IP Library Granted Patent US 11,381,546
Granted Patent B2
US 11,381,546 · App. 16/958,245 · Granted Jul 5, 2022

Method for securing an interceptible call end-to-end

Inventor: Alexandre Marchese-Ribeaux (Pontoise, FR)
H04L63/0281H04L9/083H04L9/0894H04L9/3213H04L63/0428H04L63/061H04L63/168H04L63/30
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,381,546
App. No.
16/958,245
Granted
Jul 5, 2022
Kind
B2
Abstract

In order to secure interceptible calls end-to-end, an intermediate MIKEY server is used to allow an intermediate SIP server to communicate with a key-management server. The intermediate SIP server intercepts call elements when a call is initialized among a plurality of terminal devices. The intermediate SIP server supplies these intercepted elements to the intermediate MIKEY server, which then establishes a dialogue with the key-management server on the basis of these elements. The result of this dialogue is sent back to the intermediate SIP server, which records same as call metadata allowing direct or deferred use of the call content.

Claims (29)

1. A process for end-to-end securing of an interceptible communication between at least a first terminal device and a second terminal device, the process comprising:

establishing the interceptible communication via a first intermediate server, which communicates using a session initiation protocol making it possible to exchange session keys, each terminal device of said at least the first terminal device and said second terminal device using a session key to encrypt communication data said each terminal device is transmitting,

distributing the session keys by a key management server which communicates using a key management protocol,

receiving an invitation message by the first intermediate server, transmitted by the first terminal device, according to the session initiation protocol, the invitation message inviting the second terminal device and comprising a ticket according to the key management protocol,

receiving, by the first intermediate server, a message of acceptance of the invitation message comprising a result of processing of the ticket by the second terminal device,

before transmitting the invitation message to the second terminal device, saving, by the first intermediate server, of the ticket received via the invitation message,

before transmitting the message of acceptance to the first terminal device,

producing, by the first intermediate server, a ticket decode request message comprising

the ticket that is saved,

result of processing of the ticket that is saved,

transmitting, by the first intermediate server, the ticket decode request message bound for a second intermediate server, such that the second intermediate server receives the ticket decode request message,

wherein the second intermediate server is between the first intermediate server and the key management server, and

wherein the key management server comprises a communication interface, such that the communication interface connects the key management server to a public network,

receiving, by the first intermediate server, a decode response comprising at least the session keys of the interceptible communication being established,

storing, by the first intermediate server, the session keys by associating the session keys with communication metadata.

2. The process for end-to-end securing of an interceptible communication according to claim 1 , wherein the second intermediate server, upon receipt of the ticket decode request message,

produces a ticket resolution message, according to the key management protocol, comprising

the ticket that is saved,

a specific identifier designating the second intermediate server as a particular guest in the interceptible communication being established,

transmitting the ticket resolution message to the key management server,

receiving a resolution response,

producing the decode response based on the resolution response.

3. The process for end-to-end securing of an interceptible communication according to claim 1 , wherein the communication metadata are chosen from a set formed of at least:

a unique identifier of the interceptible communication,

an identifier of an inviter,

an identifier of an invitee,

a communication start date,

a communication end date.

4. The process for end-to-end securing of an interceptible communication according to claim 1 , wherein the interceptible communication between at least the first intermediate server and the second intermediate server are conducted using http protocol.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 4, 2022
From: ATOS FRANCE
To: BULL SAS
Reel/Frame 060044/0630 →
CHANGE OF NAME Recorded Apr 25, 2022
From: ATOS INTEGRATION
To: ATOS FRANCE
Reel/Frame 059790/0954 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 26, 2020
From: MARCHESE-RIBEAUX, ALEXANDRE
To: ATOS INTEGRATION
Reel/Frame 053047/0387 →
Priority Claims (1)
FR 1701383 · Dec 27, 2017 · national
Continuity (1)
Related Publication 20200336468A1 · Oct 22, 2020