Implicitly denying any IP traffic
For any packet being filtered by a RADIUS-assigned
ACL, there will always be a match. That is, any packet that does not
have a match with an explicit permit or deny ACE in the list will
match with the implicit deny any any
ACE automatically
included at the end of the ACL. That is, a RADIUS-assigned ACL includes
an implicit deny in ip from any to any
ACE at the
end of the ACL to deny any IPv4 and IPv6 traffic not previously permitted
or denied.