssh 'CENC' box SHALL be present in the file according to [W3C 'cenc' Initialization Data Format]. + When a file is frame encrypted exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. This is independent of the EncryptionMode. + Additionnal types of 'pssh' boxes may be present to support alternative DRM systems, such as . - - 'Version' field SHALL be '1' and the 'SystemID' field SHALL be '1077efec-c0b2-4d02-ace3-3c1e52e2fb4b'. - - - The 'KID_count' SHALL be '1' with 'KID' field equal to the value of KID configured for the encryption entry as the key identifier. - +
+ Syntax + + See example of a CENC pssh box by W3C. +
+
+ Semantics + Version shall be '1'. + Flags shall be '0'. + SystemID shall be '1077efec-c0b2-4d02-ace3-3c1e52e2fb4b'. + KID_count be equal to the number of different keys used in the file. + KID, one for each RecordingEncryption. + DataSize shall be '0'. +
Key rotation system - 'Version' field SHALL be '1' and the 'SystemID' field SHALL be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. - - - The 'KID_count' SHALL be '1' with 'KID' field equal to a generated UUID by the device. This 'KID' SHOULD be the same in all segments until the symmetric key changes. - - - 'DataSize' SHALL be the size of the following 'Data' byte array, containing this binary structure: - - - - - EncryptedKeyEntryCount (uint) - - - Number of entries containing encryption information required to decrypt the symmetric key. SHALL be 1 or more. - - - - - EncryptedKeyEntries (EncryptedKeyEntry[EncryptionEntryCount]) - - - A list of entries containing encryption information required to decrypt the symmetric key. - - - - + The box contains the required information to obtain the symmetric key, provided it has access to the certificate's private key (directly or through a key server, for example) and then decrypt the frames with it. - The EncryptedKeyEntry model is defined as: - - - CertificateThumbprintSize (uint) - - - Size of the CertificateThumbprint field. SHALL be '20'. - - - - - CertificateThumbprint (byte[CertificateThumbprintSize]) - - - Thumbprint of the certificate used to encrypted the symmetric key (Computed using SHA-1). - - - - - EncryptedKeySize (uint) - - - Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. - - - - - EncryptedKey (byte[EncryptedKeySize]) - - - The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate. - - - - - - - This data structure and its containing 'pssh' box defined here allows for a client application to decrypt the symmetric key and then decrypt the frames with it. - The presence of the CENC 'pssh' box is highly recommended by W3C as it increases compatibility with standard players. - However, if Certificate is being used, the client application may not have access to the symmetric key generated by the device. - The second 'pssh' box contains the required information to obtain the symmetric key, provided it has access to the certificate's private key (directly or through a key server, for example). - A client application would be aware of this fact indicated by the presence of the second 'pssh' box. Additionnal 'pssh' boxes may be present to support alternative DRM systems. - - Note that DRM systems and client implementations are outside the scope of this specification. +
+ Syntax + +
+
+ Semantics + Version shall be '1'. + Flags shall be '0'. + SystemID shall be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. + KID_count shall be '1'. + KID is the generated UUID by the device. This KID should be the same in all segments until the symmetric key changes. + DataSize is the size in bytes of all the other fields present in this box following this field. + EncryptedKeyEntryCount Number of entries containing encryption information required to decrypt the symmetric key. Shall be 1 or more. + CertificateThumbprintSize Size of the CertificateThumbprint field. Shall be '20'. + CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key (Computed using SHA-1). + EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. + EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate. +
From ac2c8637af300f2053fe7e7bd2814539179defb6 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Mon, 24 Jul 2023 14:16:13 -0400 Subject: [PATCH 12/44] Add padding for encryption key --- doc/RecordingControl.xml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index b53d61338..fea0d7289 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -187,6 +187,7 @@ Change Request 2061, 2063, 2065, 2109 ISO/IEC 23001-7:2016 — Information technology — MPEG systems technologies — Part 7: Common encryption in ISO base media file format files <> ISO 8601-1:2019 — Date and time — Representations for information interchange — Part 1: Basic rules <> RFC 5234 — Augmented BNF for Syntax Specifications: ABNF <> + RFC 5652 — Cryptographic Message Syntax (CMS) <> RFC 6381 — The 'Codecs' and 'Profiles' Parameters for "Bucket" Media Types <> ONVIF Core Specification <> ONVIF Schedule Service Specification <> @@ -2133,7 +2134,7 @@ aligned(8) class KeyRotationSystemHeaderBox extends FullBox('pssh', version=1, f CertificateThumbprintSize Size of the CertificateThumbprint field. Shall be '20'. CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key (Computed using SHA-1). EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. - EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate. + EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate. Padding is done according to [RFC 5652].
From 470f3c9c7e2164a267829987972a221d6f8d3370 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 27 Jul 2023 10:11:06 -0400 Subject: [PATCH 13/44] Fix link reference --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index fea0d7289..99c94847a 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2082,7 +2082,7 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi unsigned int(32) DataSize = 0; } ]]> - See example of a CENC pssh box by W3C. + See W3C "cenc" Initialization Data Format for an example of this box.
Semantics From f5860a273d16c7234e87a5118f36f913d850ea92 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 27 Jul 2023 10:35:21 -0400 Subject: [PATCH 14/44] Update CENC to only require the box when using static key encryption --- doc/RecordingControl.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 99c94847a..599ec71f5 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2065,9 +2065,9 @@ secfrac = "." 1*6DIGIT
Standard CENC system - When a file is frame encrypted exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. + When a file is frame encrypted using a StaticKey then exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. This is independent of the EncryptionMode. - Additionnal types of 'pssh' boxes may be present to support alternative DRM systems, such as . + Additionnal types of 'pssh' boxes may be present to support alternative DRM systems.
