Lawful Interception of Redirected Calls with Cryptographic Triggers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication networks face challenges in implementing lawful interception of calls while preserving user privacy, as conventional triggers fail to accurately deliver interception messages to authorized law enforcement agencies and often result in duplicate or missing reports, leading to inefficiencies and privacy breaches.

Innovation Solution

Implement optimized triggers in application servers or border control functions that interact with signing and verification application servers to ensure accurate delivery of cryptographic tokens, including diversion tokens, to authorized interception parties, thereby enhancing the precision of interception report generation and reducing network load.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional triggers are used for lawful interception, then interception messages can be delivered to law enforcement agencies, but duplicate or missing reports occur leading to inefficiency and privacy breaches

Engineering Contradiction:
Improveaccuracy of interception message deliveryVSAvoidnetwork efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent applies preliminary action by implementing optimized triggers that check cryptographic tokens (diversion tokens, authentication tokens) before generating interception reports. This preliminary verification ensures that interception messages are only generated when appropriate conditions are met, preventing duplicate or missing reports before they occur, thereby improving reliability without compromising network efficiency

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements feedback mechanisms where the point of interception continuously monitors incoming protocol messages, validates cryptographic tokens, and adjusts interception report generation based on validation results. This feedback loop ensures accurate delivery of interception messages while avoiding unnecessary processing, thus resolving the contradiction between reliability and productivity

Inventive Principle:
Principle #23Feedback

2Reliability

If cryptographic tokens are validated to ensure accurate interception, then privacy of non-target users is protected, but processing time and network load increase

Engineering Contradiction:
Improveprivacy protection accuracyVSAvoidcall setup time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies preliminary action by performing cryptographic token validation in advance during call setup, before the actual interception process begins. The point of interception validates diversion tokens and authentication tokens upfront, ensuring privacy protection is established before any interception occurs, while minimizing impact on overall call setup time through efficient validation procedures

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent extracts and validates only the essential cryptographic elements (diversion tokens, authentication tokens) from the protocol messages, rather than processing entire messages. This selective extraction and validation approach maintains strong privacy protection while reducing processing time and network load by focusing only on critical verification elements

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS12401742B2Lawful interception of redirected calls
Publication Date: 2025.08.26 NOKIA TECHNOLOGIES OY
  • US12401742B2 patent drawing
  • US12401742B2 patent drawing
  • US12401742B2 patent drawing

AI summary

According to an example aspect of the present invention, there is provided an apparatus comprising at least one processor; and at least one memory including computer program code; the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus at least to function as a point of interception in an application server or border control function of a communication network, receive an incoming protocol message requesting initiation of a call, transmit an outgoing protocol message to advance initiation of the call, and receive a cryptographic token comprising a cryptographically signed identity of a caller initiating the call, and transmit a lawful interception message comprising information on the call to a lawful interception party as a response to at least one trigger being fulfilled.