WO2002047353A2 - Verfahren zur durchführung von überwachungsmassnahmen in telekommunikations und datennetzen mit beispielsweise ip-protokoll - Google Patents
Verfahren zur durchführung von überwachungsmassnahmen in telekommunikations und datennetzen mit beispielsweise ip-protokoll Download PDFInfo
- Publication number
- WO2002047353A2 WO2002047353A2 PCT/DE2001/004573 DE0104573W WO0247353A2 WO 2002047353 A2 WO2002047353 A2 WO 2002047353A2 DE 0104573 W DE0104573 W DE 0104573W WO 0247353 A2 WO0247353 A2 WO 0247353A2
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- icc
- network
- address
- protocol
- information
- Prior art date
Links
- 238000000034 method Methods 0.000 title claims abstract description 33
- 238000012544 monitoring process Methods 0.000 title claims abstract description 14
- 238000004891 communication Methods 0.000 claims abstract description 19
- 230000005540 biological transmission Effects 0.000 claims description 19
- 238000006243 chemical reaction Methods 0.000 claims description 10
- 230000008569 process Effects 0.000 claims description 6
- 230000009466 transformation Effects 0.000 claims description 2
- 238000012806 monitoring device Methods 0.000 claims 1
- 230000011664 signaling Effects 0.000 claims 1
- 238000011161 development Methods 0.000 abstract 1
- 230000018109 developmental process Effects 0.000 abstract 1
- 230000001131 transforming effect Effects 0.000 abstract 1
- 238000013519 translation Methods 0.000 description 3
- 230000004913 activation Effects 0.000 description 2
- 238000007630 basic procedure Methods 0.000 description 2
- 238000012545 processing Methods 0.000 description 2
- 101100208308 Homo sapiens TTI1 gene Proteins 0.000 description 1
- 102100029253 TELO2-interacting protein 1 homolog Human genes 0.000 description 1
- 238000013459 approach Methods 0.000 description 1
- 238000013475 authorization Methods 0.000 description 1
- 230000001413 cellular effect Effects 0.000 description 1
- 230000002860 competitive effect Effects 0.000 description 1
- 230000009365 direct transmission Effects 0.000 description 1
- 230000002349 favourable effect Effects 0.000 description 1
- 238000010295 mobile communication Methods 0.000 description 1
- 230000009993 protective function Effects 0.000 description 1
- 230000009467 reduction Effects 0.000 description 1
- 230000007704 transition Effects 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L43/00—Arrangements for monitoring or testing data switching networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04M—TELEPHONIC COMMUNICATION
- H04M3/00—Automatic or semi-automatic exchanges
- H04M3/22—Arrangements for supervision, monitoring or testing
- H04M3/2281—Call monitoring, e.g. for law enforcement purposes; Call tracing; Detection or prevention of malicious calls
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04M—TELEPHONIC COMMUNICATION
- H04M7/00—Arrangements for interconnection between switching centres
- H04M7/006—Networks other than PSTN/ISDN providing telephone service, e.g. Voice over Internet Protocol (VoIP), including next generation networks with a packet-switched transport layer
Definitions
- IP protocol Internet protocol
- the invention relates to a method for carrying out surveillance measures in telecommunications and data networks, according to the preamble of patent claim 1.
- Packet-oriented telecommunications networks are, for example, cellular mobile radio networks based on the GSM standard with GPRS transmission method (ETSI GSM 03.60).
- the individual data packets with the TCP / IP protocol are transmitted individually in the network.
- TCP / IP protocol according to the Internet Engineering Task Force IETF standard RFC 793 / RFC 791
- IP address In order to be able to offer a competitive service, a way out of the IP address problem must be found. There are procedures available for using the public IP addresses multiple times (multiplex, timeshare, etc.). In principle, however, all of these methods have the functionality that the IP addresses must be converted at the network boundary between the telecommunications network and the external network, Internet, etc.