Syntax From b8f1adbb8e35a673742ada1ea4835ce380667b12 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 27 Jul 2023 10:47:56 -0400 Subject: [PATCH 15/44] Update asymmetric key system description --- doc/RecordingControl.xml | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 599ec71f5..0c057f242 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2095,9 +2095,12 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi
- Key rotation system + Asymmetric key system - The box contains the required information to obtain the symmetric key, provided it has access to the certificate's private key (directly or through a key server, for example) and then decrypt the frames with it. + The box contains the encrypted symmetric key and the list of certificates that can be used to decrypt it. + The symmetric key is encrypted once for each configured certificate using the public key. + The client needs access to at least one of the certificates' private key to decrypt it (e.g. directly or through a key server). + The client can then decrypt the frames using this symmetric key. Additionnal 'pssh' boxes may be present to support alternative DRM systems. From dfa96bf7c0513d54970f68949d9e96b88a0ae9ed Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Mon, 31 Jul 2023 13:13:22 -0400 Subject: [PATCH 16/44] Update WSDL to return to old data model --- wsdl/ver10/schema/onvif.xsd | 31 +++++++++++++------------------ 1 file changed, 13 insertions(+), 18 deletions(-) diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 2b333c2e4..375ee8bdc 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7674,23 +7674,6 @@ and sample rate. - - - - - Key ID of the associated key for encryption. - - - - - - Key for encrypting content. - The device shall not include this parameter when reading. - - - - - @@ -7711,7 +7694,19 @@ and sample rate. - + + + Key ID of the associated key for encryption. + + + + + + Key for encrypting content. + The device shall not include this parameter when reading. + + + From 709cf987cf6370ea85f1dfc73f65e4036b50fa14 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Mon, 31 Jul 2023 13:25:55 -0400 Subject: [PATCH 17/44] Update spec to revert data model so as not to break compatibility --- doc/RecordingControl.xml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 0c057f242..b44dc197f 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2041,10 +2041,10 @@ secfrac = "." 1*6DIGIT - StaticKey or Certificate elements are mutually exclusive. + Key/KID and Certificate elements of the encryption entry are mutually exclusive. - When using StaticKey then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. + When using Key/KID then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. The device shall include a Standard CENC PSSH box. @@ -2065,7 +2065,7 @@ secfrac = "." 1*6DIGIT
Standard CENC system - When a file is frame encrypted using a StaticKey then exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. + When a file is frame encrypted using a Key/KID then exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. This is independent of the EncryptionMode. Additionnal types of 'pssh' boxes may be present to support alternative DRM systems. From 8475e50db44e40bcd1fc187863b35d41c3b4331d Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 3 Aug 2023 10:14:39 -0400 Subject: [PATCH 18/44] Fixed typo and remove unused type --- doc/RecordingControl.xml | 9 +++++---- wsdl/ver10/schema/onvif.xsd | 5 ----- 2 files changed, 5 insertions(+), 9 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index b44dc197f..cab3f14a0 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2048,8 +2048,8 @@ secfrac = "." 1*6DIGIT The device shall include a Standard CENC PSSH box. - When using Certificate then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using a Key rotation system PSSH box. - When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval as defined by KeyRotationDuration. + When using Certificate then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using a Asymmetric key system PSSH box. + When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval as defined by KeyRotationDuration, but still use the current key until the segment is finished. New segments shall use the latest generated Key for its encryption. @@ -2076,7 +2076,7 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi { unsigned int(8)[16] SystemID; unsigned int(32) KID_count; - for (i=1; i <= KID_count; i++){ + for (i=1; i <= KID_count; i++) { unsigned int(8)[16] KID; } unsigned int(32) DataSize = 0; @@ -2101,6 +2101,7 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi The symmetric key is encrypted once for each configured certificate using the public key. The client needs access to at least one of the certificates' private key to decrypt it (e.g. directly or through a key server). The client can then decrypt the frames using this symmetric key. + If tracks are encrypted using different keys, then one AsymmetricKeySystemHeaderBox will be present per KID. Additionnal 'pssh' boxes may be present to support alternative DRM systems. @@ -2109,7 +2110,7 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi
Syntax - - - - - From 1181d9091f3d9ac1a92d704bf36cc4a31a9cc857 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Wed, 23 Aug 2023 14:16:21 -0400 Subject: [PATCH 19/44] Rename Certificate to AsymmetricEncryption element in wsdl --- doc/RecordingControl.xml | 4 ++-- wsdl/ver10/schema/onvif.xsd | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index cab3f14a0..b8631f6bf 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2041,14 +2041,14 @@ secfrac = "." 1*6DIGIT - Key/KID and Certificate elements of the encryption entry are mutually exclusive. + Key/KID and AsymmetricEncryption elements of the encryption entry are mutually exclusive. When using Key/KID then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. The device shall include a Standard CENC PSSH box. - When using Certificate then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using a Asymmetric key system PSSH box. + When using AsymmetricEncryption then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using a Asymmetric key system PSSH box. When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval as defined by KeyRotationDuration, but still use the current key until the segment is finished. New segments shall use the latest generated Key for its encryption. diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 35a854f13..4784fc2de 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7669,7 +7669,7 @@ and sample rate. - + @@ -7702,7 +7702,7 @@ and sample rate. - + From a223d7af212627f4e96af811857487030df03661 Mon Sep 17 00:00:00 2001 From: Jean-Francois Levesque Date: Thu, 7 Sep 2023 10:12:16 -0400 Subject: [PATCH 20/44] Add mention that full key must be used for encryption --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index b8631f6bf..1135323a6 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2098,7 +2098,7 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi Asymmetric key system The box contains the encrypted symmetric key and the list of certificates that can be used to decrypt it. - The symmetric key is encrypted once for each configured certificate using the public key. + The symmetric key is encrypted once for each configured certificate using the public key (using their nominal encryption length). The client needs access to at least one of the certificates' private key to decrypt it (e.g. directly or through a key server). The client can then decrypt the frames using this symmetric key. If tracks are encrypted using different keys, then one AsymmetricKeySystemHeaderBox will be present per KID. From 6760db7f87ac59e213620c508ec049545daa9a71 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 25 Mar 2025 14:49:28 -0400 Subject: [PATCH 21/44] Capabilities & fix advanced security in onvif.xsd --- doc/RecordingControl.xml | 6 +++--- wsdl/ver10/recording.wsdl | 7 +++++++ wsdl/ver10/schema/onvif.xsd | 4 ++-- 3 files changed, 12 insertions(+), 5 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 874cbba53..236f356f3 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2125,11 +2125,11 @@ secfrac = "." 1*6DIGIT When using Key/KID then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. - The device shall include a Standard CENC PSSH box. + The device shall include a Standard CENC PSSH box according to . - When using AsymmetricEncryption then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using a Asymmetric key system PSSH box. - When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval as defined by KeyRotationDuration, but still use the current key until the segment is finished. + When using AsymmetricEncryption then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using the Asymmetric key system PSSH box as defined in . + When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval, but still use the current key until the segment is finished. New segments shall use the latest generated Key for its encryption. diff --git a/wsdl/ver10/recording.wsdl b/wsdl/ver10/recording.wsdl index 68e8dd453..794eb1350 100644 --- a/wsdl/ver10/recording.wsdl +++ b/wsdl/ver10/recording.wsdl @@ -139,6 +139,13 @@ IN NO EVENT WILL THE CORPORATION OR ITS MEMBERS OR THEIR AFFILIATES BE LIABLE FO + + + + Indicates if the device supports asymmetric encryption. + + + diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index 94d488d7c..bbc289a9f 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7683,7 +7683,7 @@ and sample rate. - + List of certificates used to encrypt the symmetric key for the PSSH box. @@ -7714,7 +7714,6 @@ and sample rate. - @@ -7724,6 +7723,7 @@ and sample rate. + From 8ee1e37ac45d1a7d64d600f2707c4356fa9d1cd3 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 25 Mar 2025 14:51:57 -0400 Subject: [PATCH 22/44] Cleanup references --- doc/RecordingControl.xml | 1 - 1 file changed, 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 236f356f3..8447f1938 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -195,7 +195,6 @@ Change Request 2061, 2063, 2065, 2109 ISO/IEC 23001-7:2016 — Information technology — MPEG systems technologies — Part 7: Common encryption in ISO base media file format files <> ISO 8601-1:2019 — Date and time — Representations for information interchange — Part 1: Basic rules <> RFC 5234 — Augmented BNF for Syntax Specifications: ABNF <> - RFC 5652 — Cryptographic Message Syntax (CMS) <> RFC 6381 — The 'Codecs' and 'Profiles' Parameters for "Bucket" Media Types <> ONVIF Core Specification <> ONVIF Schedule Service Specification <> From 48f27444c9018aff098161f9fb53b30666e6e5a6 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Wed, 7 May 2025 10:18:29 -0400 Subject: [PATCH 23/44] Add RSA & EC encryption strategies to recording --- doc/RecordingControl.xml | 195 +++++++++++------- .../hpkeEncryption.excalidraw.svg | 2 + 2 files changed, 121 insertions(+), 76 deletions(-) create mode 100644 doc/media/RecordingControl/hpkeEncryption.excalidraw.svg diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 8447f1938..2ad488187 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -98,7 +98,7 @@ Hasan Timucin Ozdemir - Added 5.21 ExportRecordedData command and corresponding capability flag in 5.24 Capabilitites + Added 5.21 ExportRecordedData command and corresponding capability flag in 5.24 Capabilitites Added 5.22 StopExportRecordedData Added 5.23 GetExportRecordedDataStatus @@ -390,7 +390,7 @@ Change Request 2061, 2063, 2065, 2109
