Location Information Security Module for Emergency Call Privacy

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Next Generation 911 (NG911) systems face challenges in ensuring secure transfer of location information for emergency communications, particularly with third-party VoIP applications that may not be trustworthy, risking user privacy as they can access and leak location data despite user privacy settings.

Innovation Solution

Implementing a session certificate mechanism generated by a trusted entity within the Public Safety Network, which authenticates and authorizes the request for location information, overriding user privacy settings and encrypting location data to ensure secure transfer to authorized emergency services entities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If third-party VoIP applications are allowed to access location information for NG911 emergency calls, then emergency communication capability is improved, but user privacy security deteriorates as these applications can leak location data despite user privacy settings

Engineering Contradiction:
Improveemergency communication capabilityVSAvoiduser privacy security
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a Location Information Security Module (LISM) as an intermediary component that sits between the location provider and third-party applications. This module acts as a security gatekeeper, receiving location information requests from applications and validating them against security policies before granting access. The LISM mediates between the need for emergency communication access and user privacy protection by implementing certificate-based authentication and policy enforcement, allowing only authorized emergency calls to bypass privacy settings while blocking unauthorized access attempts.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If user privacy settings are overridden to allow emergency services access to location information, then emergency response effectiveness is improved, but location information security deteriorates as untrusted applications can obtain and leak private data

Engineering Contradiction:
Improveemergency response effectivenessVSAvoidlocation information security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent implements local quality by applying different security policies to different applications and contexts. The Location Information Security Module evaluates each location request individually, examining the application's identity, the user's privacy settings, and whether the request constitutes a genuine emergency. Trustworthy emergency applications receive privileged access when needed, while untrusted applications are blocked regardless of emergency claims. This selective, context-dependent approach allows the system to override privacy settings only for verified emergency situations while maintaining security against malicious applications.

Inventive Principle:
Principle #3Local quality

3Reliability

If a security mechanism is implemented to protect location information from third-party applications, then location information security is improved, but system complexity increases due to additional authentication and validation layers

Engineering Contradiction:
Improvelocation information securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements self-service by enabling the Location Information Security Module to autonomously evaluate and decide on location requests without requiring manual user intervention for each request. The LISM maintains security policies, validates application certificates, and makes authorization decisions automatically based on pre-configured rules. This automation reduces the complexity burden on users while maintaining strong security controls, as the system serves itself by managing security operations without requiring user configuration or approval for each emergency call.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS9161196B2Apparatus and method for secure private location information transfer
Publication Date: 2015.10.13 GOOGLE TECHNOLOGY HOLDINGS LLC
  • US9161196B2 patent drawing
  • US9161196B2 patent drawing
  • US9161196B2 patent drawing

AI summary

An apparatus includes an emergency services location module, operatively coupled to location hardware. The emergency services location module is operative to receive a session certificate from an emergency services network entity in response to the apparatus placing an emergency services call or sending an emergency services message. The emergency services location module validates the session certificate to validate that the emergency services network entity is authorized to receive location information, and sends location information obtained from the location hardware to the emergency services network entity, in response to validating the session certificate. The emergency services location module may also be operative to override a user privacy setting that prevents location information from being sent from the apparatus, in response to determining that the session certificate is valid. The emergency services location module may also encrypt the location information prior to sending the location information to the emergency services network entity.