Introducing STAR-GATE Enhancements for Packet Cable Networks



Similar documents
STAR-GATE TM. Annex: Intercepting Packet Data Compliance with CALEA and ETSI Delivery and Administration Standards.

In this Profile. USA Tel: Fax:

Device Provisioning in Cable Environments

Provisioning of VoIP Phones

WHITE PAPER. Gaining Total Visibility for Lawful Interception

VoIP Troubleshooting From the Headend. Ruth Cloonan October 25, 2007

Simple Law Enforcement Monitoring

Utimaco LIMS Access Points. Realtime Network Monitoring for Lawful Interception and Data Retention

Overview of Voice Over Internet Protocol

Voice Over Internet Protocol (VoIP) Issues and Challenges William McCrum

Jive Core: Platform, Infrastructure, and Installation

Cable Modems. Definition. Overview. Topics. 1. How Cable Modems Work

Firewall VPN Router. Quick Installation Guide M73-APO09-380

Multi-Homing Dual WAN Firewall Router

Routing Security Server failure detection and recovery Protocol support Redundancy

5.0 Network Architecture. 5.1 Internet vs. Intranet 5.2 NAT 5.3 Mobile Network

ETM System SIP Trunk Support Technical Discussion

Computer Network. Interconnected collection of autonomous computers that are able to exchange information

SIP Trunking with Microsoft Office Communication Server 2007 R2

1 Data information is sent onto the network cable using which of the following? A Communication protocol B Data packet

Load Balance Mechanism

Understand Wide Area Networks (WANs)

Recommended IP Telephony Architecture

Hosted Voice. Best Practice Recommendations for VoIP Deployments

Methods for Lawful Interception in IP Telephony Networks Based on H.323

VoIP: Architectural Differences of SIP and MGCP/NCS Protocols and What It Means in Real World VoIP Service

Using a Sierra Wireless AirLink Raven X or Raven-E with a Cisco Router Application Note

HughesNet Broadband VPN End-to-End Security Enabled by the HN7700S-R

Enabling NAT and Routing in DGW v2.0 June 6, 2012

T.V. SERVICE, INC., dba TVS CABLE MASS MARKET INTERNET SERVICE POLICIES AND CUSTOMER INFORMATION

Delivery of Voice and Text Messages over LTE

IIUC Implementing Cisco IOS Unified Communications (IIUC) Version: Demo. Page <<1/9>>

Three Key Design Considerations of IP Video Surveillance Systems

GPRS and 3G Services: Connectivity Options

Load Balancing for Microsoft Office Communication Server 2007 Release 2

DATA SECURITY 1/12. Copyright Nokia Corporation All rights reserved. Ver. 1.0

Computer Networks and the Internet

Network Security Topologies. Chapter 11

UPPER LAYER SWITCHING

4. H.323 Components. VOIP, Version 1.6e T.O.P. BusinessInteractive GmbH Page 1 of 19

HOSTED VOICE Bring Your Own Bandwidth & Remote Worker. Install and Best Practices Guide

Cisco Home Agent Service Manager 4.1

Vocia MS-1 Network Considerations for VoIP. Vocia MS-1 and Network Port Configuration. VoIP Network Switch. Control Network Switch

The Recommended Testing Process for PacketCableTM Voice Service at a Customer Premises

Edgewater Routers User Guide

TAXONOMY OF TELECOM TERMS

Chapter 3 Security and Firewall Protection

Transport and Network Layer

Broadband Cable Service Deployment at WorldCall Telecom - Pakistan. Hassan Zaheer Manager Operations Broadband Division

EXPLOITING SIMILARITIES BETWEEN SIP AND RAS: THE ROLE OF THE RAS PROVIDER IN INTERNET TELEPHONY. Nick Marly, Dominique Chantrain, Jurgen Hofkens

White paper. Reliable and Scalable TETRA networks

Network Configuration Settings

Basic Networking Concepts. 1. Introduction 2. Protocols 3. Protocol Layers 4. Network Interconnection/Internet

00:00:40 00:01:00 00:01:20 00:01:40 00:02:00

Enterprise Edge Communications Manager. Data Capabilities

PacketCable 1.0 Architecture Framework Technical Report

FortiVoice. Version 7.00 VoIP Configuration Guide

Application Notes. Introduction. Contents. Managing IP Centrex & Hosted PBX Services. Series. VoIP Performance Management. Overview.