- the external IP address for Network Address Translation
- the external session reference when using a proxy
- the subscriber-related data traffic is decoupled close to the subscriber (usually in the first exchange) and sent as a copy to the relevant users.
- the reference to the IP address in the adjacent IP network (Internet etc.) is lost if there is any conversion of the IP address behind the exchange (see above).
- the present invention is based on the object of proposing a method on the basis of which an expanded monitoring of IP-based telecommunications and data networks is possible in accordance with the legal guidelines in order to close the monitoring gap which arises from the fact that Internet addresses on the network boundary to other telecommunications and data networks (e.g. public Internet) need to be changed and overarching So far, telecommunication and / or data connections have not been observed.
- telecommunications and data networks e.g. public Internet
- the procedure according to the invention is not limited to the application in mobile radio networks and not to the application in this exemplary network.
- FIG. 1 shows the basic procedure for monitoring subscriber connections in the mobile radio area (ETSI GSM 03.33).
- a mobile terminal communicates with the mobile radio network in such a way that both voice connections and data connections are coupled into / out of the GSM network via the base station subsystem BSS.
- Switching Center MSC ISDN switching center
- packet-oriented data is carried over separate network components / switching components.
- a connection is established (GPRS service activation) to the SGSN (Switching GPRS Support Node).
- SGSN Switchching GPRS Support Node
- PDP Context Packed Data Protocol
- GGSN Gateway GPRS Support Node
- the GGSN is an IP router that establishes the connection to the external network.
- the GGSN performs, for example, authentication to an external ISP (Internet Service Provider) using the RADIUS procedure (Remote Access Dial in User Service), as is carried out in the fixed network when dialing into the ISP.
- ISP Internet Service Provider
- RADIUS procedure Remote Access Dial in User Service
- the GGSN then receives the ISP-side IP address and transmits it to the MT.
- the GGSN assigns its own public IP address from the network operator's own pool, or it uses a private IP address (RFC 1918), for example, when IP servers are addressed in its own network.
- This functionality is common, for example, in WAP mode (Wireless Application Protocol).
- the need for public IP addresses is described in "TCP / IP" Dr. Sidnie Feit, McGraw-Hill, ISBN 0-07-022069-7, on p. 101.
- the notebook (NB) is optional and allows the use of a standardized personal computer (PC) environment with operating system, browser, clients etc. following, for example, the public Internet.
- Access Network AN stands for the functionality of the address conversion.
- the monitoring measures for the entire network are administered in the ICC (Interception Control Center).
- ICC Interception Control Center
- subscriber numbers who are currently subject to the measure is maintained there.
- This subscriber data is transmitted to the network nodes in the form of the phone numbers (IMSI or MSISDN in the GSM network)
- the technical implementation can, if necessary, provide for the direct transmission of certain data from one or more network nodes to the LEA (or several leas) if this saves transmission costs.
- the process is always administered by the ICC (possibly by the LEA via the ICC).
- the further text assumes mutual communication via the ICC.
- the simplification also represents all administered special transfers.
- IMSI / MSISDN other subscriber identifiers such as the TCP address (optionally in combination with the IP port number) can be used with other data networks, for example the Internet.
- an additional connection serves to establish communication between the ICC and the component inside or outside the telecommunications or data network, which operates to implement the IP addresses.
- a connection to an Internet access server IAS (2) is shown here, which carries out NAT and maintains the NAT database (3).
- the IAS is arranged within the AN (simplification, see above).
- the NAT database contains the assignment between internal and external addresses, since the address conversion must be carried out for every data packet.
- the IAS sends the required access parameters (individually or collectively) to the ICC, whereby the ICC carries out needs-specific processing and further transmission to the LEA.
- the IAS automatically transfers the relevant parameters to the ICC each time an address is created. This can be done for all participants, or only for certain (observed) participants. In the latter case, however, the IAS must maintain a list that was previously submitted by the ICC.
