Lawful Interception of Redirected Calls with Cryptographic Triggers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing communication networks face challenges in implementing lawful interception of calls while preserving user privacy, as conventional triggers fail to accurately deliver interception messages to authorized law enforcement agencies and often result in duplicate or missing reports, leading to inefficiencies and privacy breaches.
Innovation Solution
Implement optimized triggers in application servers or border control functions that interact with signing and verification application servers to ensure accurate delivery of cryptographic tokens, including diversion tokens, to authorized interception parties, thereby enhancing the precision of interception report generation and reducing network load.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional triggers are used for lawful interception, then interception messages can be delivered to law enforcement agencies, but duplicate or missing reports occur leading to inefficiency and privacy breaches
Solution Approach 1:
The patent applies preliminary action by implementing optimized triggers that check cryptographic tokens (diversion tokens, authentication tokens) before generating interception reports. This preliminary verification ensures that interception messages are only generated when appropriate conditions are met, preventing duplicate or missing reports before they occur, thereby improving reliability without compromising network efficiency
Solution Approach 2:
The patent implements feedback mechanisms where the point of interception continuously monitors incoming protocol messages, validates cryptographic tokens, and adjusts interception report generation based on validation results. This feedback loop ensures accurate delivery of interception messages while avoiding unnecessary processing, thus resolving the contradiction between reliability and productivity
2Reliability
If cryptographic tokens are validated to ensure accurate interception, then privacy of non-target users is protected, but processing time and network load increase
Solution Approach 1:
The patent applies preliminary action by performing cryptographic token validation in advance during call setup, before the actual interception process begins. The point of interception validates diversion tokens and authentication tokens upfront, ensuring privacy protection is established before any interception occurs, while minimizing impact on overall call setup time through efficient validation procedures
Solution Approach 2:
The patent extracts and validates only the essential cryptographic elements (diversion tokens, authentication tokens) from the protocol messages, rather than processing entire messages. This selective extraction and validation approach maintains strong privacy protection while reducing processing time and network load by focusing only on critical verification elements
Data Source
AI summary
According to an example aspect of the present invention, there is provided an apparatus comprising at least one processor; and at least one memory including computer program code; the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus at least to function as a point of interception in an application server or border control function of a communication network, receive an incoming protocol message requesting initiation of a call, transmit an outgoing protocol message to advance initiation of the call, and receive a cryptographic token comprising a cryptographically signed identity of a caller initiating the call, and transmit a lawful interception message comprising information on the call to a lawful interception party as a response to at least one trigger being fulfilled.