External targets - The target interface allows configuration for devices that support recording to external storage targets. + The target interface allows configuration for devices that support recording to external storage targets. For authentication configuration see the related storage configuration APIs of the core specification. @@ -540,7 +540,7 @@ Change Request 2061, 2063, 2065, 2109 AutoCreateReceiver: If a request includes this field set to true and no source token is provided, the device shall create a receiver object (through the receiver service) and assign the ReceiverReference to the - SourceToken field. A device shall never report this parameter in a + SourceToken field. A device shall never report this parameter in a RecordingJobConfiguration. A device may reject a request that neither contains a SourceToken nor AutoCreateRecevier set to true. SourceTag: If the received RTSP stream contains multiple tracks of the same type, the SourceTag differentiates between those Tracks. @@ -552,7 +552,7 @@ Change Request 2061, 2063, 2065, 2109 Event recording A device signalling support for EventRecording via its capabilities shall support controling recording job activity via the EventFilter with the following set of - parameters: + parameters: @@ -1496,7 +1496,7 @@ Change Request 2061, 2063, 2065, 2109 duration on its next segment. The override duration shall not exceed 1 hour. - When a new override request is sent before the previous override has expired, the new override shall replace the + When a new override request is sent before the previous override has expired, the new override shall replace the previous override and the new expiration shall apply. @@ -1681,14 +1681,14 @@ Change Request 2061, 2063, 2065, 2109 Recording job state changes If the state field of the RecordingJobStateInformation structure changes, a device shall provide the following event: Topic: tns1:RecordingConfig/JobState - - - - - - - - + + + + + + + + ]]> The ElementItem Information shall be provided whenever the state of the different tracks is not unique. It can be omitted when the state of all tracks of a recording is consistent. @@ -1697,35 +1697,35 @@ Change Request 2061, 2063, 2065, 2109 Configuration changes If the configuration of a recording is changed, a device shall provide the following event: Topic: tns1:RecordingConfig/RecordingConfiguration - - - - - - - + + + + + + + ]]> If the configuration of a track is changed, a device shall provide the following event: Topic: tns1:RecordingConfig/TrackConfiguration - - - - - - - - + + + + + + + + ]]> If the configuration of a recording job is changed, a device shall provide the following event: Topic: tns1:RecordingConfig/RecordingJobConfiguration - - - - - - - + + + + + + + ]]>
@@ -1733,15 +1733,15 @@ Change Request 2061, 2063, 2065, 2109 Data deletion Whenever data is deleted, a device shall provide the following event: Topic: tns1:RecordingConfig/DeleteTrackData - - - - - - - - - + + + + + + + + + ]]>
@@ -1749,44 +1749,44 @@ Change Request 2061, 2063, 2065, 2109 Recording and track creation and deletion Whenever a recording is created, a device shall provide the following event: Topic: tns1:RecordingConfig/CreateRecording - - - - - - + + + + + + ]]> Whenever a recording is deleted, a device shall provide the following event: Topic: tns1:RecordingConfig/DeleteRecording - - - - - - + + + + + + ]]> Whenever a track is created, a device shall provide the following event: Topic: tns1:RecordingConfig/CreateTrack - - - - - - - + + + + + + + ]]> Whenever a track is deleted, a device shall provide the following event: Topic: tns1:RecordingConfig/DeleteTrack - - - - - - - + + + + + + + ]]>
@@ -1954,7 +1954,7 @@ SetRecordingJobMode(JobToken, Active) SegmentDuration configured for the recording, the device shall close the open segment of this span and open a new segment for this span. When closing the open segment of a span and opening a new segment for this span, there shall be no time gap - between the two segments. Note that the actual segment duration may vary and can be plus or + between the two segments. Note that the actual segment duration may vary and can be plus or minus one GOP size from the configured duration because a segment must start with an I-Frame.
The device shall generate each segment as a fragmented MP4 file according to ISO/IEC 14496-12, the ISO base media file format. @@ -2194,13 +2194,24 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, unsigned int(8)[16] SystemID; unsigned int(32) KID_count = 1; unsigned int(8)[16] KID; - unsigned int(32) DataSize; unsigned int(32) EncryptedKeyEntryCount; for (i=1; i <= EncryptedKeyEntryCount; i++) { + unsigned int(16) CertificateThumbprintAlgorithm; unsigned int(32) CertificateThumbprintSize; unsigned int(8)[CertificateThumbprintSize] CertificateThumbprint; - unsigned int(32) EncryptedKeySize; - unsigned int(8)[EncryptedKeySize] EncryptedKey; + unsigned int(16) EncryptionVersion; + unsigned int(32) EncryptionDataSize; + if (EncryptionVersion == 1) { + unsigned int(8)[EncryptionDataSize] EncryptedKey; + } else if (EncryptionVersion == 2) { + unsigned int(16) HpkeKem; + unsigned int(16) HpkeKdf; + unsigned int(16) HpkeAead; + unsigned int(8)[EncapsulatedSharedSecretSize] EncapsulatedSharedSecret; + unsigned int(16) EncryptedKeySize + unsigned int(8)[EncryptedKeySize] EncryptedKey; + } + } } ]]> @@ -2214,10 +2225,42 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, KID is the generated UUID by the device. This KID should be the same in all segments until the symmetric key changes. DataSize is the size in bytes of all the other fields present in this box following this field. EncryptedKeyEntryCount Number of entries containing encryption information required to decrypt the symmetric key. Shall be 1 or more. - CertificateThumbprintSize Size of the CertificateThumbprint field. Shall be '20'. + CertificateThumbprintAlgorithm defines the algorithm used to compute the thumbprint of the certificates. Those values are defined in the Security Baseline specification + CertificateThumbprintSize Size of the CertificateThumbprint field. CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key (Computed using SHA-1). + EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. + EncryptionDataSize defines the number of bytes used by the following bytes for this certificate. The next certificates, if any, will start after this number of bytes. + EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. + HpkeKem defines the KEM algorithm identifier used to encrypt the key with the current certificate. + HpkeHkdf defines the HKDF algorithm identifier used to encrypt the key with the current certificate. + HpkeAead defines the AEAD algorithm identifier used to encrypt the key with the current certificate. + EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. - EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate. Padding is done according to [RFC 5652]. +
+
+ Encryption Version 1 + + This version is defined for use when the certificate contains an RSA public key. When using this version, + the symmetric key is directly encrypted using the public key of the certificate and the RSA-OEAP padding scheme + as defined in [RFC 5652]. + +
+
+ Encryption Version 2 + + This version is defined for the use of the HPKE algorithm as defined in [RFC 9180]. It is used + when the certificate contains an EC public key. Using the public key of the certificate and the + algorithms defined in the HpkeKem, HpkeHkdf, and HpkeAead fields, + the EncapsulatedSharedSecret field is derived using the Base mode of HPKE. + +
+ Encryption using HPKE algorithm + + + + + +
diff --git a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg new file mode 100644 index 000000000..9b342966a --- /dev/null +++ b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg @@ -0,0 +1,2 @@ PublicKeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFEncapKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretDecapAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputs \ No newline at end of file From fb256ba013a1d24f0404b74082924978c4d3a73e Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Wed, 7 May 2025 11:03:09 -0400 Subject: [PATCH 24/44] Small cleanups --- doc/RecordingControl.xml | 2 +- doc/media/RecordingControl/hpkeEncryption.excalidraw.svg | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 2ad488187..88cec082c 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2254,7 +2254,7 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, the EncapsulatedSharedSecret field is derived using the Base mode of HPKE.
