IP Library › Granted Patent US 9,143,411
Granted Patent B2
US 9,143,411 · App. 13/848,264 · Granted Sep 22, 2015

Method and system for intercepting over-the-top communications

Inventors: James J. Ni (Westford, MA); Elliot G. Eichen (Arlington, MA)
Assignee: Verizon Patent and Licensing Inc.
H04L43/026H04L43/028H04L63/306
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,143,411
App. No.
13/848,264
Granted
Sep 22, 2015
Kind
B2
Abstract

An approach for lawful intercept of over-the-top (OTT) communications is described. A request is received to intercept one or more OTT communications. Such interception can be part of a legal mandate of an appropriate law enforcement agency. One or more session and flow identification signatures associated with a packet-based network are determined. Signaling and media traffic associated with the one or more OTT communications are identified, translated and delivered to the law enforcement agency.

Claims (43)

1. A method comprising:

receiving, by an apparatus of a network operator, a request to intercept one or more over-the-top (OTT) communications of an interception subject, the one or more OTT communications operating in a peer-to-peer communication mode without intermediation of one or more signaling protocols by the network operator;

determining, by the apparatus, one or more identification signatures associated with the one or more OTT communications over a packet-based network;

identifying signaling traffic associated with the one or more OTT communications based on the one or more identification signatures using one or more identification engines implemented in a path of OTT communication to and from the interception subject, wherein the one or more identification signatures are based, at least in part, on an Internet Protocol (IP) address of the interception subject and at least one of a communication service and a signaling protocol used in the communication service; and

configuring the one or more identification engines to identify the one or more OTT communications by detecting that the interception subject starts the one or more OTT communications using the at least one of the communication service and the signaling protocol.

2. A method of claim 1 , further comprising:

obtaining the IP address of the interception subject from a network address translation service; and

determining the one or more identification signatures based on address information and/or other parameters or features of the packet-based network,

wherein the one or more service providers provide one or more instant messaging services, one or more social network services, or a combination thereof, in the peer-to-peer communication mode.

3. A method of claim 1 , further comprising:

capturing the signaling traffic; and

translating signaling information contained within the signaling traffic to corresponding information for a circuit-based network,

wherein the one or more OTT communications are carried via an internet protocol tunneling protocol.

4. A method of claim 1 , further comprising:

configuring a media flow controller to capture one or more media flows associated with the signaling traffic; and

translating media flow information contained within the one or more media flows to corresponding information for a circuit-based network.

5. A method of claim 1 , wherein the one or more identification signatures include one or more transport layer port numbers used by the communication service.

6. An apparatus comprising:

at least one processor; and

at least one memory including computer program code for one or more programs,

the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus of a network operator to perform at least the following,

receive a request to lawfully intercept one or more over-the-top (OTT) communications of an interception subject, the one or more OTT communications operating in a peer-to-peer communication mode without intermediation of one or more signaling protocols by the network operator,

determine one or more identification signatures associated with the one or more OTT communications over a packet-based network,

identify signaling traffic associated with the one or more OTT communications based on the one or more identification signatures, wherein the one or more identification signatures are based, at least in part, on an Internet Protocol (IP) address of an interception subject; and

configure a plurality of identification engines to identify the one or more OTT communications based on the one or more identification signatures.

7. An apparatus of claim 6 , wherein the apparatus is further caused to:

determine the one or more identification signatures based on address information and/or other parameters or features of the packet-based network.

8. An apparatus of claim 6 , wherein the apparatus is further caused to:

capture the signaling traffic; and

translate signaling information contained within the signaling traffic to corresponding information for a circuit-based network.

9. An apparatus of claim 6 , wherein the apparatus is further caused to:

configure a media flow controller to capture one or more media flows associated with the signaling traffic; and

translate media flow information contained within the one or more media flows to corresponding information for a circuit-based network.

10. A system comprising:

an over-the-top (OTT) intercept platform configured to receive a request to intercept one or more OTT communications of an interception subject, the one or more OTT communications operating in a peer-to-peer communication mode without intermediation of one or more signaling protocols by an network operator, and to determine one or more identification signatures associated with the one or more OTT communications over a packet-based network; and

one or more identification engines configured to identify signaling traffic associated with the one or more OTT communications based on the one or more identification signatures, the one or more identification engines disposed in a communication path of the one or more OTT communications, wherein the one or more identification signatures are based, at least in part, on an Internet Protocol (IP) address of the interception subject and at least one of a communication service and a signaling protocol used in the communication service.

11. A system of claim 10 , wherein the one or more identification signatures are based, at least in part, on an Internet Protocol (IP) address.

12. A system of claim 10 , wherein the one or more identification engines are further configured to identify the one or more OTT communications based on the one or more identification signatures.

13. A system of claim 10 , wherein the OTT intercept platform determines one or more identification signatures based on address information and/or other parameters or features of the packet-based network.

14. A system of claim 10 , wherein the one or more identification engines are further configured to capture the signaling traffic, and the OTT intercept platform is further configured to translate signaling information contained within the signaling traffic to corresponding information for a circuit-based network.

15. A system of claim 10 , further comprising:

a media flow controller configured to capture one or more media flows associated with the signaling traffic, and translate media flow information contained within the one or more media flows to corresponding information for a circuit-based network.

16. A system of claim 10 , wherein the request is generated by a law enforcement agency.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 21, 2013
From: NI, JAMES; EICHEN, ELLIOT G.
To: VERIZON PATENT AND LICENSING INC.
Reel/Frame 030059/0346 →
Continuity (1)
Related Publication 20140286177A1 · Sep 25, 2014