SBCA Conditional Access & Encryption 2 — Questions and Answers
Question 1: What is a Conditional Access Module (CAM) used for in a DVB receiver with a Common Interface (CI) slot?
- To amplify the received satellite signal before it reaches the tuner
- To house the CAS-specific decryption logic and smart card for a particular operator (Correct answer)
- To convert the HDMI output signal to coaxial RF for older televisions
- To store the electronic program guide (EPG) data for offline browsing
Correct answer: To house the CAS-specific decryption logic and smart card for a particular operator
A CAM plugs into the CI slot of a DVB receiver and contains the operator-specific decryption hardware and smart card reader, allowing a generic receiver to work with multiple CAS providers.
Question 2: In a SimulCrypt environment, what does the headend broadcast?
- The same content scrambled with multiple CAS systems simultaneously (Correct answer)
- Multiple versions of the same program at different bit rates for adaptive streaming
- Separate transponders for each authorized subscriber group
- Duplicate ECMs on redundant frequencies to improve reliability
Correct answer: The same content scrambled with multiple CAS systems simultaneously
SimulCrypt allows a single broadcast stream to be protected by multiple CAS providers simultaneously, so subscribers with different smart cards can all access the same content.
Question 3: What does the term 'pairing' refer to in a satellite CAS security context?
- Connecting two satellite dishes to a single receiver for diversity reception
- Cryptographically binding a smart card to a specific receiver to prevent card sharing (Correct answer)
- Linking a subscriber's account to a specific satellite orbital position
- Aligning the dish polarization angle with the satellite's linear polarization
Correct answer: Cryptographically binding a smart card to a specific receiver to prevent card sharing
Pairing ties a smart card to a unique receiver identifier so the card will only function in that specific IRD, making card sharing ineffective.
Question 4: What is 'card sharing' (also called IKS – Internet Key Sharing) and why is it considered illegal?
- Distributing firmware updates to multiple smart cards simultaneously via satellite
- Sharing decrypted Control Words over the internet so unauthorized receivers can descramble pay-TV content (Correct answer)
- The practice of recycling old smart cards for use in new subscriber packages
- Broadcasting duplicate ECMs for the same channel on multiple transponders
Correct answer: Sharing decrypted Control Words over the internet so unauthorized receivers can descramble pay-TV content
Card sharing involves one legitimate smart card decrypting ECMs and distributing the resulting Control Words over the internet to many unauthorized receivers, constituting signal theft.
Question 5: Which encryption standard is used in the BISS (Basic Interoperable Scrambling System) protocol common in satellite contribution feeds?
- RSA-2048 public-key encryption
- DVB-CSA with a manually configured static session word (Correct answer)
- AES-256 in CBC mode with rotating keys
- DES with a 56-bit hardware key stored in the IRD
Correct answer: DVB-CSA with a manually configured static session word
BISS uses DVB-CSA scrambling with a fixed 'session word' configured manually at both ends, making it simple but suitable for point-to-point contribution links.
Question 6: What is 'over-the-air (OTA) entitlement' management in a satellite CAS?
- Downloading software updates to the IRD via terrestrial internet connection
- Sending EMMs through the satellite broadcast stream to update smart card authorizations without physical card replacement (Correct answer)
- Using LTE mobile networks to authenticate subscribers in remote areas
- Remotely adjusting the satellite dish pointing angle via a wireless command link
Correct answer: Sending EMMs through the satellite broadcast stream to update smart card authorizations without physical card replacement
OTA entitlement management uses EMMs broadcast through the satellite signal to remotely activate, renew, or revoke subscriptions on smart cards in the field.
Question 7: What is the key difference between a Free-to-Air (FTA) signal and an encrypted pay-TV signal on a satellite transponder?
- FTA signals use a higher modulation order (e.g., 32-APSK) while pay-TV uses QPSK
- FTA signals are not scrambled and any compliant receiver can decode them; pay-TV signals require a valid CAS authorization to descramble (Correct answer)
- FTA signals are transmitted at higher power levels to reach a wider audience without dishes
- FTA signals use a wider transponder bandwidth to accommodate more channels per carrier
Correct answer: FTA signals are not scrambled and any compliant receiver can decode them; pay-TV signals require a valid CAS authorization to descramble
FTA content is broadcast in the clear without scrambling, so any compatible DVB receiver can display it, whereas pay-TV content is scrambled and requires an authorized CAS to provide the decryption keys.
What is a Conditional Access Module (CAM) used for in a DVB receiver with a Common Interface (CI) slot?