- Encryption using HPKE algorithm + Encryption (Left) and Decryption (Right) using the HPKE algorithm diff --git a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg index 9b342966a..218dfaae6 100644 --- a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg +++ b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg @@ -1,2 +1,2 @@ PublicKeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFEncapKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretDecapAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputs \ No newline at end of file PublicKeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputs \ No newline at end of file From e308c445fdce8ff8f7a3dd8988abde28a86a9f62 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Thu, 8 May 2025 08:48:58 -0400 Subject: [PATCH 25/44] Remove obsolete mention to SHA-1 --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 88cec082c..db78ad812 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2227,7 +2227,7 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, EncryptedKeyEntryCount Number of entries containing encryption information required to decrypt the symmetric key. Shall be 1 or more. CertificateThumbprintAlgorithm defines the algorithm used to compute the thumbprint of the certificates. Those values are defined in the Security Baseline specification CertificateThumbprintSize Size of the CertificateThumbprint field. - CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key (Computed using SHA-1). + CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key. EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. EncryptionDataSize defines the number of bytes used by the following bytes for this certificate. The next certificates, if any, will start after this number of bytes. EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. From 3d534196c7eb8437da3fc384cb9653dced60494c Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Thu, 8 May 2025 08:52:44 -0400 Subject: [PATCH 26/44] Describe how the EncapsulatedSharedSecretSize is calculated --- doc/RecordingControl.xml | 1 + 1 file changed, 1 insertion(+) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index db78ad812..5a07520b8 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2234,6 +2234,7 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, HpkeKem defines the KEM algorithm identifier used to encrypt the key with the current certificate. HpkeHkdf defines the HKDF algorithm identifier used to encrypt the key with the current certificate. HpkeAead defines the AEAD algorithm identifier used to encrypt the key with the current certificate. + EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate.
From 7de1b7d96c87b9c5d997f36dfc4e8ad7ac69ef45 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Wed, 21 May 2025 08:29:03 -0400 Subject: [PATCH 27/44] Clarifications on encryption diagram --- doc/media/RecordingControl/hpkeEncryption.excalidraw.svg | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg index 218dfaae6..f4b59847a 100644 --- a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg +++ b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg @@ -1,2 +1,2 @@ PublicKeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputs \ No newline at end of file  KeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputsEncryptionDecryption \ No newline at end of file From 11719b85a799357bb4f841e5733b259dfef9558f Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Wed, 21 May 2025 08:33:50 -0400 Subject: [PATCH 28/44] Clarifications on configuration & schemes names --- doc/RecordingControl.xml | 2 +- wsdl/ver10/schema/onvif.xsd | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 5a07520b8..69cd12c32 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2142,7 +2142,7 @@ secfrac = "." 1*6DIGIT When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with 'Protection system specific header' (or 'pssh') boxes [ISO/IEC 23001-7].
- Standard CENC system + Common Encryption standard system When a file is frame encrypted using a Key/KID then exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. This is independent of the EncryptionMode. diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index bbc289a9f..e45d35fab 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7703,13 +7703,13 @@ and sample rate. - Key ID of the associated key for encryption. + Key ID of the associated key for encryption. This parameter is ignored when AsymmetricEncryption is configured. - Key for encrypting content. + Key for encrypting content. This parameter is ignored when AsymmetricEncryption is configured. The device shall not include this parameter when reading. From ee82c33028e7398b9b8cfeac7315d317e3808d54 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Mon, 26 May 2025 09:45:58 -0400 Subject: [PATCH 29/44] Undo unrelated styling changes --- doc/RecordingControl.xml | 142 +++++++++++++++++++-------------------- 1 file changed, 71 insertions(+), 71 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 69cd12c32..7fe9a4eae 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -98,7 +98,7 @@ Hasan Timucin Ozdemir - Added 5.21 ExportRecordedData command and corresponding capability flag in 5.24 Capabilitites + Added 5.21 ExportRecordedData command and corresponding capability flag in 5.24 Capabilitites Added 5.22 StopExportRecordedData Added 5.23 GetExportRecordedDataStatus @@ -390,7 +390,7 @@ Change Request 2061, 2063, 2065, 2109
External targets - The target interface allows configuration for devices that support recording to external storage targets. + The target interface allows configuration for devices that support recording to external storage targets. For authentication configuration see the related storage configuration APIs of the core specification. @@ -540,7 +540,7 @@ Change Request 2061, 2063, 2065, 2109 AutoCreateReceiver: If a request includes this field set to true and no source token is provided, the device shall create a receiver object (through the receiver service) and assign the ReceiverReference to the - SourceToken field. A device shall never report this parameter in a + SourceToken field. A device shall never report this parameter in a RecordingJobConfiguration. A device may reject a request that neither contains a SourceToken nor AutoCreateRecevier set to true. SourceTag: If the received RTSP stream contains multiple tracks of the same type, the SourceTag differentiates between those Tracks. @@ -552,7 +552,7 @@ Change Request 2061, 2063, 2065, 2109 Event recording A device signalling support for EventRecording via its capabilities shall support controling recording job activity via the EventFilter with the following set of - parameters: + parameters: @@ -1496,7 +1496,7 @@ Change Request 2061, 2063, 2065, 2109 duration on its next segment. The override duration shall not exceed 1 hour. - When a new override request is sent before the previous override has expired, the new override shall replace the + When a new override request is sent before the previous override has expired, the new override shall replace the previous override and the new expiration shall apply. @@ -1681,14 +1681,14 @@ Change Request 2061, 2063, 2065, 2109 Recording job state changes If the state field of the RecordingJobStateInformation structure changes, a device shall provide the following event: Topic: tns1:RecordingConfig/JobState - - - - - - - - + + + + + + + + ]]> The ElementItem Information shall be provided whenever the state of the different tracks is not unique. It can be omitted when the state of all tracks of a recording is consistent. @@ -1697,35 +1697,35 @@ Change Request 2061, 2063, 2065, 2109 Configuration changes If the configuration of a recording is changed, a device shall provide the following event: Topic: tns1:RecordingConfig/RecordingConfiguration - - - - - - - + + + + + + + ]]> If the configuration of a track is changed, a device shall provide the following event: Topic: tns1:RecordingConfig/TrackConfiguration - - - - - - - - + + + + + + + + ]]> If the configuration of a recording job is changed, a device shall provide the following event: Topic: tns1:RecordingConfig/RecordingJobConfiguration - - - - - - - + + + + + + + ]]>
@@ -1733,15 +1733,15 @@ Change Request 2061, 2063, 2065, 2109 Data deletion Whenever data is deleted, a device shall provide the following event: Topic: tns1:RecordingConfig/DeleteTrackData - - - - - - - - - + + + + + + + + + ]]>
@@ -1749,44 +1749,44 @@ Change Request 2061, 2063, 2065, 2109 Recording and track creation and deletion Whenever a recording is created, a device shall provide the following event: Topic: tns1:RecordingConfig/CreateRecording - - - - - - + + + + + + ]]> Whenever a recording is deleted, a device shall provide the following event: Topic: tns1:RecordingConfig/DeleteRecording - - - - - - + + + + + + ]]> Whenever a track is created, a device shall provide the following event: Topic: tns1:RecordingConfig/CreateTrack - - - - - - - + + + + + + + ]]> Whenever a track is deleted, a device shall provide the following event: Topic: tns1:RecordingConfig/DeleteTrack - - - - - - - + + + + + + + ]]>
@@ -1954,7 +1954,7 @@ SetRecordingJobMode(JobToken, Active) SegmentDuration configured for the recording, the device shall close the open segment of this span and open a new segment for this span. When closing the open segment of a span and opening a new segment for this span, there shall be no time gap - between the two segments. Note that the actual segment duration may vary and can be plus or + between the two segments. Note that the actual segment duration may vary and can be plus or minus one GOP size from the configured duration because a segment must start with an I-Frame. The device shall generate each segment as a fragmented MP4 file according to ISO/IEC 14496-12, the ISO base media file format. From 0f223bda1d7e19dff87deb20e44cc723878c7c8f Mon Sep 17 00:00:00 2001 From: jmelancongen <115079765+jmelancongen@users.noreply.github.com> Date: Mon, 26 May 2025 10:47:38 -0400 Subject: [PATCH 30/44] Update doc/RecordingControl.xml Co-authored-by: Sriram Bhetanabottla --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 7fe9a4eae..c6d15a888 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2093,7 +2093,7 @@ secfrac = "." 1*6DIGIT
Frame encryption - A device signaling support for recording to an external target with frame encryption shall support writing encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). + A device signaling support for recording to an external target with frame encryption shall support creating encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). Each Encryption entry configured for a recording covers a distinct set of tracks for which to apply the encryption, identified by the Track element. If an encryption entry contains no Track elements, it covers all tracks of the recording. If an encryption entry contains one or more Track elements, it covers the tracks indicated by the track tokens contained in these elements. From 10dd6ac3fbc6024f16672e8649391e0a614624b5 Mon Sep 17 00:00:00 2001 From: jmelancongen <115079765+jmelancongen@users.noreply.github.com> Date: Tue, 27 May 2025 13:49:02 -0400 Subject: [PATCH 31/44] Fix typo Co-authored-by: Sriram Bhetanabottla --- doc/RecordingControl.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index c6d15a888..d37beb75c 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2146,7 +2146,7 @@ secfrac = "." 1*6DIGIT When a file is frame encrypted using a Key/KID then exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. This is independent of the EncryptionMode. - Additionnal types of 'pssh' boxes may be present to support alternative DRM systems. + Additional types of 'pssh' boxes may be present to support alternative DRM systems.
