Figure 1 shows the policy association network architecture, which consists of three roles: terminal, authentication access device, and authentication control device.
Authentication control devices and authentication access devices use control and provisioning of wireless access point (CAPWAP) tunnels to establish connections. In addition, authentication control devices and authentication access devices use CAPWAP tunnels to complete user association, transmit messages, deliver user authorization policies, and synchronize user information.
Figure 2 shows the policy association process.
The preceding process occurs after the CAPWAP tunnel is established between the authentication control device and authentication access device. The establishment step is not mentioned in the previous process.