Flow-Based Redirect For Adult Content Filtering - Cisco Intelligent Wireless Access Gateway Configuration Manual

Intelligent wireless access gateway
Table of Contents

Advertisement

Flow-Based Redirect for Adult Content Filtering

Use Cisco Feature Navigator to find information about platform support and Cisco software image support.
To access Cisco Feature Navigator, go to www.cisco.com/go/cfn. An account on Cisco.com is not required.
Flow-Based Redirect for Adult Content Filtering
In a typical WiFi hotspot deployment, all subscriber traffic goes through Cisco ISG (Intelligent Service
Gateway) after successful authentication. For unauthenticated traffic, L4R feature offers a logic to redirect
traffic based on a pre-defined access-list (ACL). This L4R feature acts as a way to redirect some traffic to a
web portal or opengarden environment using a translation logic. In order to implement a similar redirection
logic after successful authentication without the need for translating the traffic, the flow based redirect has
been implemented in ISG to allow traffic to be redirected/rerouted. A typical use case is Adult Content Filtering
(ACF) where web traffic needs to be redirected to a Web Filtering Appliance.
You can apply the ACF policy to subscriber traffic in the following ways:
• If the Wi-Fi hotspot provider allows individual subscribers to opt out of the ACF, the ACF policy is not
• If the Wi-Fi hotspot provider enforces ACF on all the subscribers accessing the internet from their site,
The following figure shows a typical scenario where ACF is applied on Wi-Fi hotspots.
Figure 8: Adult Content Filtering on Wi-Fi Hotspots
Intelligent Wireless Access Gateway Configuration Guide
80
applied on their personal profile. For those subscribers who do not opt out of the ACF, the ACF policy
is applied on their personal profile through the RADIUS vendor-specific attribute (VSA) when they log
in to their account. For more information about RADIUS VSA attributes, see
the Flow-Based Redirect Feature Through Vendor-Specific Attributes
the ACF policy is configured in the local policy of the Cisco ISG.
Flow-Based Redirect
Activating and Deactivating
.
OL-30226-03

Advertisement

Table of Contents
loading

This manual is also suitable for:

Iwag

Table of Contents