Syntax @@ -2183,7 +2183,7 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi If tracks are encrypted using different keys, then one AsymmetricKeySystemHeaderBox will be present per KID. - Additionnal 'pssh' boxes may be present to support alternative DRM systems. + Additional 'pssh' boxes may be present to support alternative DRM systems. Note that DRM systems and client implementations are outside the scope of this specification.
From 892a08b3af4d4b5024dd34e37556595a476914f5 Mon Sep 17 00:00:00 2001 From: jmelancongen <115079765+jmelancongen@users.noreply.github.com> Date: Wed, 28 May 2025 08:17:27 -0400 Subject: [PATCH 32/44] Apply suggestions from code review Co-authored-by: Sriram Bhetanabottla --- doc/RecordingControl.xml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index d37beb75c..0ca6e7c8e 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2093,10 +2093,10 @@ secfrac = "." 1*6DIGIT
Frame encryption - A device signaling support for recording to an external target with frame encryption shall support creating encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). + A device signaling support for recording with frame encryption via EncryptionEntryLimit shall support creating encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). Each Encryption entry configured for a recording covers a distinct set of tracks for which to apply the encryption, identified by the Track element. - If an encryption entry contains no Track elements, it covers all tracks of the recording. - If an encryption entry contains one or more Track elements, it covers the tracks indicated by the track tokens contained in these elements. + If an encryption entry does not contain any Track element, all tracks of the recording shall be encrypted using the same encryption entry. + If an encryption entry contains one or more Track elements, specified tracks indicated by the track tokens of the recording shall be encrypted using the encryption entry. The device shall encrypt the covered tracks with the scheme given by the Mode configured for the encryption entry: @@ -2127,7 +2127,7 @@ secfrac = "." 1*6DIGIT The device shall include a Standard CENC PSSH box according to . - When using AsymmetricEncryption then the device shall generate a KID/Key pair and encrypt the Key with each certificate public key defined in the configuration. The encrypted keys shall be stored in the file using the Asymmetric key system PSSH box as defined in . + When using AsymmetricEncryption then the device shall generate a KID/Key pair and encrypt the Key with each certificate defined in the configuration. The encrypted keys shall be stored in the file using the Asymmetric key system PSSH box as defined in . When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval, but still use the current key until the segment is finished. New segments shall use the latest generated Key for its encryption. From 03669715901c43831a16c1f549382b86ea986178 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Thu, 29 May 2025 14:46:09 -0400 Subject: [PATCH 33/44] Add RFC & IANA references --- doc/RecordingControl.xml | 8 +++++--- 1 file changed, 5 insertions(+), 3 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 0ca6e7c8e..995b38b54 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -189,6 +189,7 @@ Change Request 2061, 2063, 2065, 2109 Normative references + IANA Algorithm registry for Hybrid Public Key Encryption (HPKE) <> ISO/IEC 14496-12:2022 — Information technology — Coding of audio-visual objects — Part 12: ISO base media file format <> ISO/IEC 14496-14:2020 — Information technology — Coding of audio-visual objects — Part 14: MP4 file format <> ISO/IEC 23000-19:2020 — Information technology — Multimedia application format (MPEG-A) — Part 19: Common media application format (CMAF) for segmented media <> @@ -196,6 +197,7 @@ Change Request 2061, 2063, 2065, 2109 ISO 8601-1:2019 — Date and time — Representations for information interchange — Part 1: Basic rules <> RFC 5234 — Augmented BNF for Syntax Specifications: ABNF <> RFC 6381 — The 'Codecs' and 'Profiles' Parameters for "Bucket" Media Types <> + RFC 9180 — Hybrid Public Key Encryption (HPKE) <> ONVIF Core Specification <> ONVIF Schedule Service Specification <> W3C "cenc" Initialization Data Format <> @@ -2231,9 +2233,9 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. EncryptionDataSize defines the number of bytes used by the following bytes for this certificate. The next certificates, if any, will start after this number of bytes. EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. - HpkeKem defines the KEM algorithm identifier used to encrypt the key with the current certificate. - HpkeHkdf defines the HKDF algorithm identifier used to encrypt the key with the current certificate. - HpkeAead defines the AEAD algorithm identifier used to encrypt the key with the current certificate. + HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. + HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. + HpkeAead defines the AEAD algorithm identifier according to IANA used to encrypt the key with the current certificate. EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. From af34ca4a0029e818802bb47bc9efb79235004a2d Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Thu, 19 Jun 2025 14:25:15 -0400 Subject: [PATCH 34/44] Add fault for ambiguous configuration --- doc/RecordingControl.xml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 995b38b54..ca814e91e 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -772,6 +772,8 @@ Change Request 2061, 2063, 2065, 2109 The configuration is invalid. env:Sender - ter:InvalidArgVal - ter:NoRecording The RecordingToken does not reference an existing recording. + env:Sender - ter:InvalidArgVal - ter:AmbiguousConfiguration + Key/KID and AsymmetricEncryption are mutually exclusive configuration parameters From 9078d6e58d652f4b45cf6adaa89b2ce47c1e0046 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Thu, 14 Aug 2025 14:25:12 -0400 Subject: [PATCH 35/44] Apply review --- doc/RecordingControl.xml | 25 +++++++++++++++---------- 1 file changed, 15 insertions(+), 10 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index ca814e91e..1dfe875ca 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -749,6 +749,9 @@ Change Request 2061, 2063, 2065, 2109
SetRecordingConfiguration SetRecordingConfiguration shall change the configuration of a recording + + Key/KID and AsymmetricEncryption elements of the encryption entry are mutually exclusive. + request @@ -2094,14 +2097,19 @@ secfrac = "." 1*6DIGIT
-
- Frame encryption +
+ Encryption - A device signaling support for recording with frame encryption via EncryptionEntryLimit shall support creating encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). - Each Encryption entry configured for a recording covers a distinct set of tracks for which to apply the encryption, identified by the Track element. - If an encryption entry does not contain any Track element, all tracks of the recording shall be encrypted using the same encryption entry. - If an encryption entry contains one or more Track elements, specified tracks indicated by the track tokens of the recording shall be encrypted using the encryption entry. - The device shall encrypt the covered tracks with the scheme given by the Mode configured for the encryption entry: + A device signaling support for encrypted recording via SupportedEncryptionModes shall support + creating encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). + Each Encryption entry configured for a recording covers a distinct set of tracks for which + to apply the encryption, identified by the Track element. + If an encryption entry does not contain any Track element, all tracks of the recording shall + be encrypted using the same encryption entry. + If an encryption entry contains one or more Track elements, specified tracks indicated by the + track tokens of the recording shall be encrypted using the encryption entry. + The device shall encrypt the covered tracks with the scheme given by the Mode configured for + the encryption entry: @@ -2123,9 +2131,6 @@ secfrac = "." 