Encrypted Video Conference Auditing Without Provider Key Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing video conference providers lack the ability to audit encrypted communications without decrypting the content, making it difficult for organizations to ensure compliance with policies and regulations due to the nature of end-to-end encryption.
Innovation Solution
A compliance auditing participant is joined into the encrypted video conference, receiving cryptographic information, and records encrypted streams and chat messages, allowing decryption and storage for later auditing by the organization.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If end-to-end encryption is implemented in video conferences, then participant privacy and security are improved, but the ability to audit communications for compliance deteriorates
Solution Approach 1:
A compliance auditing participant is introduced as an intermediary entity that joins the encrypted video conference. This participant receives cryptographic information and records encrypted streams and chat messages, enabling audit capability without breaking the end-to-end encryption model. The intermediary captures data in a way that preserves participant privacy while enabling compliance auditing.
2Loss of information
If a compliance auditing participant is added to the encrypted video conference, then audit capability is improved, but system complexity increases
Solution Approach 1:
The compliance auditing participant serves multiple functions simultaneously: it joins the encrypted conference, receives cryptographic information, records encrypted streams, captures chat messages, and stores all data for later auditing. By consolidating these functions into a single multi-functional component, the system avoids the complexity of separate systems for each function.
3Loss of information
If the video conference provider is given access to encryption keys for auditing, then compliance monitoring is improved, but participant privacy and security deteriorate
Solution Approach 1:
The system segments the auditing function from the video conference provider by introducing a separate compliance auditing participant. This participant has access to the cryptographic information needed for auditing, while the video conference provider maintains no access to encryption keys. The segmentation allows compliance monitoring capability to be separated from the provider, preserving participant privacy and security.
Data Source
AI summary
One example method includes receiving, by a compliance auditing server, an indication of an encrypted video conference; sending, by the compliance auditing server, a request to a video conference provider to join a compliance auditing participant to the encrypted video conference, wherein the video conference provider does not have access to the compliance auditing server; receiving and storing, by the compliance auditing server, encrypted streams of audio and video from a plurality of participants in the video conference, wherein: the compliance auditing participant is one of the plurality of participants; and the video conference provider does not have access to the cryptographic meeting key; receiving, by the compliance auditing server after the encrypted video conference has ended, a request for a portion of the encrypted streams of audio and video; and providing, in response to the request, the portion of the encrypted streams of audio and video.