- the IAS maintains the complete assignment list
- the ICC maintains a list of phone numbers and internal IP addresses, each the information of the external address parameters is added.
- the IAS Since the IAS generally does not know any phone numbers, the corresponding information must be made available. For this purpose, the internal communication protocols between MT and IAS are expanded by corresponding information, or the IAS starts an inquiry with a database located in the network, which contains this information.
- the ICC generally does not have any IP addresses of the participants being observed, since these can possibly be changed dynamically and do not represent any useful subscriber identification in a telecommunications network. If IP addresses are transferred as selection criteria from the ICC to the IAS, this data must first be made available to the ICC. This can be done by querying the above-mentioned database, or by extracting the monitored protocol data in the ICC, which are decoupled / copied in the switching system and routed to the ICC. In this case, the ICC maintains a corresponding reference list.
- the ICC must carry out the needs-based selection with reduction of the participants, who are actually subject to monitoring. For this purpose, the IAS or alternatively the ICC maintains one of the above. Database or requests the parameters from an internal network database - depending on whether the address conversion parameters are transferred as a reference to an internal IP address or a subscriber number.
- the process is therefore associated with considerable effort, in particular a separate connection (physical or logical) between the ICC and IAS is required, a corresponding processing in the ICC and in the AN (IAS), a database in IAS and / or ICC and, if necessary, more centrally Office and a protocol vote on the LEA for the purpose of arranging the public IP address within the information protocols.
- the PATM Addressing the internal subscriber number, the IP address, the device identifier, etc. to disposal. Since all traffic of the MT in question is monitored and copied in the SGSN, the PATM also reaches the LEA via the ICC and can be evaluated for further monitoring measures.
- FIG. 2 IP surveillance according to the invention, variant 1
- FIG. 3 IP surveillance according to the invention, variant 2
Landscapes
- Engineering & Computer Science (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Computer Security & Cryptography (AREA)
- Technology Law (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Mobile Radio Communication Systems (AREA)
- Communication Control (AREA)
Abstract
Description
Claims
Priority Applications (4)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
AU2002229470A AU2002229470A1 (en) | 2000-12-07 | 2001-12-06 | Method for executing monitoring measures in telecommunications networks and data networks with, for example, an ip protocol (internet protocol) |
EP01990278A EP1340353B1 (de) | 2000-12-07 | 2001-12-06 | Verfahren zur Durchführung von Überwachungsmassnahmen in Telekommunikations- und Datennetzen mit beispielsweise IP-Protokoll |
DE50107934T DE50107934D1 (de) | 2000-12-07 | 2001-12-06 | Verfahren zur Durchführung von Überwachungsmassnahmen in Telekommunikations- und Datennetzen mit beispielsweise IP-Protokoll |
AT01990278T ATE308848T1 (de) | 2000-12-07 | 2001-12-06 | Verfahren zur durchführung von überwachungsmassnahmen in telekommunikations- und datennetzen mit beispielsweise ip-protokoll |
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
DE10061128.1 | 2000-12-07 | ||