1*6DIGIT - - Key/KID and AsymmetricEncryption elements of the encryption entry are mutually exclusive. - When using Key/KID then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. The device shall include a Standard CENC PSSH box according to . From 2c4293130f12fa61b2db31a52f2a4ae155824e17 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 19 Aug 2025 14:55:03 -0400 Subject: [PATCH 36/44] Complete review --- doc/RecordingControl.xml | 207 +++++++++++++++++++-------------------- 1 file changed, 100 insertions(+), 107 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 1dfe875ca..09e8bc452 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2101,14 +2101,14 @@ secfrac = "." 1*6DIGIT Encryption A device signaling support for encrypted recording via SupportedEncryptionModes shall support - creating encrypted files according to ISO/IEC 23001-7 (common encryption in ISO base media file format files). + creating encrypted segments according to [ISO/IEC 23001-7]. Each Encryption entry configured for a recording covers a distinct set of tracks for which to apply the encryption, identified by the Track element. If an encryption entry does not contain any Track element, all tracks of the recording shall be encrypted using the same encryption entry. If an encryption entry contains one or more Track elements, specified tracks indicated by the track tokens of the recording shall be encrypted using the encryption entry. - The device shall encrypt the covered tracks with the scheme given by the Mode configured for + The device shall encrypt the tracks with the scheme given by the Mode configured for the encryption entry: @@ -2132,34 +2132,20 @@ secfrac = "." 1*6DIGIT - When using Key/KID then the device shall interpret the configured KID for the encryption entry as a 16-byte hexadecimal value and use this value as the key identifier. - The device shall include a Standard CENC PSSH box according to . + The device shall create a unique initialization vector for each fragment present in a segment. + Each encrypted segment shall include the moov box containing the required PSSH box(es) according to the encryption entry configuration. + If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration + for any open segments and shall start to use the new configuration for new segments. - - When using AsymmetricEncryption then the device shall generate a KID/Key pair and encrypt the Key with each certificate defined in the configuration. The encrypted keys shall be stored in the file using the Asymmetric key system PSSH box as defined in . - When KeyRotationDuration is set then the device shall generate a new KID/Key pair at the specified time interval, but still use the current key until the segment is finished. - New segments shall use the latest generated Key for its encryption. - - - The device shall create a unique initialization vector for each segment. - Each encrypted file shall include the moov box containing the required PSSH box(es) according to the encryption entry configuration. - If an encryption entry is reconfigured for an active recording, the device shall continue to use the old configuration for any open segments and shall start to use the new configuration for new segments. - -
- Encryption keys storage +
+ CENC Initialization Data Format - When frame encryption is configured, the device shall store relevant information about the encryption keys used in the files with 'Protection system specific header' (or 'pssh') boxes [ISO/IEC 23001-7]. + All encrypted segments shall include one pssh box following the [W3C 'cenc' Initialization Data Format]. + Additional types of 'pssh' boxes may be present to support alternative DRM systems. -
- Common Encryption standard system - - When a file is frame encrypted using a Key/KID then exactly one pssh box of type 'CENC' box shall be present in the file according to [W3C 'cenc' Initialization Data Format]. - This is independent of the EncryptionMode. - Additional types of 'pssh' boxes may be present to support alternative DRM systems. - -
- Syntax - + Syntax + - See W3C "cenc" Initialization Data Format for an example of this box. -
-
- Semantics - Version shall be '1'. - Flags shall be '0'. - SystemID shall be '1077efec-c0b2-4d02-ace3-3c1e52e2fb4b'. - KID_count be equal to the number of different keys used in the file. - KID, one for each RecordingEncryption. - DataSize shall be '0'. -
+ ]]> + See W3C "cenc" Initialization Data Format for an example of this box.
-
- Asymmetric key system - - The box contains the encrypted symmetric key and the list of certificates that can be used to decrypt it. - The symmetric key is encrypted once for each configured certificate using the public key (using their nominal encryption length). - The client needs access to at least one of the certificates' private key to decrypt it (e.g. directly or through a key server). - The client can then decrypt the frames using this symmetric key. - If tracks are encrypted using different keys, then one AsymmetricKeySystemHeaderBox will be present per KID. - - - Additional 'pssh' boxes may be present to support alternative DRM systems. - Note that DRM systems and client implementations are outside the scope of this specification. - -
- Syntax - + Semantics + Version shall be '1'. + Flags shall be '0'. + SystemID shall be '1077efec-c0b2-4d02-ace3-3c1e52e2fb4b'. + KID_count be equal to the number of different keys used in the segment. + KID, one for each RecordingEncryption. + DataSize shall be '0'. +
+
+
+ Asymmetric key system + + When AsymmetricEncryption is set, the device shall generate a Key/KID pair + and encrypt each segment with that generated key. If the KeyRotationDuration is set, + then the device shall generate a new Key/KID pair at the specified time interval, + but still use the current key until the segment is finished. New segments shall use the latest generated + Key for its encryption. + + + The device shall also include in each segment a pssh box containing the information needed to play the segment. + This box contains the encrypted symmetric key and the list of certificates that can be used to decrypt it. + The symmetric key is encrypted once for each configured certificate using their public key. + The client needs access to at least one of the certificates' private key to decrypt it, either directly or through a key server. + The client can then decrypt the frames using this symmetric key. + If tracks are encrypted using different keys, then one AsymmetricKeySystemHeaderBox shall be present per KID. + + + Additional 'pssh' boxes may be present to support alternative DRM systems. + Note that DRM systems and client implementations are outside the scope of this specification. + +
+ Syntax + -
-
- Semantics - Version shall be '1'. - Flags shall be '0'. - SystemID shall be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. - KID_count shall be '1'. - KID is the generated UUID by the device. This KID should be the same in all segments until the symmetric key changes. - DataSize is the size in bytes of all the other fields present in this box following this field. - EncryptedKeyEntryCount Number of entries containing encryption information required to decrypt the symmetric key. Shall be 1 or more. - CertificateThumbprintAlgorithm defines the algorithm used to compute the thumbprint of the certificates. Those values are defined in the Security Baseline specification - CertificateThumbprintSize Size of the CertificateThumbprint field. - CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key. - EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. - EncryptionDataSize defines the number of bytes used by the following bytes for this certificate. The next certificates, if any, will start after this number of bytes. - EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. - HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. - HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. - HpkeAead defines the AEAD algorithm identifier according to IANA used to encrypt the key with the current certificate. - EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. - EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. - EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. -
-
- Encryption Version 1 - - This version is defined for use when the certificate contains an RSA public key. When using this version, - the symmetric key is directly encrypted using the public key of the certificate and the RSA-OEAP padding scheme - as defined in [RFC 5652]. - -
-
