Secure IP Phone Replacement via Directory Number Lookup

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing methods for replacing Internet Protocol (IP) phones are either insecure, requiring unsecure auto-registration or are time-consuming and complicated, involving manual pre-configuration, and do not support secure and efficient transitions, especially when the new IP phone lacks initial records in the call control database.

Innovation Solution

A call control entity uses a directory number associated with a user to search for an existing IP phone record, create a new IP phone record, and copy configuration information from the existing record to the new IP phone, enabling secure and automated configuration without relying on unsecure auto-registration or manual intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If unsecure auto-registration is used to register the new IP phone with the call control server, then the registration process is simplified and automated, but security is compromised as sensitive IP phone configuration information and user information are exposed

Engineering Contradiction:
Improveregistration processVSAvoidinformation exposure
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the configuration information transfer from the unsecure auto-registration process. Instead of transferring configuration information during insecure registration, the system uses a secure out-of-band channel (such as USB flash drive, email, or secure server) to transfer the configuration file before registration occurs. This separates the insecure registration step from the configuration transfer step, eliminating information exposure while maintaining automation.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a configuration file as an intermediary that contains all necessary registration information (directory number, configuration parameters). This configuration file is transferred through a secure channel and then used by the new IP phone to register with the call control server. The intermediary enables automated registration without exposing sensitive information during the registration process itself.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If manual pre-configuration of IP phones on the call control server is performed, then secure configuration is achieved, but the process becomes complicated and time-consuming

Engineering Contradiction:
ImprovesecurityVSAvoidconfiguration time
Core Design Contradiction:
Object-affected harmful factorsVSLoss of time

Solution Approach 1:

The patent uses copying to automatically generate the configuration file for the new IP phone by copying the configuration from the existing IP phone's record in the call control server. This eliminates manual configuration while maintaining security, as the configuration data is retrieved from the secure server database rather than being manually entered. The configuration file is then transferred securely to the new device.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The system performs preliminary actions by pre-generating the configuration file with all necessary registration information before the new IP phone attempts to register. The configuration file is prepared in advance using secure server-side processes, so that when the new phone receives it, registration can proceed automatically without requiring manual pre-configuration on the server.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 3:

The new IP phone performs self-service by automatically reading the configuration file and using it to register with the call control server without manual intervention. The device configures itself with the directory number and other parameters from the configuration file, eliminating the need for administrators to manually pre-configure each device while maintaining security through the secure configuration transfer process.

Inventive Principle:
Principle #25Self-service

3Object-affected harmful factors

If auto-registration is not supported on the call control server, then security is maintained, but the new IP phone cannot automatically register and requires manual intervention

Engineering Contradiction:
ImprovesecurityVSAvoidregistration process
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The configuration file serves as an intermediary that bridges the gap between secure server architecture and automated registration needs. The file contains pre-approved registration information that the call control server can process through its existing secure registration mechanisms, enabling automation without requiring the server to support unsecure auto-registration.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent extracts the automated registration capability from the call control server and places it in the configuration file that the new IP phone uses for self-registration. This allows the registration process to be automated at the device level using the configuration file, while the server maintains its secure architecture without needing to implement unsecure auto-registration support.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS11128532B2Securely replacing existing IP phone with new IP phone using existing directory number and without enabling auto-registration on call control server
Publication Date: 2021.09.21 CISCO TECHNOLOGY INC
  • US11128532B2 patent drawing
  • US11128532B2 patent drawing
  • US11128532B2 patent drawing

AI summary

A call control entity communicates with Internet Protocol (IP) phones over a network. Responsive to a request from a new IP phone that is to replace an existing IP phone, the call control entity determines there is no existing IP phone record for the new IP phone. In response, the call control entity acquires from the new IP phone a directory number associated that is to be used when making calls with the new IP phone, and searches for an existing IP phone record for the existing IP phone based on the directory number. When the existing IP phone record is found, the call control entity creates for the new IP phone a new IP phone record associated with the directory number, copies existing configuration information from the existing IP phone record to the new IP phone record, and configures the new IP phone with the existing configuration information.