DE10061128A DE10061128A1 (de) | 2000-12-07 | 2000-12-07 | Verfahren zur Durchführung von Überwachungsmaßnahmen in Telekommunikation- und Datennetzen mit beispielsweise IP-Protokoll (Internet Protokoll) |
Publications (2)
Publication Number | Publication Date |
---|---|
WO2002047353A2 true WO2002047353A2 (de) | 2002-06-13 |
WO2002047353A3 WO2002047353A3 (de) | 2003-01-09 |
Family
ID=7666323
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
PCT/DE2001/004573 WO2002047353A2 (de) | 2000-12-07 | 2001-12-06 | Verfahren zur durchführung von überwachungsmassnahmen in telekommunikations und datennetzen mit beispielsweise ip-protokoll |
Country Status (5)
Country | Link |
---|---|
EP (1) | EP1340353B1 (de) |
AT (1) | ATE308848T1 (de) |
AU (1) | AU2002229470A1 (de) |
DE (2) | DE10061128A1 (de) |
WO (1) | WO2002047353A2 (de) |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2002085041A3 (de) * | 2001-04-10 | 2003-04-10 | T Mobile Deutschland Gmbh | Verfahren zur durchführung von überwachungsmassnahmen und auskunftsersuchen in telekommunikations- und datennetzen |
Families Citing this family (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20040095894A1 (en) * | 2002-11-15 | 2004-05-20 | Jaana Eloranta | Method and system for handling connection information in a communication network |
DE10323006A1 (de) * | 2003-05-21 | 2004-12-23 | Siemens Ag | Zentrale Abhör- und Auswerteinheit |
DE102015005387B4 (de) | 2015-04-28 | 2018-06-14 | Walter Keller | Verfahren, Kommunikations-Endgerät, Router-Einrichtung, Servereinrichtung, Internet-Zugang und Computerrogrammprodukt zur Herstellung und Durchführung von Kommunikationsverbindungen zwischen zumindest einem Endgerät und dem Internet |
Family Cites Families (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US6104711A (en) * | 1997-03-06 | 2000-08-15 | Bell Atlantic Network Services, Inc. | Enhanced internet domain name server |
FI106509B (fi) * | 1997-09-26 | 2001-02-15 | Nokia Networks Oy | Laillinen salakuuntelu tietoliikenneverkossa |
EP1159817B1 (de) * | 1999-03-12 | 2011-11-16 | Nokia Corporation | Auffangsystem und -verfahren |
-
2000
- 2000-12-07 DE DE10061128A patent/DE10061128A1/de not_active Withdrawn
-
2001
- 2001-12-06 AT AT01990278T patent/ATE308848T1/de active
- 2001-12-06 WO PCT/DE2001/004573 patent/WO2002047353A2/de not_active Application Discontinuation
- 2001-12-06 DE DE50107934T patent/DE50107934D1/de not_active Expired - Lifetime
- 2001-12-06 AU AU2002229470A patent/AU2002229470A1/en not_active Abandoned
- 2001-12-06 EP EP01990278A patent/EP1340353B1/de not_active Expired - Lifetime
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2002085041A3 (de) * | 2001-04-10 | 2003-04-10 | T Mobile Deutschland Gmbh | Verfahren zur durchführung von überwachungsmassnahmen und auskunftsersuchen in telekommunikations- und datennetzen |
Also Published As
Publication number | Publication date |
---|---|
ATE308848T1 (de) | 2005-11-15 |
DE10061128A1 (de) | 2002-06-13 |
EP1340353A2 (de) | 2003-09-03 |
DE50107934D1 (de) | 2005-12-08 |
EP1340353B1 (de) | 2005-11-02 |
WO2002047353A3 (de) | 2003-01-09 |
AU2002229470A1 (en) | 2002-06-18 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
DE60124087T2 (de) | Verfahren zur überwachung von anrufen in einem ip-basierten netzwerk | |
DE60114163T2 (de) | Ip kommunikation in einem zellularen kommunkationssystem | |
DE60132387T2 (de) | Richtlinien-Koordination in einem Kommunikationsnetz | |
EP2005699B1 (de) | Verfahren für lawful interception bei anrufweiterschaltung in einem paketorientierten telekommunikationsnetz | |
WO1999033239A2 (de) | Verfahren zur unterstützung von mobilität im internet | |
