On Wiretaps Delivering More than Was Asked For.
This article on Demystifying Lawful Intercept blog has something to say on the subject of recent turmoil over an audit at the FBI where it was found that in over 1000 cases the FBI received more information than it was entitled to.
What I gather from all this is that you cannot have a good Lawful Interception solution without a proper procedure surrounding it. Proper procedures that need to be followed by the Service provider and the LEA. Technology should help the auditors establishing whether the procedures are followed to the letter.
It is for this reason I do not like the ATIS or PacketCable standards. They are very specific on what data should be encapsulated in what fields of what structure, but there are no handles whatsoever to establish basic CIA properties in the handover itself. The ETSI LI standard has a better solution. If the proper options are chosen, everybody will be able to establish at any point in time after the data has been handed over that the data was not tampered with.
More on that another time.
Technorati Tags: Forensics, Legislation, Lawful Interception