SRTP Header Storage for Undetectable Lawful Interception
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current lawful interception methods for MIKEY-TICKET TEK based SRTP communications are detectable by both initiator and responder UEs, violating the requirement of undetectable interception, as the RANDRi and TGK information is discarded by the KMS, making mid-call interception possible only through re-keying.
Innovation Solution
Storing a nonce value, crypto session identity (CS ID), and traffic encryption key generation key (TGK) in the SRTP packet header's Master Key Identifier (MKI) field, allowing the KMS to regenerate the TEK for lawful interception without re-keying, ensuring non-detectable interception.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If re-keying is performed for mid-call interception, then interception capability is enabled, but detectability increases and lawful interception requirements are violated
Solution Approach 1:
The patent applies preliminary action by pre-storing the RANDRi value in the KMS before the communication session ends. This allows the KMS to have the necessary key material readily available for future interception operations without needing to perform re-keying, thereby enabling undetectable mid-call interception while maintaining reliability of interception capability
2Reliability
If RANDRi and TGK information is discarded by the KMS, then security is maintained, but mid-call interception becomes impossible without detectable re-keying
Solution Approach 1:
The patent applies the discarding and recovering principle by selectively retaining the RANDRi value in the KMS while allowing other temporary key materials to be discarded. The RANDRi is recovered and stored in a manner that enables future TEK regeneration for lawful interception purposes, balancing security requirements with interception capability
3Reliability
If key material is stored for future interception, then mid-call interception capability is improved, but storage requirements and system complexity increase
Solution Approach 1:
The patent applies the extraction principle by isolating and storing only the essential RANDRi value in the KMS, rather than storing complete key material or multiple redundant copies. This minimal extraction of key material provides sufficient capability for TEK regeneration while minimizing storage requirements and system complexity
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The present disclosure relates to systems and methods for secure communications. In some aspects, one or more values used to generate an encryption key used to encrypt a packet are stored in a header of the packet. The packet is transmitted with the encrypted data portion in a communication. In some aspects, one or more values used to generate an encryption key are received. The encryption key is regenerated using the one or more values.