- Encryption Version 2 - - This version is defined for the use of the HPKE algorithm as defined in [RFC 9180]. It is used - when the certificate contains an EC public key. Using the public key of the certificate and the - algorithms defined in the HpkeKem, HpkeHkdf, and HpkeAead fields, - the EncapsulatedSharedSecret field is derived using the Base mode of HPKE. - -
- Encryption (Left) and Decryption (Right) using the HPKE algorithm - - - - - -
-
+ ]]> +
+
+ Semantics + Version shall be '1'. + Flags shall be '0'. + SystemID shall be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. + KID_count shall be '1'. + KID is the generated UUID by the device. This KID should be the same in all segments until the symmetric key changes. + DataSize is the size in bytes of all the other fields present in this box following this field. + EncryptedKeyEntryCount Number of entries containing encryption information required to decrypt the symmetric key. Shall be 1 or more. + CertificateThumbprintAlgorithm defines the algorithm used to compute the thumbprint of the certificates. Those values are defined in the Security Baseline specification + CertificateThumbprintSize Size of the CertificateThumbprint field. + CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key. + EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. + EncryptionDataSize defines the number of bytes used by the following bytes for this certificate. The next certificates, if any, will start after this number of bytes. + EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. + HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. + HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. + HpkeAead defines the AEAD algorithm identifier according to IANA used to encrypt the key with the current certificate. + EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. + EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. + EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. +
+
+ Encryption Version 1 + + This version is defined for use when the certificate contains an RSA public key. When using this version, + the symmetric key is directly encrypted using the public key of the certificate and the RSA-OEAP padding scheme + as defined in [RFC 5652]. + +
+
+ Encryption Version 2 + + This version is defined for the use of the HPKE algorithm as defined in [RFC 9180]. It is used + when the certificate contains an EC public key. Using the public key of the certificate and the + algorithms defined in the HpkeKem, HpkeHkdf, and HpkeAead fields, + the EncapsulatedSharedSecret field is derived using the Base mode of HPKE. + +
+ Encryption (Left) and Decryption (Right) using the HPKE algorithm + + + + + +
From 71f244b5ce893c4087a614eded4a1dc2171fa126 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 19 Aug 2025 14:55:57 -0400 Subject: [PATCH 37/44] Remove useless certificate thumbprint algorithm field in PSSH --- doc/RecordingControl.xml | 2 -- 1 file changed, 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 09e8bc452..576540ee7 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2200,7 +2200,6 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, unsigned int(8) DataSize; unsigned int(32) EncryptedKeyEntryCount; for (i=1; i <= EncryptedKeyEntryCount; i++) { - unsigned int(16) CertificateThumbprintAlgorithm; unsigned int(32) CertificateThumbprintSize; unsigned int(8)[CertificateThumbprintSize] CertificateThumbprint; unsigned int(8) EncryptionVersion; @@ -2228,7 +2227,6 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, KID is the generated UUID by the device. This KID should be the same in all segments until the symmetric key changes. DataSize is the size in bytes of all the other fields present in this box following this field. EncryptedKeyEntryCount Number of entries containing encryption information required to decrypt the symmetric key. Shall be 1 or more. - CertificateThumbprintAlgorithm defines the algorithm used to compute the thumbprint of the certificates. Those values are defined in the Security Baseline specification CertificateThumbprintSize Size of the CertificateThumbprint field. CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key. EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. From 845d4b48ecdda73f2dfef35773a4fff343548e0c Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Mon, 25 Aug 2025 09:30:38 -0400 Subject: [PATCH 38/44] Unify the naming of parameters for Encryption V1 and V2 --- doc/RecordingControl.xml | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 576540ee7..8e2f0167f 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2204,8 +2204,8 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, unsigned int(8)[CertificateThumbprintSize] CertificateThumbprint; unsigned int(8) EncryptionVersion; if (EncryptionVersion == 1) { - unsigned int(32) EncryptionDataSize; - unsigned int(8)[EncryptionDataSize] EncryptedKey; + unsigned int(16) EncryptedKeySize; + unsigned int(8)[EncryptedKeySize] EncryptedKey; } else if (EncryptionVersion == 2) { unsigned int(16) HpkeKem; unsigned int(16) HpkeKdf; @@ -2230,7 +2230,6 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, CertificateThumbprintSize Size of the CertificateThumbprint field. CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key. EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. - EncryptionDataSize defines the number of bytes used by the following bytes for this certificate. The next certificates, if any, will start after this number of bytes. EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. From b264e7d76279ee8bf3a048aeb92debcf500e0ca5 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Mon, 25 Aug 2025 09:36:40 -0400 Subject: [PATCH 39/44] Reword Key/KID in the Asymmetric section to differentiate with the config values --- doc/RecordingControl.xml | 16 ++++++++-------- 1 file changed, 8 insertions(+), 8 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 8e2f0167f..db3e4fa9a 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2140,8 +2140,8 @@ secfrac = "." 1*6DIGIT
CENC Initialization Data Format - All encrypted segments shall include one pssh box following the [W3C 'cenc' Initialization Data Format]. - Additional types of 'pssh' boxes may be present to support alternative DRM systems. + All encrypted segments shall include one PSSH box following the [W3C 'cenc' Initialization Data Format]. + Additional types of 'PSSH' boxes may be present to support alternative DRM systems.
Syntax @@ -2171,22 +2171,22 @@ aligned(8) class ProtectionSystemSpecificHeaderBox extends FullBox('pssh', versi
Asymmetric key system - When AsymmetricEncryption is set, the device shall generate a Key/KID pair - and encrypt each segment with that generated key. If the KeyRotationDuration is set, - then the device shall generate a new Key/KID pair at the specified time interval, + When AsymmetricEncryption is set, the device shall generate its own key + and encrypt each segment with it. A KID shall also be generated for use in the PSSH boxes. If the KeyRotationDuration is set, + then the device shall generate a new Key and KID at the specified time interval, but still use the current key until the segment is finished. New segments shall use the latest generated Key for its encryption. - The device shall also include in each segment a pssh box containing the information needed to play the segment. - This box contains the encrypted symmetric key and the list of certificates that can be used to decrypt it. + The device shall also include in each segment an AsymmetricKeySystemHeaderBox PSSH box containing the information needed to play the segment. + This box contains the KID, the encrypted symmetric key and the list of certificates that can be used to decrypt it. The symmetric key is encrypted once for each configured certificate using their public key. The client needs access to at least one of the certificates' private key to decrypt it, either directly or through a key server. The client can then decrypt the frames using this symmetric key. If tracks are encrypted using different keys, then one AsymmetricKeySystemHeaderBox shall be present per KID. - Additional 'pssh' boxes may be present to support alternative DRM systems. + Additional 'PSSH' boxes may be present to support alternative DRM systems. Note that DRM systems and client implementations are outside the scope of this specification.
