NCAS National Caller ID Authentication System



Similar documents
IP PBX. SD Card Slot. FXO Ports. PBX WAN port. FXO Ports LED, RED means online

VoIP telephony over internet

Application Notes for Avaya IP Office 7.0 Integration with Skype Connect R2.0 Issue 1.0

Connecting with Vonage

Application Notes for Configuring Cablevision Optimum Voice SIP Trunking with Avaya IP Office - Issue 1.1

Release Notes for NeoGate TA410/TA X

PPreferredID = "P-Preferred-Identity" HCOLON PPreferredID-value. *(COMMA PPreferredID-value)

Lawful Interception in P2Pbased

Application Notes for Configuring Intelepeer SIP Trunking with Avaya IP Office Issue 1.0

SIP Trunking. Service Guide. Learn More: Call us at

Basic configuration of the GXW410x with Asterisk

GSX Monitor & Analyzer for Microsoft Lync 2013

Application Notes for Configuring Broadvox SIP Trunking with Avaya IP Office - Issue 1.0

ADTRAN SBC and Cisco Unified Call Manager SIP Trunk Interoperability

ADTRAN SBC and Avaya IP Office PBX SIP Trunk Interoperability

Security & Reliability in VoIP Solution

Chapter 10 Session Initiation Protocol. Prof. Yuh-Shyan Chen Department of Computer Science and Information Engineering National Taipei University

Connecting with Free IP Call

Vesselin Tzvetkov, Holger Zuleger {vesselin.tzvetkov, Arcor AG&Co KG, Alfred-Herrhausen-Allee 1, Eschborn, Germany

Overview ENUM ENUM. VoIP Introduction (2/2) VoIP Introduction (1/2)

Link2VoIP SIP Trunk Setup

Software Engineering 4C03 VoIP: The Next Telecommunication Frontier

Application Notes for BT Wholesale/HIPCOM SIP Trunk Service and Avaya IP Office 8.0 Issue 1.0

WHAT S BEHIND YOUR SMARTPHONE ICONS? A brief tour of behind-the-scenes signaling for multimedia services

SIP : Session Initiation Protocol

Manual. ABTO Software

Vulnerability Analysis on Mobile VoIP Supplementary Services and MITM Attack

Spam goes VoIP. Number Harvesting for Fun and Profit. Hack in The Box 2007 Dubai Hendrik Scholz

Network Connection Considerations for Microsoft Response Point 1.0 Service Pack 2

Guideline for SIP Trunk Setup

SIP and VoIP 1 / 44. SIP and VoIP

Session Initiation Protocol (SIP) 陳 懷 恩 博 士 助 理 教 授 兼 計 算 機 中 心 資 訊 網 路 組 組 長 國 立 宜 蘭 大 學 資 工 系 TEL: # 340

To ensure you successfully install Timico VoIP for Business you must follow the steps in sequence:

Cisco Unified Communications Manager 7.0

How To Configure. VoIP Survival. with. Broadsoft Remote Survival

White paper. SIP An introduction

NTP VoIP Platform: A SIP VoIP Platform and Its Services

NAT TCP SIP ALG Support

Posterity PSX-S system is designed in the leading edge IMS technology. It provides

Juha Heinänen

Voice Printing And Reachability Code (VPARC) Mechanism for prevention of Spam over IP Telephony (SPIT)

Grandstream Networks, Inc.

How to Configure the Toshiba Strata CIX for use with Integra Telecom SIP Solutions

Computer Networks. Voice over IP (VoIP) Professor Richard Harris School of Engineering and Advanced Technology (SEAT)

ABC SBC: Software Defined Communication Networks. FRAFOS GmbH

SIP Trunking Quick Reference Document

Connecting with sipgate

WebRTC: Why and How? FRAFOS GmbH. FRAFOS GmbH Windscheidstr. 18 Ahoi Berlin Germany

Frequently Asked Questions about Integrated Access

EZLoop IP-PBX Enterprise SIP Server

Configuring SIP Trunking and Networking for the NetVanta 7000 Series

Introducing Cisco Voice and Unified Communications Administration Volume 1

: Introducing Cisco Voice and Unified Communications Administration (ICOMM) v8.0 Course Introduction

CE Advanced Network Security VoIP Security

Configuration Notes 0217

Part II. Prof. Ai-Chun Pang Graduate Institute of Networking and Multimedia, Dept. of Comp. Sci. and Info. Engr., National Taiwan University

Vega 100G and Vega 200G Gamma Config Guide

VOIP SECURITY: BEST PRACTICES TO SAFEGUARD YOUR NETWORK ======

Whitepaper: Voice Call Notifications via VoIP and existing Dialogic Diva Boards

Voice Over IP. Priscilla Oppenheimer

How to Configure the Avaya IP Office 6.1 for use with Integra Telecom SIP Solutions

Multimedia Communication in the Internet. SIP: Advanced Topics. Dorgham Sisalem, Sven Ehlert Mobile Integrated Services FhG FOKUS

