User Equipment Application Server Data Privacy VoIP
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In VoIP networks, such as IMS telecommunications networks, there is no existing method to execute IP services in a way that ensures application data remains private and is not exposed to the operator, even if the subscriber trusts the operator, due to the centralized deployment of Application Servers within the operator's secure environment.
Innovation Solution
A user equipment with a database storing application data and an IP-based Application Server (AS) that executes applications using an IP-based communications protocol, where the application data remains within the user equipment, and communication units for interacting with the telecommunications network, allowing the subscriber to manage and control access to their data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If Application Server is deployed in operator's secure environment, then service execution capability is improved, but application data security deteriorates
Solution Approach 1:
The system segments the Application Server functionality into two parts: the application logic executes in the operator's network environment, while the application data remains in the user equipment. This segmentation allows service execution capability to be maintained while protecting data security, as the operator's infrastructure provides the execution environment without having access to the actual data.
Solution Approach 2:
The patent introduces an intermediary mechanism where the user equipment acts as a mediator between the operator's Application Server and the application data. The Application Server can invoke and execute applications using data from the user equipment without directly accessing or exposing the data, thus maintaining both service execution capability and data security.
2Adaptability or versatility
If Application Server is deployed in operator's network, then service functionality is improved, but data exposure risk increases
Solution Approach 1:
The system separates the Application Server deployment location from the application data storage location. The Application Server is deployed in the operator's network to maintain service functionality and adaptability, while application data is segmented and kept in the user equipment, eliminating direct exposure risks.
Solution Approach 2:
The user equipment serves as an intermediary that enables the Application Server in the operator's network to access and process application data without actual exposure. The intermediary mechanism allows the Application Server to function with full service capabilities while the data remains protected within the user's device.
3Reliability
If application data is stored in user equipment, then data privacy is improved, but service execution complexity increases
Solution Approach 1:
The user equipment is designed with multi-functionality, serving both as the data storage repository and as the invocation target for the Application Server. This universal design allows the user equipment to handle both data protection and service execution coordination, maintaining data privacy while managing service execution complexity through a unified interface.
Data Source
AI summary
User equipment and method for executing an application, which uses application data, and which is executed in an Application Server in a VoIP based telecommunications network. The method comprises providing a user equipment including a database having the data stored therein, wherein the user equipment further includes an Application Server. The method further comprises invoking the SIP-AS included in the user equipment by a network node of the telecommunications network, providing, within the user equipment, the data to the Application Server included in the user equipment, executing the application, using the data, by the Application Server included in the user equipment, and communicating a result of executing the application from the Application Server included in the user equipment to the network.


