...
首页> 外文期刊>Digital investigation >Digital Wiretap Warrant: Improving the security of ETSI Lawful Interception
【24h】

Digital Wiretap Warrant: Improving the security of ETSI Lawful Interception

机译:数字窃听认股权证:提高ETSI合法拦截的安全性

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Lawful Interception (LI) of data communications is an essential tool for Law Enforcement Agencies (LEA) in order to investigate criminal activities carried out or coordinated by means of Internet. However, the ability to secretly monitor the activities of citizens also has a great impact on civil rights. Therefore, democratic societies must prevent abuse and ensure that LI is only employed in specific cases with justifiable grounds or a probable cause. Nowadays, in many countries each interception must be authorized by a wiretap warrant, usually issued by a judge. However, this wiretap warrant is merely an administrative document that should be checked by the network or service operator before enabling the monitoring of its customers, whose communications are later handed over to a LEA in plaintext. This paper proposes the idea of employing a Digital Wiretap Warrant (DWW), which further protects the civil liberties, security and privacy of LI by ensuring that monitoring devices can only be enabled with a valid DWW, and by encrypting the captured data so only the authorized LEA is able to decrypt those communications. Moreover, in the proposed DWW framework all digital evidence is securely time-stamped and signed, thus guaranteeing that it has not been tampered with, and that a proper chain of custody has been met. In particular this paper proposes how to apply the DWW concept to the lawful interception framework defined by the ETSI LI Technical Committee, and evaluates how the additional security mechanisms could impact the performance and storage costs of a LI platform. (C) 2015 Elsevier Ltd. All rights reserved.
机译:数据通信的合法侦听(LI)是执法机构(LEA)侦查通过Internet进行或协调的犯罪活动的重要工具。但是,秘密监视公民活动的能力也对公民权利产生很大影响。因此,民主社会必须防止滥用职权,并确保仅在有正当理由或可能原因的特定情况下使用LI。如今,在许多国家/地区,每次拦截都必须通过通常由法官签发的窃听令进行授权。但是,此窃听手令仅是一份管理文件,应由网络或服务运营商在对其客户进行监视之前进行检查,其客户的通信随后以纯文本格式移交给LEA。本文提出了使用数字窃听认股权证(DWW)的想法,该担保通过确保只能使用有效的DWW启用监视设备并加密捕获的数据,从而进一步保护了LI的公民自由,安全和隐私。授权的LEA能够解密这些通信。此外,在拟议的DWW框架中,所有数字证据都经过了安全的时间戳记和签名,从而保证了该证据没有被篡改,并确保了适当的监管链。特别是,本文提出了如何将DWW概念应用于ETSI LI技术委员会定义的合法拦截框架,并评估了其他安全机制如何影响LI平台的性能和存储成本。 (C)2015 Elsevier Ltd.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号