Lawful Interception & Access
Interception that stays inside the authority that permitted it, from the warrant that opens it to the record that has to survive cross-examination.
The hard part was never the collection.
Interception is a solved engineering problem. What decides whether an operation holds up is everything around it: whether the scope an authority granted was actually the scope applied, whether the record shows who did what and why, and whether any of it can be reconstructed two years later in front of someone whose job is to find the gap.
S32 Technologies builds interception so the authority is a property of the system, not a procedure people are asked to remember. Scope, duration and targets are enforced in the collection path. Expiry stops collection on its own. Every action is attributable, and the reason for access is recorded, not optional.
Every module writes to the same record
Authorize
Warrant scope, duration and targets become machine-enforced limits before any collection starts. Expiry stops collection without an operator step.
Mediate
Built to the ETSI TS 102 232 family and 3GPP handover, and designed for delivery of the call-identifying information CALEA defines.
Deliver
Secure delivery to the monitoring facility, with keepalive, failure handling and retransmission that survive a lossy link.
Audit
Append-only, per-user attribution on every action, with a recorded reason for access. Written for a defense team as much as an inspector.
Retain
Retention bound to the authority that permitted collection, with enforced expiry and documented deletion evidence.
Report
Statutory and oversight reporting drawn from the same record the operators worked in, not reassembled afterwards.
The warrant is the boundary
Scope, duration and target set at authorization are enforced by the system, not by procedure. When a warrant expires, collection stops. There is no operator step to forget, and no quiet window where collection continues past the authority that permitted it.
- Expiry enforced inside the collection path
- Per-user attribution on every action
- Reason for access recorded, not optional
- Scope changes require a new authorization, not an edit
Deployed inside your boundary
On-premises, sovereign cloud, or fully disconnected. Support access is approved by you, time-bounded, least-privilege and recorded, and routine support never requires intercept material to leave the boundary you chose. Air-gapped deployments are not a degraded tier; they carry the same capability.
- Customer-held keys and customer-set retention
- Support access revocable by you, immediately
- Documented export formats and transition rights
- Offline update by signed package and controlled media
What it is built to
- ETSI TS 102 232 family
- Built to
- ETSI TS 101 671
- Built to
- 3GPP handover interfaces
- Built to
- CALEA / ATIS J-STD-025
- Designed for
- HI2 / HI3 delivery
- Supported, per validated configuration
Conformance is established per deployment, against the network elements, vendors and software versions actually in your estate. We name the combinations we have validated instead of claiming blanket coverage, and independent verification is available as a delivery option.
Choose the edition that matches your mandate
Law Enforcement
Warrant-driven casework
Investigator workflows, minimization, and an evidence record built for disclosure.
Communications Providers
Mediation at carrier scale
Meet your obligations without rebuilding the network you already operate.
National Intelligence
Authority-bound at state scale
Compartmented handling and oversight reporting for national-security mandates.
Sold only where the law allows
Lawful interception is sold only to vetted government agencies, licensed communications service providers, and qualified critical-infrastructure operators, and only where lawful. Every prospective engagement goes through eligibility, sanctions, end-use and export-control review before anything is demonstrated or delivered.