From 6ab7fa4fa9d1c425cddbb9c6971ba1acaade561c Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 26 Aug 2025 09:19:21 -0400 Subject: [PATCH 40/44] Update the SystemId for Asymmetric Encryption due to prior art --- doc/RecordingControl.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index db3e4fa9a..541bf690f 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2222,7 +2222,7 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, Semantics Version shall be '1'. Flags shall be '0'. - SystemID shall be 'ca774354-6f98-41b6-b17a-b15f7bbf678a'. + SystemID shall be 'a4852bd0-80fc-484e-b9e1-78a74d49f5ce'. KID_count shall be '1'. KID is the generated UUID by the device. This KID should be the same in all segments until the symmetric key changes. DataSize is the size in bytes of all the other fields present in this box following this field. From 1cd325cd2896e26bc00e4747b179bde9eb998e6c Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 26 Aug 2025 09:27:46 -0400 Subject: [PATCH 41/44] Rename EncryptedKey to EncryptedSymmetricKey to match diagram --- doc/RecordingControl.xml | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 541bf690f..f4a8b61d3 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2204,15 +2204,15 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, unsigned int(8)[CertificateThumbprintSize] CertificateThumbprint; unsigned int(8) EncryptionVersion; if (EncryptionVersion == 1) { - unsigned int(16) EncryptedKeySize; - unsigned int(8)[EncryptedKeySize] EncryptedKey; + unsigned int(16) EncryptedSymmetricKeySize; + unsigned int(8)[EncryptedSymmetricKeySize] EncryptedSymmetricKey; } else if (EncryptionVersion == 2) { unsigned int(16) HpkeKem; unsigned int(16) HpkeKdf; unsigned int(16) HpkeAead; unsigned int(8)[EncapsulatedSharedSecretSize] EncapsulatedSharedSecret; - unsigned int(16) EncryptedKeySize - unsigned int(8)[EncryptedKeySize] EncryptedKey; + unsigned int(16) EncryptedSymmetricKeySize; + unsigned int(8)[EncryptedSymmetricKeySize] EncryptedSymmetricKey; } } } @@ -2230,13 +2230,13 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, CertificateThumbprintSize Size of the CertificateThumbprint field. CertificateThumbprint Thumbprint of the certificate used to encrypted the symmetric key. EncryptionVersion defines the encryption strategy used to encrypt the symmetric key for this certificate. - EncryptedKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeAead defines the AEAD algorithm identifier according to IANA used to encrypt the key with the current certificate. EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. - EncryptedKeySize Size of the EncryptedKey field. Valid values depend on the encryption algorithm used by the certificate. + EncryptedSymmetricKeySize Size of the EncryptedSymmetricKey field. Valid values depend on the encryption algorithm used by the certificate. + EncryptedSymmetricKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version.
Encryption Version 1 From 30d0690559f8af00271817d0ae45139d886f1fb8 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 2 Sep 2025 15:00:51 -0400 Subject: [PATCH 42/44] Add AdditionalInfo configuration field --- doc/RecordingControl.xml | 9 +++++++++ doc/media/RecordingControl/hpkeEncryption.excalidraw.svg | 4 ++-- wsdl/ver10/schema/onvif.xsd | 8 ++++++++ 3 files changed, 19 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index f4a8b61d3..0a937eb9e 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2210,6 +2210,8 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, unsigned int(16) HpkeKem; unsigned int(16) HpkeKdf; unsigned int(16) HpkeAead; + unsigned int(16) InfoSize; + unsigned int(8)[InfoSize] Info; unsigned int(8)[EncapsulatedSharedSecretSize] EncapsulatedSharedSecret; unsigned int(16) EncryptedSymmetricKeySize; unsigned int(8)[EncryptedSymmetricKeySize] EncryptedSymmetricKey; @@ -2233,6 +2235,8 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeAead defines the AEAD algorithm identifier according to IANA used to encrypt the key with the current certificate. + InfoSize is the size in bytes of the Info field. + Info is the value configured by the AdditionalInfo configuration field encoded as UTF-8. EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. EncryptedSymmetricKeySize Size of the EncryptedSymmetricKey field. Valid values depend on the encryption algorithm used by the certificate. @@ -2254,6 +2258,11 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, algorithms defined in the HpkeKem, HpkeHkdf, and HpkeAead fields, the EncapsulatedSharedSecret field is derived using the Base mode of HPKE. + + The AdditionalInfo field of the AsymmetricEncryption configuration is to be + used as the info parameter of the HPKE key derivation function. If the field is missing, + the device shall use an empty string. +
Encryption (Left) and Decryption (Right) using the HPKE algorithm diff --git a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg index f4b59847a..75c520333 100644 --- a/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg +++ b/doc/media/RecordingControl/hpkeEncryption.excalidraw.svg @@ -1,2 +1,2 @@  KeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputsEncryptionDecryption \ No newline at end of file CertificatePublic KeyEncapsulatedShared SecretShared SecretEncryptedSymmetricKeySymmetricKeyAEADKEMKDFKey EncryptionKeyBase NonceEncapsulatedShared SecretPrivateKeyKEMShared SecretAEADKDFKey EncryptionKeyBase NonceEncryptedSymmetricKeySymmetricKeyInputsIntermediatesOutputsEncryptionDecryptionInfoInfo \ No newline at end of file diff --git a/wsdl/ver10/schema/onvif.xsd b/wsdl/ver10/schema/onvif.xsd index e45d35fab..8120115e6 100755 --- a/wsdl/ver10/schema/onvif.xsd +++ b/wsdl/ver10/schema/onvif.xsd @@ -7696,6 +7696,14 @@ and sample rate. KeyRotationDuration must be a positive duration value. + + + + Additional information related to the asymmetric encryption that will be used as + part of the key encryption. A device shall support at least 256 characters. + + + From ea178b0d56d2a084fe5f43a3bf2adeae96815011 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 9 Sep 2025 15:32:51 -0400 Subject: [PATCH 43/44] Move the Info field last in box for backward compatibility --- doc/RecordingControl.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index ebb7dd049..5b5b629e5 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2243,12 +2243,12 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, HpkeKem defines the KEM algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeHkdf defines the HKDF algorithm identifier according to IANA used to encrypt the key with the current certificate. HpkeAead defines the AEAD algorithm identifier according to IANA used to encrypt the key with the current certificate. - InfoSize is the size in bytes of the Info field. - Info is the value configured by the AdditionalInfo configuration field encoded as UTF-8. EncapsulatedSharedSecretSize is implicitly defined to the Nenc parameter of the HpkeKem algorithm. EncapsulatedSharedSecret is the HPKE shared secret value necessary to decrypt the encrypted key according to RFC 9180. EncryptedSymmetricKeySize Size of the EncryptedSymmetricKey field. Valid values depend on the encryption algorithm used by the certificate. EncryptedSymmetricKey The symmetric key (identified by KID) used for frame encryption, encrypted using the public key of the certificate according to the encryption version. + InfoSize is the size in bytes of the Info field. + Info is the value configured by the AdditionalInfo configuration field encoded as UTF-8.
Encryption Version 1 From 9f56a5f03279f333862c8f4b308c0909fe14ce2b Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jos=C3=A9=20M=C3=A9lan=C3=A7on?= Date: Tue, 9 Sep 2025 15:37:55 -0400 Subject: [PATCH 44/44] Do it for real --- doc/RecordingControl.xml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/RecordingControl.xml b/doc/RecordingControl.xml index 5b5b629e5..f3fe141f4 100644 --- a/doc/RecordingControl.xml +++ b/doc/RecordingControl.xml @@ -2218,11 +2218,11 @@ aligned(8) class AsymmetricKeySystemHeaderBox extends FullBox('pssh', version=1, unsigned int(16) HpkeKem; unsigned int(16) HpkeKdf; unsigned int(16) HpkeAead; - unsigned int(16) InfoSize; - unsigned int(8)[InfoSize] Info; unsigned int(8)[EncapsulatedSharedSecretSize] EncapsulatedSharedSecret; unsigned int(16) EncryptedSymmetricKeySize; unsigned int(8)[EncryptedSymmetricKeySize] EncryptedSymmetricKey; + unsigned int(16) InfoSize; + unsigned int(8)[InfoSize] Info; } } }