User Equipment Application Server Data Privacy VoIP

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In VoIP networks, such as IMS telecommunications networks, there is no existing method to execute IP services in a way that ensures application data remains private and is not exposed to the operator, even if the subscriber trusts the operator, due to the centralized deployment of Application Servers within the operator's secure environment.

Innovation Solution

A user equipment with a database storing application data and an IP-based Application Server (AS) that executes applications using an IP-based communications protocol, where the application data remains within the user equipment, and communication units for interacting with the telecommunications network, allowing the subscriber to manage and control access to their data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If Application Server is deployed in operator's secure environment, then service execution capability is improved, but application data security deteriorates

Engineering Contradiction:
Improveservice execution capabilityVSAvoidapplication data security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system segments the Application Server functionality into two parts: the application logic executes in the operator's network environment, while the application data remains in the user equipment. This segmentation allows service execution capability to be maintained while protecting data security, as the operator's infrastructure provides the execution environment without having access to the actual data.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary mechanism where the user equipment acts as a mediator between the operator's Application Server and the application data. The Application Server can invoke and execute applications using data from the user equipment without directly accessing or exposing the data, thus maintaining both service execution capability and data security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If Application Server is deployed in operator's network, then service functionality is improved, but data exposure risk increases

Engineering Contradiction:
Improveservice functionalityVSAvoiddata exposure risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system separates the Application Server deployment location from the application data storage location. The Application Server is deployed in the operator's network to maintain service functionality and adaptability, while application data is segmented and kept in the user equipment, eliminating direct exposure risks.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The user equipment serves as an intermediary that enables the Application Server in the operator's network to access and process application data without actual exposure. The intermediary mechanism allows the Application Server to function with full service capabilities while the data remains protected within the user's device.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If application data is stored in user equipment, then data privacy is improved, but service execution complexity increases

Engineering Contradiction:
Improvedata privacyVSAvoidservice execution complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The user equipment is designed with multi-functionality, serving both as the data storage repository and as the invocation target for the Application Server. This universal design allows the user equipment to handle both data protection and service execution coordination, maintaining data privacy while managing service execution complexity through a unified interface.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9432413B2User equipment and method for executing a service
Publication Date: 2016.08.30 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US9432413B2 patent drawing
  • US9432413B2 patent drawing
  • US9432413B2 patent drawing

AI summary

User equipment and method for executing an application, which uses application data, and which is executed in an Application Server in a VoIP based telecommunications network. The method comprises providing a user equipment including a database having the data stored therein, wherein the user equipment further includes an Application Server. The method further comprises invoking the SIP-AS included in the user equipment by a network node of the telecommunications network, providing, within the user equipment, the data to the Application Server included in the user equipment, executing the application, using the data, by the Application Server included in the user equipment, and communicating a result of executing the application from the Application Server included in the user equipment to the network.