Overview
ISO/IEC 16500-7:1999 - "Information technology - Generic digital audio-visual systems - Part 7: Basic security tools" specifies core security tools for DAVIC (digital audio‑visual) systems. The part defines a set of security protocols and interfaces that operate across DAVIC interfaces and two security-related interfaces in the STU. These tools are intended to be implemented by ISO/IEC 16500 systems that conform to the DAVIC security profiles.
Key topics and technical requirements
This standard provides technical definitions, message formats and operational rules for basic security services, including:
- S1 Scrambling - which elements may be scrambled and control‑word synchronization.
- S2 / S3 Authentication - authentication protocols, message syntax, key use and certificate handling.
- Confidentiality & Integrity - negotiation of algorithms, SPI value definition, signaling and replay protection.
- Digital Signatures - mechanisms for S2.
- DSM‑CC Commands for Security Management - configuration of security associations and key retrieval.
- Secure Download - message formats for download requests/responses and security module format.
- Parental Control - retrieval and distribution services.
- Security Interfaces - detailed CA0 and CA1 interface definitions, smart-card command sets, data objects, file structures, ATR/initialization and filter programming.
- Implementation details - protocol stacks, sample flows (e.g., scrambled video on demand), MMI objects and tag allocation.
The document references ISO/IEC 7816‑3 for CA1 smart‑card transmission behavior and outlines normative data object and command encodings required for STU security devices.
Practical applications and users
Who uses ISO/IEC 16500-7:
- Device manufacturers (set‑top boxes, smart card modules) implementing DAVIC-compliant security.
- Middleware and middleware protocol engineers working on conditional access, content protection and secure download.
- Service providers and broadcasters designing secure content delivery, pay‑TV, video‑on‑demand and parental control systems.
- Security architects defining key management, authentication and integrity services across DAVIC interfaces.
Practical uses:
- Implementing scrambling and control‑word management for pay content.
- Integrating smart‑card (CA1) or host-based (CA0) security modules into STUs.
- Designing secure download pipelines for rights and entitlement provisioning.
- Enforcing parental controls and secure service entitlement via DSM‑CC messages.
Related standards
- ISO/IEC 16500 series (DAVIC generic audio‑visual systems)
- ISO/IEC 7816‑3 (smart‑card physical and electrical characteristics) - referenced for CA1 behavior
Keywords: ISO/IEC 16500-7, DAVIC, digital audio-visual security, scrambling, authentication, confidentiality, integrity, CA0, CA1, DSM-CC, secure download, parental control, smart card.