Session Management Platform for Conference Call Security Override
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current conference call systems lack effective security measures to ensure that participants are in secure locations and using appropriate devices, leading to potential security breaches and eavesdropping, especially in scenarios where participants may be using speakerphones or entering/leaving calls at inappropriate times.
Innovation Solution
A method and system that implement access control based on device context, using a Session Management Platform (SMP) to authenticate devices and enforce access policies, including location and device type restrictions, to manage participation in conference calls and override security restrictions at the discretion of moderators.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If access control based on device context is implemented, then conference call security is improved, but device complexity increases
Solution Approach 1:
The patent introduces a Session Management Platform (SMP) as an intermediary component that handles device authentication and context verification. The SMP receives device context information, evaluates it against security policies, and makes authorization decisions, thereby isolating the complexity from the conference call system itself while maintaining enhanced security through centralized policy enforcement.
Solution Approach 2:
The security system is segmented into distinct functional components: device authentication module, context collection module, policy evaluation module, and authorization module. Each component handles a specific aspect of security verification, allowing the system to enforce comprehensive security policies while maintaining modularity and managing complexity through functional separation.
2Reliability
If strict access control policies are enforced, then security breaches are reduced, but ease of operation deteriorates
Solution Approach 1:
The access control system dynamically adjusts authorization decisions based on real-time device context conditions. Rather than applying static access rules, the system continuously evaluates current device state, location, and security context to make contextualized authorization decisions, allowing legitimate participants to access conferences when conditions are satisfied while blocking access when security risks are detected.
Solution Approach 2:
The system changes security parameters and authorization thresholds based on device context. Different device types, locations, and security states trigger different access policies and authentication requirements. This parameter-based approach allows the system to enforce strict security when needed while providing easier access when device context indicates low risk, thereby balancing security with operational ease.
Data Source
AI summary
A method for controlling access to a conference call, the method comprising authenticating a mobile device in accordance with access requirements for the conference call rejecting the mobile device if the participant does not comply with the access requirements in response to the rejection, determining by a processor based on information other than said access requirements that the mobile device is legitimate and overriding the rejection to allow connection to the conference call if it is determined that the mobile device is legitimate.


