After authentication of the wireless device user, the default filter applies only after the following conditions are met:
The final rule in the default filter should be a catch-all rule for any traffic that did not match a filter. A final 'Allow All' rule in a default filter ensures that a packet is not dropped entirely if no match is found. VNS Role is also applicable for Captive Portal and MAC-based authorization.