OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 What s New? Document Version: 1.0 Part Number: 060294-00 Published: 12.20.2009
Legal Notice Alcatel-Lucent Proprietary 2009 Alcatel-Lucent. All rights reserved. This document may not be reproduced in whole or in part without the express written permission of Alcatel-Lucent. Alcatel-Lucent and the Alcatel-Lucent logo are registered trademarks of Alcatel-Lucent. All other trademarks are the property of their respective owners. Document Conventions Appearance emphasis Description Text that is emphasized Denotes note Denotes important Denotes Warning 2
Table of Contents Legal Notice... 2 Document Conventions... 2 About This Document... 1 Audience... 1 Related Documents... 1 New Features... 1 High Availability (Geographical Redundancy)... 2 USB Support... 2 Direct Network Access... 2 Geolocater Applications... 2 Pre-NLG Access... 3 Scope Expansion of Existing Features... 3 Multilingual Support... 4 Policy-based Laptop Binding... 4 Local Reset to Factory Default... 4 Assisted File Transfer (AFT) Features... 4 Auto/Web-based Smart Card Certificate Enrolment... 5 System Requirement... 5 3
What s New? About This Document This document presents the new features in Release 2.2 of the Alcatel-Lucent OmniAccess 3500 Nonstop Laptop Guardian (NLG) solution. All references made in this document to the OmniAccess 3500 NLG platform and its components are intended to apply exclusively to Release 2.2, unless otherwise stated. Audience This document is intended for established and prospective OmniAccess 3500 NLG customers who require easy reference to the new features included in Release 2.2 of the product. Related Documents For a release-independent view of the OmniAccess 3500 NLG platform and detailed information about the features listed in this document, refer to OmniAccess 3500 Nonstop Laptop Guardian Features Overview document. For detailed information about the installation and operation of the OmniAccess 3500 NLG platform and its individual components, refer to the following documents; OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 Administration Guide- for configuration and run-time administration of the OmniAccess 3500 NLG platform. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 Gateway Installation Guide- for installation of the OmniAccess 3500 NLG enterprise gateway. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 EVDO (CardBus) Quick Start Guide for installation of the OmniAccess 3500 NLG EVDO CardBus device and client software. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 HSPA (CardBus) Quick Start Guide- for installation of OmniAccess 3500 NLG HSPA CardBus device and client software. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 HSPA (USB) Quick Start Guide- for installation of OmniAccess 3500 NLG MiFi TM USB device and client software. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 EVDO (CardBus) End-User Reference Guide for daily operation of OmniAccess 3500 NLG EVDO CardBus device and client software. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 HSPA (CardBus) End-User Reference Guide for daily operation of OmniAccess 3500 NLG HSPA CardBus device and client software. OmniAccess 3500 Nonstop Laptop Guardian Release 2.2 HSPA (USB) End-User Reference Guide for daily operation of OmniAccess 3500 NLG MiFi TM USB device and client software. New Features This section describes the new functional features introduced in Release 2.2 of OmniAccess 3500 NLG. The objectives of Release 2.2 are; 1. Enhanced End-user Experience USB NLG devices (MiFi TM ) Direct Network Access to Local Network Resources GPS Applications for end-users Pre-NLG Access
OmniAccess 3500 NLG Release 2.2 Reset to factory default for NLG devices 2. Large scale deployments Gateway High Availability Auto and Web Based Smart Card Certificate Enrollment Gateway Diagnostics 3. Global reach support for double byte languages 4. Stability, reliability and other bug fixes High Availability (Geographical Redundancy) In NLG deployments, the end-users require an uninterrupted access to their enterprise resources and must support continuity of service in the event of network component failovers. The high availability feature is ideal for such deployments. The feature enables geographically redundant NLG gateways to be deployed in an active/standby configuration. In the event of a failover, the end-user devices automatically get connected to the standby gateway, thus ensuring service continuity during planned or unplanned downtime of the active gateway. Although the switchover is automatic for end-users, the IT administrator has to manually switch the standby gateway to be the new active gateway. When the failed gateway recovers, it assumes the role of being a backup until the next switch over. USB Support New generation laptops are introduced in the market with USB interfaces, so you may face restrictions in using the current supported NLG PCMCIA form factor card. In order to meet the evolving market need, NLG can now be ported / connected on a USB device from Novatel called MiFi TM. In addition, the feature marks the beginning of NLG program s move towards a software only approach to deliver NLG on third party open HW platforms. The MiFi TM device comes with a configuration of processors, with 128 MB RAM, 256 MB internal flash, a slot for the external micro SD card, built-in 3G and Wi-Fi modems, and USB interface to connect the device to a host (laptop). The same set of features as with the PCMCIA card is supported with the USB solution. Direct Network Access Direct Network Access (DNA) allows the NLG end-users to access network resources (such as printers, cameras etc.) on a local network interface. When the DNA is enabled, the traffic to the configured local resource is sent in clear text (unencrypted), while the rest of the traffic continues to go via the secure connection to the enterprise. The two streams of traffic use the same physical interface. The IT administrator controls, via a DNA policy setting, whether you are allowed DNA access, and which local networks the user can access. The DNA policy is configured for a user group and the policy applies to all users in the group. Geolocator Applications An NLG-enabled laptop can host end-user applications that utilize location based information retrieved from the NLG device. The NLG platform provides a set of APIs that can be used by any third party to develop geographic applications of interest to an end-user. The NLG APIs are also compatible with Google Gear. 2
