Session Management Platform for Conference Call Security Override

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current conference call systems lack effective security measures to ensure that participants are in secure locations and using appropriate devices, leading to potential security breaches and eavesdropping, especially in scenarios where participants may be using speakerphones or entering/leaving calls at inappropriate times.

Innovation Solution

A method and system that implement access control based on device context, using a Session Management Platform (SMP) to authenticate devices and enforce access policies, including location and device type restrictions, to manage participation in conference calls and override security restrictions at the discretion of moderators.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If access control based on device context is implemented, then conference call security is improved, but device complexity increases

Engineering Contradiction:
Improveconference call securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a Session Management Platform (SMP) as an intermediary component that handles device authentication and context verification. The SMP receives device context information, evaluates it against security policies, and makes authorization decisions, thereby isolating the complexity from the conference call system itself while maintaining enhanced security through centralized policy enforcement.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The security system is segmented into distinct functional components: device authentication module, context collection module, policy evaluation module, and authorization module. Each component handles a specific aspect of security verification, allowing the system to enforce comprehensive security policies while maintaining modularity and managing complexity through functional separation.

Inventive Principle:
Principle #1Segmentation

2Reliability

If strict access control policies are enforced, then security breaches are reduced, but ease of operation deteriorates

Engineering Contradiction:
Improvesecurity breach preventionVSAvoidparticipant access
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The access control system dynamically adjusts authorization decisions based on real-time device context conditions. Rather than applying static access rules, the system continuously evaluates current device state, location, and security context to make contextualized authorization decisions, allowing legitimate participants to access conferences when conditions are satisfied while blocking access when security risks are detected.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes security parameters and authorization thresholds based on device context. Different device types, locations, and security states trigger different access policies and authentication requirements. This parameter-based approach allows the system to enforce strict security when needed while providing easier access when device context indicates low risk, thereby balancing security with operational ease.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS8787874B2Method and mobile device for conference call security override
Publication Date: 2014.07.22 MALIKIE INNOVATIONS LTD
  • US8787874B2 patent drawing
  • US8787874B2 patent drawing
  • US8787874B2 patent drawing

AI summary

A method for controlling access to a conference call, the method comprising authenticating a mobile device in accordance with access requirements for the conference call rejecting the mobile device if the participant does not comply with the access requirements in response to the rejection, determining by a processor based on information other than said access requirements that the mobile device is legitimate and overriding the rejection to allow connection to the conference call if it is determined that the mobile device is legitimate.