Application Notes for Configuring Broadvox SIP Trunking with Avaya IP Office Release 8.0 Issue 1.0

Installation Manual for Zoom V3 Hardware and Vontronix VoIP Phone Service

Application Notes for Configuring Avaya IP Office 9.0 with HIPCOM SIP Trunk Issue 1.0

A Study on Countering VoIP Spam using RBL

VoIP Gateway/IP-PBX Interworking with Skype

Cisco CCA Tool SIP Security methods

ESI SIP Trunking Installation Guide

VoIP QoS. Version 1.0. September 4, AdvancedVoIP.com. Phone:

An Introduction to VoIP Protocols

The SIP School- 'Mitel Style'

SIP Trunking Application Notes V1.3

MODELLING OF INTELLIGENCE IN INTERNET TELEPHONE SYSTEM

SIP Trunk Configuration V/IPedge Feature Description 5/22/13

Technical Configuration Notes

A Phased Framework for Countering VoIP SPAM

SHORT DESCRIPTION OF THE PROJECT...3 INTRODUCTION...4 MOTIVATION...4 Session Initiation Protocol (SIP)...5 Java Media Framework (JMF)...

SIP Security Controllers. Product Overview

Anat Bremler-Barr Ronit Halachmi-Bekel Jussi Kangasharju Interdisciplinary center Herzliya Darmstadt University of Technology

Introduction to VoIP Technology

Configuration of Applied VoIP Sip Trunks with the Toshiba CIX40, 100, 200 and 670

Japan Registry Service. ENUM Trial in Japan. NGI2 & IPv6 DNS Operation Workshop 5 Dec 2003 Yoshiro YONEYA <yone@jprs.co.jp> Copyright 2003 JPRS

ACD: Average Call Duration is the average duration of the calls routed bya a VoIP provider. It is a quality parameter given by the VoIP providers.

Siemens OpenScape Voice V7 SIP Connectivity with OpenScape SBC V7. to Integra SIP Service

GSM VOIP GATEWAY LEVEL. User Guide. GB with GSM module Two-way converter between VoIP and GSM

Basic configuration of the GXW410x with Trixbox

Grandstream Networks, Inc. How to Integrate UCM6100 with Microsoft Lync Server

Abstract. Avaya Solution & Interoperability Test Lab

User Manual. Four Channel s GSM VoIP Gateway. Model: GSM4SIP

GMSVoIP s PBX. Hosted model, running on provider s server, features rich PBX plus Class 5 broadband phone services

This sequence diagram was generated with EventStudio System Designer (

SIP Trunking using the EdgeMarc Network Services Gateway and the Mitel 3300 ICP IP-PBX

Voice over IP (SIP) Milan Milinković

Transcription:

NCAS National Caller ID Authentication System The National Telecom Security Border Controller OmniBud INC. 2003 2013 Dedicate to Internet Communication and Access Security

NCAS Registration Module PSTN subscribers with VoIP Calling Requirements of a country register their phone numbers and corresponding SIP details to the National NCAS DB after performing appropriate phone number ownership verification. 2

NCAS Registration Flow National NCAS DB Server NCAS Registration Server PSTN Subscribers with VoIP Calling Requirements of a country register their 1. Phone Number 2. SIP Details to National NCAS DB via Registration Server 3

Caller ID Authentication Module The Caller ID and corresponding SIP details (including VIA, CONTACT ) of an IP originated phone call with Caller ID in domestic phone number format are retrieved and transmitted to Caller ID Authentication Module then compare with the data stored in NCAS DB registered by PSTN subscribers. If the authentication result of Caller ID Authentication Module is failed, the IP originated phone call is suspected to be a Fraud Call of Fake Caller ID. There is no standard format of IP originated phone calls now and the Fraud Calls of Fake Caller IDs are easy to be hidden in these calls. It is easy for the government get rid of the IP originated Fraud Calls and standardize the signals by simple performing Caller ID authentication of IP originated phone calls. 4

SIP Details Sample INVITE sip:111@111.222.333.444 SIP/2.0 Via: SIP/2.0/UDP 111.222.333.443:5060;branch=z9hG4bKtiop3 SIP Server Via: SIP/2.0/UDP 111.222.333.442:5060;branch=z9hG4bK83842.1 IP ( 發 話 SIP 伺 服 器 IP) Via: SIP/2.0/UDP 111.222.333.441:5060;branch=z9hG4bKmp17a ( 發 話 設 備 IP) To: 0911111111 <sip:111@111.222.333.444> From: 0922222222 <sip:222@aaa.com>;tag=42 Caller ID ( 主 叫 號 碼 欄 位 與 發 話 端 URI) Subject: Where are you exactly? SIP Client Contact: <sip:222@111.222.333.441> IP ( 發 話 端 URI) 5

