[c-nsp] Where to apply Policy-Based Routing?

Oliver Boehmer (oboehmer) oboehmer at cisco.com
Wed May 23 04:53:29 EDT 2007


Mark Tohill <> wrote on Wednesday, May 23, 2007 9:58 AM:

> Hi,
> 
> We have a scenario where we have to divert www traffic from sessions
> over L2TP VPDN tunnels terminating on several 7200's to a next-hop
> other than the default route.
> 
> We were hoping to achieve this via Policy-Based Routing and RADIUS
> attributes.
> 
> Can PBR only be applied inbound on interfaces. I know this makes
> sense, since the routing descision has not been made yet :)
> 
> In our situation, our VPDN traffic and user traffic bound for the
> internet all come in/out over the same gigabit interface. i.e we have
> nowhere to apply the PBR policy.

sure you do ;-) on the virtaul-access interfaces where the users are
terminated. You can apply the "ip policy route-map" on the
virtual-template to be effective for all users, or via
'lcp:interface-config="ip policy route-map foo"' on a per-user basis..

	oli


More information about the cisco-nsp mailing list