SIP Call Authentication for Secure Call Forwarding

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing session initiation protocols (SIP) do not adequately address the issue of caller privacy and security when making calls to devices where call forwarding is enabled or controlled by someone other than the callee, potentially allowing unauthorized access to calls.

Innovation Solution

Implementing a method and device that allow for caller-demand-based authentication during session establishment, using SIP INVITE messages to request authentication from the callee device, and requiring user input for authentication before establishing a session, including methods such as pattern, password, or biometric authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If call forwarding is enabled on the callee's device, then the callee can receive calls on alternative devices, but unauthorized users may access or forward the call without the caller's knowledge

Engineering Contradiction:
Improvecall forwarding capabilityVSAvoidcall security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements preliminary authentication action by inserting an authentication request in the SIP INVITE message before the call is established. This allows the caller to verify the callee's identity and detect potential call forwarding before the actual call connection is made, preventing unauthorized access in advance

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent uses feedback mechanism by having the callee's device send back authentication support information through SIP response messages (180 Ringing, 183 Session Progress). This feedback loop allows the caller to know whether authentication is supported and proceed accordingly, ensuring call security while maintaining call forwarding functionality

Inventive Principle:
Principle #23Feedback

2Reliability

If authentication is required during session establishment, then caller privacy and security are enhanced, but the call setup process becomes more complex

Engineering Contradiction:
Improveauthentication securityVSAvoidsession establishment process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges authentication functionality with the existing SIP call establishment process by incorporating authentication requests and responses into standard SIP messages (INVITE, 180 Ringing, 183 Session Progress). This integration allows authentication to occur seamlessly within the normal call setup flow without requiring separate authentication protocols or additional signaling exchanges

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent implements universal authentication support that works across different call scenarios including direct calls, call forwarding, and conference calls. The authentication mechanism is designed to be optional and can be applied universally to any SIP-based communication, making it adaptable to various use cases without requiring system-specific implementations

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12506733B2Electronic device and method for authentication in session initiation protocol
Publication Date: 2025.12.23 SAMSUNG ELECTRONICS CO LTD
  • US12506733B2 patent drawing
  • US12506733B2 patent drawing
  • US12506733B2 patent drawing

AI summary

A method performed by an electronic device is provided. The method includes transmitting, to another electronic device through a server, a session initiation protocol (SIP) INVITE message for a connection request of a session. The SIP INVITE message includes information for indicating an authentication request. The method includes receiving, from the other electronic device through the server, a SIP information message for indicating a ringing including information for indicating an authentication support. The method includes identifying whether an SIP response message for indicating a success of the connection request is received from the other electronic device or a target electronic device for a call forwarding or not. The method includes establishing the session in response to a reception of the SIP response message. The reception of the SIP response message indicate an authentication success in the other electronic device or the target electronic device, according to the authentication request.