Alcatel-Lucent IAP93 Guida Utente Pagina 283

  • Scaricare
  • Aggiungi ai miei manuali
  • Stampa
Vedere la pagina 282
Figure 106 IAP to CALEA Server through VPN
Ensure that IPSec tunnel is configured if the client data has to be routed to the ISP or CALEA server through VPN.
For more information on configuring IPSec, see Configuring IPSec Tunnel on page 239.
Client Traffic Replication
Client traffic is replicated in the following ways:
l Through RADIUS VSA In this method, the client traffic is replicated by using RADIUS VSA to assign clients to
a CALEA related user role. To enable role assignment to clients, you need to create a user role and CALEA
access rule, and then assign the CALEA rule to the user role. Whenever a client that is configured to use a
CALEA rule connects, a replication role is assigned.
l Through Change of Authorization(CoA)In this method, a user session can start without replication. When the
network administrator triggers a CoA from the RADIUS server, the user session is replicated. The replication is
stopped when the user disconnects or by sending a CoA to change the replication role.
As the client information is shared between multiple OAW-IAPs in a cluster, the replication rules persist when clients
roam within the cluster.
Configuring OAW-IAPs for CALEAIntegration
To enable CALEA server integration, perform the following steps:
1. Create a CALEA profile.
2. If replication role must be assigned through RADIUS VSA, create an access rule and assign the access rule to a
WLAN SSID or wired profile.
3. Verify the configuration.
Creating a CALEA Profile
You can create a CALEAprofile by using the AOS-W Instant UI or CLI.
AOS-W Instant 6.3.1.1-4.0 | User Guide Lawful Intercept and CALEA Integration | 283
Vedere la pagina 282
1 2 ... 278 279 280 281 282 283 284 285 286 287 288 ... 334 335

Commenti su questo manuale

Nessun commento