NineStar Connect MASS MARKET INTERNET SERVICE POLICIES AND CUSTOMER INFORMATION. Policy Statement:

General Policy Statement:

White Paper Copyright 2011 Nomadix, Inc. All Rights Reserved. Thursday, January 05, 2012

H0/H2/H4 -ECOM100 DHCP & HTML Configuration. H0/H2/H4--ECOM100 DHCP Disabling DHCP and Assigning a Static IP Address Using HTML Configuration

ADSL or Asymmetric Digital Subscriber Line. Backbone. Bandwidth. Bit. Bits Per Second or bps

ESSENTIALS. Understanding Ethernet Switches and Routers. April 2011 VOLUME 3 ISSUE 1 A TECHNICAL SUPPLEMENT TO CONTROL NETWORK

DSAM VoIP Offerings App Note

ALCATEL CRC Antwerpen Fr. Wellesplein 1 B-2018 Antwerpen +32/3/ ; Suresh.Leroy@alcatel.be +32/3/ ; Guy.Reyniers@alcatel.

Multi-Homing Security Gateway

Question: 3 When using Application Intelligence, Server Time may be defined as.

Enabling Modern Telecommunications Services via Internet Protocol and Satellite Technology Presented to PTC'04, Honolulu, Hawaii, USA

SIP Trunking Configuration with

Chapter 5. Data Communication And Internet Technology

X.25 over IP. The Challenge. How it Works. Solution

Smart Tips. Enabling WAN Load Balancing. Key Features. Network Diagram. Overview. Featured Products. WAN Failover. Enabling WAN Load Balancing Page 1

Amplicon.com IT and Instrumentation for industry. Sales: +44 (0) Website:

BR-800. ProHD Broadcaster. Easy Set-Up Guide V 1.01

Datagram-based network layer: forwarding; routing. Additional function of VCbased network layer: call setup.

Using MIS 3e Chapter 6A Appendix

Deploying Media Probes in Evolving VoIP Networks

Product Guide A5000 R5.4 Multi-company Services - CONTENTS -

Application Note. Connecting your LAN to a WAN using DSL or Cable Modems. Introduction. Basic Interface Elements

Improving Quality of Service

UK Interconnect White Paper

Layer-2 Design: Link Balancers Simplified

IOS NAT Load Balancing for Two ISP Connections

Acceptable Use Policy (AUP): Policy which provides rules governing use of district technology.

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

How To. Instreamer to Exstreamer connection. Project Name: Document Type: Document Revision: Instreamer to Exstreamer connection. How To 1.

ICTTEN6172A Design and configure an IP- MPLS network with virtual private network tunnelling

Basic Network Configuration

IP Telephony Basics. Part of The Technology Overview Series for Small and Medium Businesses

VoIP Network Configuration Guide

Introduction to computer networks and Cloud Computing

PCTV Systems Requirements for using DistanTV mobile

RAS Associates, Inc. Systems Development Proposal. Scott Klarman. March 15, 2009

Foreword... 2 Introduction to VoIP... 3 SIP:... 3 H.323:... 4 SER:... 4 Cellular network... 4 GSM... 5 GPRS G... 6 Wimax... 7 Introduction...

BroadCloud PBX Customer Minimum Requirements

Chapter 7: Computer Networks, the Internet, and the World Wide Web. Invitation to Computer Science, C++ Version, Third Edition

IP Implementation in Private Branch Exchanges From 9:30 a.m until 4:30 p.m (7 hrs./day) 5 days / week

Edgewater Routers User Guide

Transcription:

STAR-GATE TM Annex: Intercepting PacketCable Compliance with CALEA and ETSI Delivery and Administration Standards. In this document USA Tel: +1-703-818-2130 Fax: +1-703-818-2131 E-mail: marketing.citi@cominfosys.com INTRODUCING STAR-GATE ENHANCEMENTS FOR PACKETCABLE NETWORKS 1 OVERVIEW 1 Comprehensive Solution 3 FUNCTIONAL DESCRIPTION 4 Communication Monitoring Components 4 Data Flow 5 TECHNICAL SOLUTIONS 7 Network Based Delivery Solution 7 Israel Tel: +972-3-766-4119 Fax: +972-3-766-4747 E-mail: marketing@icominfosys.com http://www.cominfosys.com This document contains proprietary information of Comverse Infosys, Inc. and is protected by copyright laws and international treaties. Unauthorized copy or reproduction of this document in whole or in part without the written consent of Comverse Infosys is strictly forbidden and constitutes a copyright infringement. Comverse Infosys reserves the right to alter this information at any time without notice. STAR-GATE for Packet Data 9/00 2000 by Comverse Infosys, Inc.

