EP1530865B1

Method and system for communications monitoring

Abstract

The present invention provides for a system, and related method, for use in the monitoring of communications traffic, comprising the step of recording the said traffic and storing the recorded traffic in an encrypted data format such that the data can be decrypted only by means of keys that exhibit restricted availability.

EP1530865B1, drawing sheet 1
Sheet 1 of 1

Term

Term ended

Expired 21 August 2023, 3.1 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

14 claims: 9 independent, 5 dependent

  1. 1
    A method for use in the monitoring of communications traffic, comprising the steps of:connecting a recorder (16) to a telecommunications switch (14) to record packet-data communication traffic received from, and passing through, the said switch;encrypting the packet-data communication traffic at an encryption engine (18) communicatively connected to the recorder after the packet-data communication traffic has passed through the said switch to create encrypted data;recording the encrypted data and storing the encrypted data such that the data can be decrypted only by means of keys (22) that exhibit restricted availability, characterized in that a said key includes embedded clauses such that access to an encrypted data record is only allowed where a match is made between search criteria associated with the embedded clauses and the encrypted data record.
  2. 2
    A method as claimed in Claim 1 and including the step of employing a spare disk and/or CPU capacity within a telecommunications system.
  3. 3
    A method as claimed in Claim 1 or Claim 2, and including the step of employing separate levels of authorisation for access to the stored data.
  4. 4
    A method as claimed in any of Claims 1-3, and including the step of employing a decryption key that is useable only once.
  5. 5
    A method as claimed in any preceding claim, including the step of logging all accesses to the stored data to an encrypted secure audit trail.
  6. 6
    A method as claimed in any preceding claim including a tamper detection reference within the encrypted data.
  7. 7
    A method as claimed in any preceding claim, including the step of monitoring all the available communications traffic.
  8. 8
    A method as claimed in Claim 7, wherein storing the recorded traffic comprises storing all of the recorded traffic.
  9. 9
    A method as claimed in any preceding claim, wherein the communications traffic to be recorded comprises traffic through a telecommunications switch, router or gateway.
  10. 10
    A method as claimed in any preceding claim, including encrypting details relating to the communications traffic and storing the said encrypted details for subsequent access.
  11. 11
    A method as claimed in any preceding claim including authorising use of the required decryption key in a restricted manner.
  12. 12
    A method as claimed in Claim 10 wherein storing the recorded traffic comprises encrypting the details.
  13. 13
    A method as claimed in Claim 12 wherein the details comprise at least one of a source of the content, a destination of the contest, and a time frame.
  14. 14
    A system (10) comprising means (16, 18, 20, 22) for executing the method of any preceding claim.