[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Issue 37: Merging of Filter Attributes



Issue 37: Merging of Filter Attributes
Submitter name: Bernard Aboba
Submitter email address: aboba@internaut.com
Date first submitted: December 13, 2004
Reference:
Document: Congdon-02
Comment type: T
Priority: S
Section: 2.7
Rationale/Explanation of issue:
Section 2.7 does not state what happens if both Filter-ID and
NAS-Filter-Rule attributes are included in an Access-Accept.
How are the filters merged?

Suggest the addition of the following text:

"If both Filter-ID and NAS-Filter-Rule attributes are included
within an Access-Request or Access-Accept packet, the filter
specified by the NAS-Filter-Rule attribute is considered to
be appended to the end of the filter list specified by the
Filter-ID attribute.

As a result, if the Filter-ID attribute specifies that a
packet is to be discarded, then the filter specified by NAS-Filter-Rule
can have no effect on the processing of that packet, since
it will have already been discarded prior to examination by
the filter specified in NAS-Filter-Rule."


--
to unsubscribe send a message to radiusext-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/radiusext/>