SIP Identity Div Header Processing for Call Diversion
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems face challenges in efficiently determining the information to use for generating Identity(div) headers in SIP messages, leading to potential misinformation and increased computing intensity due to repeated signing across operator boundaries during call diversions.
Innovation Solution
A method that optimizes the process by identifying and verifying the correct Identity(div) headers within the SIP INVITE requests, preventing duplicate generation and ensuring signing occurs only at the egress point, thereby reducing computational load and ensuring authenticity.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If operators sign calls at every diversion point across operator boundaries, then call authentication fidelity is maintained, but computational load and processing time increase significantly
Solution Approach 1:
The patent applies preliminary action by having the originating operator sign the call at the point of origin before the call traverses through multiple operator networks. This initial signing action pre-establishes the authentication credentials (Identity headers) that will be validated throughout the call path, eliminating the need for repeated signing operations at each subsequent diversion point while maintaining authentication fidelity.
2Measurement precision
If operators generate Identity(div) headers for every diversion, then diversion information accuracy is maintained, but the number of headers and processing complexity increase
Solution Approach 1:
The patent extracts and separates the signing operation from the diversion operation. Instead of generating new Identity(div) headers at each diversion point, the system extracts the original Identity headers from the call initiation and reuses them throughout the diversion chain. This extraction principle reduces header proliferation while maintaining the ability to track and verify each diversion step through the preserved original authentication data.
3Adaptability or versatility
If multiple operators independently sign diverted calls, then each operator's security policy is enforced, but information consistency and chain verification become unreliable
Solution Approach 1:
The patent segments the authentication responsibility into two distinct parts: (1) the originating operator performs the signing operation and embeds Identity headers with complete call path information, and (2) intermediate operators perform validation of these headers without generating new signatures. This segmentation maintains security policy enforcement at the origin while ensuring information consistency throughout the call chain, as all operators reference the same original authenticated data.
Data Source
AI summary
Communications methods and apparatus for providing and/or adding STIR/SHAKEN Diversion Information to requests. An exemplary method embodiment includes the steps of: receiving at a second communications network a Session Initiation Protocol (SIP) Invite request from a first communications network, the SIP Invite request being directed to a first SIP address corresponding to a first user equipment device located within the second communications network, the SIP Invite request including a SIP Identity shaken header and one or more SIP Identity div headers; determining at the second communications network whether or not the received SIP Invite request was previously diverted by the second communications network to another network; and when the SIP Invite request is determined to have been previously diverted by the second communications network to another network, processing the SIP Invite request at the second communications network as a previously received and diverted SIP Invite request.


