You can configure subscriber secure policy mirroring to mirror the traffic of a particular subscriber.
![]() |
Note: Subscriber secure policy RADIUS-initiated mirroring runs on the flow-tap service infrastructure. To configure the subscriber secure policy service, you must have the same privileges that are required to configure the flow-tap service. |
To configure the subscriber secure policy service:
See the JUNOS Services Interfaces Configuration Guide for information about configuring the flow-tap service.
See Configuring Flow-Tap Service Support for Subscriber Secure Policy Mirroring.
See Configuring RADIUS Server Support for Subscriber Secure Policy Mirroring.
See Using RADIUS Dynamic Requests for Subscriber Access Management.
Ensure that the following support is also configured:
![]() |
Note: The subscriber secure policy feature requires some system resources while mirroring, encrypting, and sending traffic to the mediation device. We recommend that you consider this requirement when you configure subscriber secure policy. For example, you might elect to use a 10-Gigabit Ethernet interface for the tunnel and mediation device if you expect the amount of traffic you plan to mirror to approach 1 Gps of actual user data. |