I have been looking at the above and find I still have to put every single userid into Netflow Analyzer. Will it be possible one day to just define groups in Netflow rather than users such that when a user logs on, the group name is passed back from Radius as to what that user is allowed to access (or not)? I have a hundred IP groups and permitting each user to each IP group is not practical. The current interface is fine if you have a couple of users but not very useful if you have dozens.