SIP Identity Div Header Processing for Call Diversion

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems face challenges in efficiently determining the information to use for generating Identity(div) headers in SIP messages, leading to potential misinformation and increased computing intensity due to repeated signing across operator boundaries during call diversions.

Innovation Solution

A method that optimizes the process by identifying and verifying the correct Identity(div) headers within the SIP INVITE requests, preventing duplicate generation and ensuring signing occurs only at the egress point, thereby reducing computational load and ensuring authenticity.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If operators sign calls at every diversion point across operator boundaries, then call authentication fidelity is maintained, but computational load and processing time increase significantly

Engineering Contradiction:
Improvecall authentication fidelityVSAvoidcomputational load
Core Design Contradiction:
ReliabilityVSUse of energy by stationary object

Solution Approach 1:

The patent applies preliminary action by having the originating operator sign the call at the point of origin before the call traverses through multiple operator networks. This initial signing action pre-establishes the authentication credentials (Identity headers) that will be validated throughout the call path, eliminating the need for repeated signing operations at each subsequent diversion point while maintaining authentication fidelity.

Inventive Principle:
Principle #10Preliminary action

2Measurement precision

If operators generate Identity(div) headers for every diversion, then diversion information accuracy is maintained, but the number of headers and processing complexity increase

Engineering Contradiction:
Improvediversion information accuracyVSAvoidheader processing complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent extracts and separates the signing operation from the diversion operation. Instead of generating new Identity(div) headers at each diversion point, the system extracts the original Identity headers from the call initiation and reuses them throughout the diversion chain. This extraction principle reduces header proliferation while maintaining the ability to track and verify each diversion step through the preserved original authentication data.

Inventive Principle:
Principle #2Taking out (Extraction)

3Adaptability or versatility

If multiple operators independently sign diverted calls, then each operator's security policy is enforced, but information consistency and chain verification become unreliable

Engineering Contradiction:
Improveoperator security policy enforcementVSAvoidinformation consistency
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the authentication responsibility into two distinct parts: (1) the originating operator performs the signing operation and embeds Identity headers with complete call path information, and (2) intermediate operators perform validation of these headers without generating new signatures. This segmentation maintains security policy enforcement at the origin while ensuring information consistency throughout the call chain, as all operators reference the same original authenticated data.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS11764963B2Methods and apparatus for adding and/or providing stir/shaken diversion information
Publication Date: 2023.09.19 RIBBON COMMUNICATIONS OPERATING CO INC
  • US11764963B2 patent drawing
  • US11764963B2 patent drawing
  • US11764963B2 patent drawing

AI summary

Communications methods and apparatus for providing and/or adding STIR/SHAKEN Diversion Information to requests. An exemplary method embodiment includes the steps of: receiving at a second communications network a Session Initiation Protocol (SIP) Invite request from a first communications network, the SIP Invite request being directed to a first SIP address corresponding to a first user equipment device located within the second communications network, the SIP Invite request including a SIP Identity shaken header and one or more SIP Identity div headers; determining at the second communications network whether or not the received SIP Invite request was previously diverted by the second communications network to another network; and when the SIP Invite request is determined to have been previously diverted by the second communications network to another network, processing the SIP Invite request at the second communications network as a previously received and diverted SIP Invite request.