
284 | Lawful Intercept and CALEA Integration AOS-W Instant 6.3.1.1-4.0 | User Guide
In the AOS-W Instant UI
To configure a CALEA profile:
1. Click More>Services at the top right corner of the AOS-W Instant main window.
2. Click CALEA. The CALEA tab details are displayed.
3. Specify the following parameters:
l IP address— Specify the IP address of the CALEA server.
l Encapsulation type— Specify the encapsulation type. The current release of AOS-W Instant supports GRE
only.
l GRE type— Specify the GRE type.
l MTU— Specify a size for the maximum transmission unit (MTU) within the range of 68—1500. After GRE
encapsulation, if packet length exceeds the configured MTU, IP fragmentation occurs. The default MTU size
is 1500.
4. Click OK.
In the CLI
(Instant Access Point)(config)# calea
(Instant Access Point)(calea)# ip <IP-address>
(Instant Access Point)(calea)# ip mtu <size>
(Instant Access Point)(calea)# encapsulation-type <gre>
(Instant Access Point)(calea)# gre-type <type>
(Instant Access Point)(calea)# end
(Instant Access Point)# commit apply
Creating an Access Rule for CALEA
You can create an access rule for CALEA by using the AOS-W Instant UI or CLI.
In the AOS-W Instant UI
To create an access rule:
1. To add the CALEA access rule to an existing profile, select an existing wireless (Networks tab>edit) or wired
(More>Wired>Edit) profile. To add the access rule to a new profile, click New under Network tab and create a
WLAN profile, or click More>Wired>New and create a wired port profile.
2. In the Access tab, select the role for which you want create the access rule.
3. Under Access Rules, click New. The New Rule window is displayed.
4. Select CALEA.
5. Click OK.
6. Create a role assignment rule if required.
7. Click Finish.
In the CLI
To create a CALEA access rule:
(Instant Access Point)(config)# wlan access-rule <name>
(Instant Access Point)(Access Rule <name>)# calea
(Instant Access Point)(Access Rule <name>)# end
(Instant Access Point)# commit apply
To assign the CALEA rule to a user role:
(Instant Access Point)(config)# wlan ssid-profile <name>
Komentarze do niniejszej Instrukcji