Encrypted Video Conference Auditing Without Provider Key Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing video conference providers lack the ability to audit encrypted communications without decrypting the content, making it difficult for organizations to ensure compliance with policies and regulations due to the nature of end-to-end encryption.

Innovation Solution

A compliance auditing participant is joined into the encrypted video conference, receiving cryptographic information, and records encrypted streams and chat messages, allowing decryption and storage for later auditing by the organization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If end-to-end encryption is implemented in video conferences, then participant privacy and security are improved, but the ability to audit communications for compliance deteriorates

Engineering Contradiction:
Improveparticipant privacy and securityVSAvoidaudit capability
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

A compliance auditing participant is introduced as an intermediary entity that joins the encrypted video conference. This participant receives cryptographic information and records encrypted streams and chat messages, enabling audit capability without breaking the end-to-end encryption model. The intermediary captures data in a way that preserves participant privacy while enabling compliance auditing.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of information

If a compliance auditing participant is added to the encrypted video conference, then audit capability is improved, but system complexity increases

Engineering Contradiction:
Improveaudit capabilityVSAvoidsystem complexity
Core Design Contradiction:
Loss of informationVSDevice complexity

Solution Approach 1:

The compliance auditing participant serves multiple functions simultaneously: it joins the encrypted conference, receives cryptographic information, records encrypted streams, captures chat messages, and stores all data for later auditing. By consolidating these functions into a single multi-functional component, the system avoids the complexity of separate systems for each function.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Loss of information

If the video conference provider is given access to encryption keys for auditing, then compliance monitoring is improved, but participant privacy and security deteriorate

Engineering Contradiction:
Improvecompliance monitoring capabilityVSAvoidparticipant privacy and security
Core Design Contradiction:
Loss of informationVSReliability

Solution Approach 1:

The system segments the auditing function from the video conference provider by introducing a separate compliance auditing participant. This participant has access to the cryptographic information needed for auditing, while the video conference provider maintains no access to encryption keys. The segmentation allows compliance monitoring capability to be separated from the provider, preserving participant privacy and security.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS12438704B2Compliance auditing for encrypted video conferences
Publication Date: 2025.10.07 ZOOM COMMUNICATIONS INC
  • US12438704B2 patent drawing
  • US12438704B2 patent drawing
  • US12438704B2 patent drawing

AI summary

One example method includes receiving, by a compliance auditing server, an indication of an encrypted video conference; sending, by the compliance auditing server, a request to a video conference provider to join a compliance auditing participant to the encrypted video conference, wherein the video conference provider does not have access to the compliance auditing server; receiving and storing, by the compliance auditing server, encrypted streams of audio and video from a plurality of participants in the video conference, wherein: the compliance auditing participant is one of the plurality of participants; and the video conference provider does not have access to the cryptographic meeting key; receiving, by the compliance auditing server after the encrypted video conference has ended, a request for a portion of the encrypted streams of audio and video; and providing, in response to the request, the portion of the encrypted streams of audio and video.