STAR-GATE for packet cable Introducing STAR-GATE Enhancements for Packet Cable Networks Overview Legalization of Internet surveillance is taking place worldwide, and operators of Internet Protocol (IP) networks will soon be required to provide communication interception services for law enforcement agencies. Networks falling under the new requirements include: GPRS networks UMTS packet data ISPs CDMA 1XRTT VoIP Packet Cable telephony The requirements of IP networks are similar to those of circuit switched operators: to intercept all communications of users who have been targeted by law enforcement agencies. The implementation, however, is quite different. The ability to intercept various forms of Internet media presents great legal and technological challenges. Comverse Infosys, a pioneer and leader in the development of Lawful Interception (LI) products, is proud to present the solution to the challenge: STAR-GATE for PacketCable 1

Comverse Infosys, Inc. The following diagram illustrates STAR-GATE s architecture: STAR-GATE provides a turnkey solution for telecom network operators. The solution is based on the following components: Surveillance Administration Subsystem (SAS) Mediation Device (MD) Provides administrative functions to both circuit switched and packet data networks. Designed for circuit switched, Packet data and Packet Cable environments, it receives the intercepted data from the various networks access points and delivers it to predefined Law Enforcement Agencies (LEAs) sites. 2

STAR-GATE for packet cable The Mediation Device performs all functions necessary to acquire and deliver intercepted communications to the appropriate law enforcement agency accurately, securely and in compliance with the law. Its basic tasks include: Collecting intercepted data from the network provider. Converting messages into the required LI-standard format. Delivering intercepted communications to the appropriate law enforcement agency. Comprehensive Solution Unifying the access and delivery of communication surveillance into a single product, STAR-GATE offers a comprehensive product that serves all functional needs, and provides the following advantages: Wide Range of Protocols: STAR-GATE provides full support for various protocols for communication content and intercept-related information. Regardless of the protocols used by the network provider and the law enforcement agency, STAR-GATE translates intercepted data into the LIstandard format and delivers it to the appropriate agency. Wide range of technologies: STAR-GATE is specifically designed to accommodate LI standards for mobile packet data networks such as GPRS for GSM & TDMA, 1XRTT for CDMA, EDGE. In addition, the product provides an excellent LI solution for fixed packet data networks such as Internet Service Provider backbones and Packet Cable. STAR- GATE supports various ISP LAN technologies like Ethernet Half and Full Duplex, Fast Ethernet Half and Full Duplex, and FDDI. Multiple nodes: Each STAR-GATE Mediation Device (MD) can be connected to several different types of network provider s nodes concurrently. Multi-node support reduces initial setup costs and simplifies deployment by offering capacity management. The enhanced capacity can be deployed efficiently in a regional framework that adheres to the published configuration guidelines. Multicasting: The MD can deliver intercepted call data and contents to different law enforcement agencies simultaneously, supporting a different delivery protocol per agency, if necessary. 3

Comverse Infosys, Inc. Functional Description This section provides an overview of STAR-GATE for Packet Cable operations and describes the following subjects: Communication monitoring components Data flow Main features Communication Monitoring Components The process of monitoring communications consists of three primary stages: access, delivery and collection/processing. STAR-GATE performs the delivery function using the following product: Delivery: Collecting the Intercepted communication contents and related information arriving from the network provided Access nodes and distribute them to the monitoring centers of the Law Enforcement Agencies. These functions performed by STAR-GATE using a Mediation Device. Administration: All administrative operations are performed by the STAR-GATE Surveillance Administration Subsystem (SAS). 4

STAR-GATE for packet cable The following logical block diagram illustrates the STAR-GATE configuration, consists of a SAS and Mediation Device integrated with the Network Access nodes and the Law enforcement agency equipment PacketCable Telecommunication Service Provider Intercept Access (for Call Data) CMS Intercept Access (for Call Content) MG PSTN Service Provider Administration Delivery Function Intercept Access (for Call Content) CMTS Subscriber CM/MTA Lawful Authorization Law Enforcement Agency 'HPDUFDWLRQÃSRLQW Law Enforcement Administration Collection Function Data Flow Access The Access Device performs the following functions: Acquiring: The Access function resides at the Service provider s relevant nodes and intercepts all targeted subscriber transactions. Filtering: The Access function filters the data communicated to or from targeted subscribers. Data is intercepted according to the defined interception criteria, which depend on the network type. For example, in a GPRS network, the interception criterion is IMSI. In an ISP network, it can be the IP address, TCP port or e-mail address, for both source and destination., For Packet Cable it is the Telephone number. Forwarding: The Access function forwards the target s intercepted packets to the MD for further processing and delivery to the LEA s monitoring centers. 5