What s New? GeoLocator is one such application developed by Alcatel-Lucent which you can download on a NLGenabled laptop. GeoLocator uses the "always connected" capability of the NLG solution along with the built in GPS capabilities of the NLG card to provide a minimal GPS functionality to the laptop user. The application can display the current location of the end user on a Google map. It also allows the end user to search for local businesses (restaurants, car dealers etc.) around the current location. The end user can also find the door-to-door directions using the current location as either the origin or the destination and optionally trace the current position on the route. The GeoLocator is also enhanced with a feature to get the location directly by using the Google Maps in case for any reasons if the NLG device cannot get the location details. To use this feature the end user needs to enable the Google option under the Configure menu. Pre-NLG Access Figure 1: NLG Geolocater Application Pre-NLG access enables the user to have mobile 3G access before being activated as a NLG user. This feature was necessitated by a requirement to allow end-users access to the provisioning portal or to download certificates (required for NLG configuration). In other words, until NLG software is configured and a secure connection is established for the first time, the NLG device acts like a normal 3G data device. Support for Email to SMS NLG now supports email to sms feature for sending the express commands. For the carriers that does not supporting email to sms services the gateway can be configured to make use of 3 rd party email to SMS services. 3
OmniAccess 3500 NLG Release 2.2 Scope Expansion of Existing Features Multilingual Support NLG is deployed globally and hence is required to support multitude of languages for enhancing your experience and usability. With the implementation of unicode (double byte) character set in Release 2.2, the set of languages that are supported has been extended significantly. Release 2.2 has added support for Japanese, Korean, and Chinese. The previous release, based on the single byte character set, supported French, German, Spanish (Latin American and European), Hungarian and Portuguese. The multilingual support is limited to the NLG GUI on the laptop. The Management System GUI is in English. At the time of installation of the NLG software, the language gets automatically chosen based on the language of base Windows XP. If the language of base Windows XP is not one of the NLG supported languages, then the English version (default version) of NLG gets installed. In post installation, you can select another language via a laptop GUI menu option. Policy-based Laptop Binding Enterprises often have varying security policies, and the NLG solution needs to be flexible in addressing all policies. For example, in typical small/medium business environments, laptop names are not necessarily required to be unique in the enterprise. Policy-based laptop binding feature is introduced to accommodate such security policies. Specifically, the feature will allow an administrator the option to remove the laptop name binding if required by an enterprise. The laptop name will still be required for the provisioning of a NLG laptop, but the name need not be unique across users in the enterprise. Local Reset to Factory Default The reset to factory default feature enables a user to erase all user/state information from the NLG device Procedure for resetting the CardBus device 1. Open Command Prompt (Start > Run and type cmd) on user laptop. 2. Go to the ECM directory (<dive>:\<nlg install dir>\alcatel-lucent\ecm>) 3. Run the command HostUpgrade.exe restore_defaults 4. Select NLG Device > Upgrade to complete the procedure After the card upgrade is successful, verify by selecting NLG Device > Information. The information box will show blank against User certificate, CA certificate and Gateway Name Procedure for resetting the USB device 1. Remove the device from the laptop, and push the reset button with a pin for 20 seconds 2. Reconnect the device to the laptop, and select NLG Device > Initialize (MiFi TM only ) Assisted File Transfer (AFT) Features AFT provides a capability to sync a folder (bi-directional) on the laptop to a shared folder in the enterprise network. The following are additionally supported in Release 2.2; Increased file size 4
What s New? The HSPA (Cardbus) device has 150MB, while the USB version (Mi-Fi) has 100 MB of space for AFT. User data separation AFT transferred files from different users are transferred to different folders on server side. In order to maintain uniqueness, the folder name uses the laptop name and IMSI. AFT recursive directory structure copying is also supported Auto/Web-based Smart Card Certificate Enrolment Enterprises that are using the public-key infrastructure (PKI) prefer solutions that can integrate and/or interoperate with their PKI deployment. The auto/web based smart card certificate enrolment feature provides a secure, efficient and a standards-based approach for certificate management. The feature enables web/auto enrolment of Smart Card certificate (required for PIN-based authentication) such that the certificate is securely stored on the card, and is also published in Active Directory (AD) without any additional administrator intervention. In the previous releases of NLG, smart card certificates were generated by the gateway and had to be manually published in the AD. System Requirement The minimum Microsoft hardware recommendations for systems that run the NLG as follows; Processor Memory Hard drive Operating System : 1 GHz 32-bit or 64-bit processor : 1 GB of system memory : 16 GB of available disk space : Windows XP 32-bit with SP 2 or higher preferred 5