Blocking User Flows RADIUS has Filter-Id. Filter’s need to be pre-configured at the NAS. Not roaming friendly. New attribute called NAS-Filter-Rule specify what IP flows should be blocked. same syntax as IP-Filter-Rule in Diameter. Except we have added an action called “flush” so that we can use it with 3576 CoA. To block all tcp traffic from a terminal: deny in tcp from assigned to any |