Caller ID Authentication Module A voice phone call is a two way communication. It means if the malicious caller changes the other SIP details together Caller ID, I the phone call will be terminated at the same time. That is the principle NCAS works to authenticate the Fraud Calls of Fake Caller IDs. In order not to affect the service and revenue of current PSTN operators, the IP originated phone calls failed in NCAS authentication should not be blocked, but only added with a Alert Mark to Caller ID to notice the PSTN Callee, thus to meet both needs of PSTN Operator Operation and PSTN Subscriber Protection. 6

Caller ID Authentication Module As to email and message services, because these services are one way communications, the IP originated sender can fake the communication signals together with Caller ID without failing the service. That is one way services like email and message cannot be secured by NCAS based mechanisms. 7

Malicious Call Marking Module There is no Alert Mark added to the Caller ID of an IP originated phone call passes NCAS authentication. An Alert Mark like 000, +++ is added to the Caller ID of an IP originated phone call fails NCAS authentication. If a PSTN Phone can be preset or installed a function of outputting different ring tones or flashes when detecting the Call ID is marked with Alert Mark like 000, +++ ) in the firmware or APPs, the power of putting off Fraud Call of Fake Caller ID will be much stronger. 8

NCAS Operation Flow (Caller ID Authentication Passed) 4. Query in NCAS Query System NCAS DB NCAS Query Server NCAS Fraud Detection Server 3. Send query to NCAS Query Server 5. A passed query by NCAS Query Server NCAS Agent Server 2. Forward SIP invite to NCAS Agent Server 6. Forward the Unmarked SIP invite to PSTN Operator NGN Server 1. Inbound IP Traffic VoIP Provider SIP Server RTP PSTN Operator NGN Server NCAS Procedure Unmarked IP Traffic Marked IP Traffic Unmarked PSTN Traffic Marked PSTN Traffic 9

NCAS Demo Picture (Caller ID Authentication Passed) 10

NCAS Operation Flow (Caller ID Authentication Failed) 4. Query in NCAS Query System NCAS DB NCAS Query Server NCAS Fraud Detection Server 3. Send query to NCAS Query Server 5. A failed query by NCAS Query Server NCAS Agent Server 2. Forward SIP invite to NCAS Agent Server 6. Forward the Marked SIP invite to PSTN Operator NGN Server 1. Inbound IP Traffic VoIP Provider SIP Server RTP PSTN Operator NGN Server NCAS Procedure Unmarked IP Traffic Marked IP Traffic Unmarked PSTN Traffic Marked PSTN Traffic 11

NCAS Demo Picture (Caller ID Authentication Failed) 12

Fraud Call of Fake Caller ID Detection Module The Malicious Call Detection Module accumulates the data including Caller ID, SIP Details, time and performs an instant analysis to perform the Real-Time Suspicious Fraud Call of Fake Caller ID Detection. The Malicious Call Detection Module accumulates the data including Caller ID, SIP Details, time and performs a periodical analysis to perform the accurate Fraud Call of Fake Caller ID Detection. 13

IP Originated Phone Call LOI Module(Optional Optional) It is easy to add the LOI equipments to IP Originate Phone Call LOI Module to record or monitor the phone calls of target criteria like Failed NCAS, target Caller ID, target Callee Phone Number, target SIP Server IP etc. It can not only perform instant LOI of specific purposes, but also significant reduce the cost of LOI building up over PSTN equipments. 14

NCAS DB Registration and Update Flow National NCAS Center NCAS Registration Servers, DB and Fraud Detection Server Domestic PSTN Operator A NCAS DB and Agent Servers Internet VoIP Operators NCAS Registration Servers PSTN subscribers with VoIP Calling Requirements of a country register their phone numbers and corresponding SIP details to the National NCAS DB through themselves or their VoIP Operators. National NCAS Center update latest NCAS details to Domestic PSTN Operators periodically for their NCAS Authentication and Malicious Marking Module to perform NCAS authentication. Domestic PSTN Operator B NCAS DB and Agent Servers 15

NCAS Operation Flow National NCAS Center NCAS Registration Servers, DB and Fraud Detection Server Domestic PSTN Operator A NCAS DB and Agent Servers Internet VoIP/ISR Operator SIP Servers All the IP originated phone call with Caller ID in domestic phone number format are transmitted to NCAS Agent Servers of PSTN Operators to perform: 1. Caller ID Authentication 2. Malicious Call Marking 3. IP Originated Phone Call LOI (optional) Domestic PSTN Operator B NCAS DB and Agent Servers 16

NCAS Fraud Call of Fake Caller ID Detection Flow National NCAS Center NCAS Registration Servers, DB and Fraud Detection Server Domestic PSTN Operator A NCAS DB and Agent Servers Internet VoIP/ISR Operator SIP Servers The Fraud Call of Fake Caller ID Detection Module accumulates the data including Caller ID, SIP Details, time from Domestic PSTN Operators to perform the analysis of instant and periodic Fraud Call of Fake Caller ID Detection. Domestic PSTN Operator B NCAS DB and Agent Servers 17

Best wishes to everybody in the room! OmniBud INC. 2003 2013 Dedicate to Internet Communication and Access Security