DE602004008293T2 (de) | Transparente Zugangsauthentifikation in GPRS-Kern-Netzwerken | |
EP1378108B1 (de) | Verfahren zur durchführung von überwachungsmassnahmen und auskunftsersuchen in telekommunikations - und datennetzen | |
DE19948458A1 (de) | Server zur Unterstützung des Aufbaus von Fernsprechverbindungen über ein IP Netz | |
EP1340353B1 (de) | Verfahren zur Durchführung von Überwachungsmassnahmen in Telekommunikations- und Datennetzen mit beispielsweise IP-Protokoll | |
DE10316236A1 (de) | Verfahren und Anordnung zur Konfiguration einer Einrichtung in einem Datennetz | |
EP1929758B1 (de) | VERFAHREN ZUR AKTIVIERUNG ZUMINDEST EINER WEITERER ABHÖRHÖRMAßNAHME IN ZUMINDEST EINEM KOMMUNIKATIONSNETZ | |
EP2055087B1 (de) | Verfahren zum weiterleiten von notfallnachrichten eines endgerätes in einem kommunikationsnetz | |
EP1522202B1 (de) | Erstellen von dienstevereinbarungen zur nutzung netzinterner funktionen von telekommunikationsnetzen | |
DE10053951B4 (de) | Verfahren und Router zur Einrichtung einer Verbindung über ein IP-orientiertes Netz | |
DE19936783C2 (de) | Verfahren zur Nutzung von durch ein Kommunikationsnetz bereitgestellten teilnehmerbezogenen Wirknetzinformationen in Mehrwert- oder Internetdiensten | |
DE60202663T2 (de) | System und Verfahren zum Zuteilen dynamischer IP-Adressen | |
DE10151743A1 (de) | Verfahren zur Durchführung von augenblicklichem Nachrichtenverkehr (Instant Messaging) mit paketvermittelten Daten | |
DE19833969A1 (de) | Verfahren zum Aufbau einer Kommunikationsverbindung | |
DE19952669A1 (de) | Umgekehrte Maskierung für die Zugreifbarkeit auf Datenendstationen in privaten IPv4-Netzen | |
EP1841164A1 (de) | System, Verfahren und Verbindungseinheit zum dynamischen Konfigurieren von NAT-Routern | |
DE10154546A1 (de) | Verfahren zum Zugänglichmachen von Diensten in Telekommunikationsnetzen, zum Beispiel im Internet | |
DE102005063048A1 (de) | Vermittlungseinheit für ein IP Multimedia Subsystem | |
DE102008059522A1 (de) | Vorrichtung und Verfahren zur automatischen Umleitung des VolP-Telefonverkehrs bei Netzstörungen in ein Mobilfunknetz | |
DE10042267A1 (de) | Adressierungsserver | |
DE10155939A1 (de) | Verfahren zur Übertragung von Signalisierungsdaten und Telekommunikationssystem |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
AK | Designated states |
Kind code of ref document: A2 Designated state(s): AE AG AL AM AT AU AZ BA BB BG BR BY BZ CA CH CN CO CR CU CZ DK DM DZ EC EE ES FI GB GD GE GH GM HR HU ID IL IN IS JP KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX MZ NO NZ PL PT RO RU SD SE SG SI SK SL TJ TM TR TT TZ UA UG US UZ VN YU ZA ZW |
|
AL | Designated countries for regional patents |
Kind code of ref document: A2 Designated state(s): GH GM KE LS MW MZ SD SL SZ TZ UG ZM ZW AM AZ BY KG KZ MD RU TJ TM AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE TR BF BJ CF CG CI CM GA GN GQ GW ML MR NE SN TD TG |
|
121 | Ep: the epo has been informed by wipo that ep was designated in this application | ||
DFPE | Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed before 20040101) | ||
WWE | Wipo information: entry into national phase |
Ref document number: 2001990278 Country of ref document: EP |
|
WWP | Wipo information: published in national office |
Ref document number: 2001990278 Country of ref document: EP |
|
WWG | Wipo information: grant in national office |
Ref document number: 2001990278 Country of ref document: EP |
|
NENP | Non-entry into the national phase |
Ref country code: JP |
|
WWW | Wipo information: withdrawn in national office |
Country of ref document: JP |