[c-nsp] ISG and Policy Routing

Rinse Kloek rinse.kloek at isp.solcon.nl
Tue Oct 28 06:55:08 EDT 2008


I am trying to do some policy routing in combination with the CISCO ISG 
features. Therefore I created radius profiles for the user sessions and 
2 different traffic-classes to split the main traffic from the traffic 
to be policy routed:

MAINPROFILE
     Service-Info="IMAINPROFILE",
     cisco-avpair="ip:traffic-class=in access-group name INTERNET_ACL_IN",
     cisco-avpair="ip:traffic-class=in default drop",
     cisco-avpair="ip:traffic-class=out access-group name INTERNET_ACL_OUT",
     cisco-avpair="ip:traffic-class=out default drop",
     cisco-avpair="subscriber:accounting-list=ACCOUNTING",
     cisco-avpair="sub-qos-policy-out=2MBIT_VOICE"

FILTERING
     cisco-avpair="ip:traffic-class=in access-group name FILTER_ACL_IN"
     cisco-avpair="ip:traffic-class=in default drop",
     cisco-avpair="ip:traffic-class=out access-group name FILTER_ACL_OUT",
     cisco-avpair="ip:traffic-class=out default drop",     

nas-port:0.0.0.0:0/0/2/2000    User-Password=cisco
        Account-Info="AIMAINPROFILE",
        Account-Info="AFILTERING"

Is it possible to add a route-map to the FILTERING traffic-class ? The 
standard PPP attribute cisco-avpair = "lcp:interface-config=ip policy 
route-map ROUTEMAP" doesn't work because it's not a interface. Anybody 
some tips or experience with the ISG features ?

kind regards Rinse



More information about the cisco-nsp mailing list