Comverse Infosys, Inc. Delivery STAR-GATE s Mediation Device mediates between the network provider, the law enforcement agency and the Surveillance Administration Subsystem (SAS), and performs the following functions: 1 Network Interfacing: The Mediation Device receives intercepted information from the relevant network nods. The information is collected by the Mediation Device and can include both communication content and data. 2 Conversion: The Mediation Device converts the collected data format into the requisite LI-standard format. 3 Delivery: The Mediation Device delivers the data directly to the appropriate law enforcement agency. Data is sent via LAN to the site router and from there to the collection function located at the law enforcement agency site. There are two communication delivery options: such as GTP* FTP. The Mediation Device can buffer files using mass memory or RAM disk, or use stream buffers for very rapid delivery, depending on the recipient s needs. 4 Target Provisioning: The Mediation Device receives administrative data from the STAR-GATE s Surveillance Administration Subsystem and distribute it to the appropriate network nodes. Buffering option STAR-GATE offers a completely secure solution and ensures that no data is lost due to communication failures. To this end, the Mediation Device operates according to a store and forward principle, and a recovery mechanism identifies communication failures and recurringly attempts to reestablish the communication connection and to complete unsuccessful delivery missions. 6

STAR-GATE for packet cable Technical Solutions This section provides an overview of STAR-GATE s technical solutions for packet data networks, and describes the following options: Switch based delivery solution GPRS access and delivery solution ISP access and delivery solution Network Based Delivery Solution This section describes a typical switch based solution and presents the following items: System Architecture Functionality Capacity 7

Comverse Infosys, Inc. System Architecture (PEHGHGÃ07$ FOLHQW (PEHGHG 07$ÃFOLHQW MTA Cable Modem MTA Cable Modem +)&ÃDFFHVVÃ1HWZRUN '2&6,6 +)&ÃDFFHVVÃ1HWZRUN '2&6,6 CMTS CMTS Call Management Server (CMS) 0DQDJHGÃ,3Ã1HWZRUN Announcement Server Announcement Controller (ANC) Announcement Player (ANP) CALEA - (GSA) &&& CALEA - (MD) Mediation Device(s) &'& OSS Back Office Servers and Applications Media Gateway Controller (MGC) Media Gateway (MG) Signaling Gateway (SG) 3671 - Ticket Grantion Server (TGS) - DHCP Servers - DNS Servers - TFTP or HTTP Servers - SYSLOG Server - Record Kepping Server (RKS) - Provisioning Server 8

STAR-GATE for packet cable The configuration for PacketCable is similar to the generic STAR-GATE solution for circuit switched and Packet Data networks. Communication is accessed via the network infrastructure equipment, therefore, this solution requires that a dedicated access feature be installed in the service node. The service node provides both Communication Contents and Intercept Related Information to STAR-GATE s Mediation Device. STAR-GATE s Mediation Device interfaces between the packet Cable network nodes and the LEA monitoring centers. It collects the Interception Related Information and Communication Content from the associated service nodes, converts them into the required format and delivers the outputs to the monitoring centers defined for the particular target. Functionality The PacketCable STAR-GATE solution supports the following access and delivery abilities: Interception Criteria: Telephone Number Intercepted Traffic: All internal network traffic Provided by the access function in the service nodes. CRI : Depending on Node capability the Mediation Devices provides all specified LI standard events. Target Provisioning to Service Nodes: Forwarding of target provisioning requests from the Surveillance Administration Subsystem (SAS) to the Service Nodes. Target Synchronization: Synchronization of the Call Management Server (CMS) target list and the targets list in SAS database. Capacity Number of targets: 4000 Number of MCs: 50 Number of simultaneously attached targets: 200 Maximum traffic throughput : 5 Mbps (In and out) Number of simultaneous active sessions: 100 (assuming average session throughput of 50kbps) 9