Filter Policies
Router Configuration Guide 513
— embed-filter flowspec [router {router-instance | service-name vprn-service-name}]
[offset offset] [{active | inactive}]
— embed-filter open-flow ofs-name [{system | service {service-id | service-name} | sap
sap-id}] [offset offset] [{active | inactive}]
—no embed-filter filter-id
—no embed-filter flowspec
—no embed-filter open-flow ofs-name [{system | service {service-id | service-name} |
sap sap-id}]
— entry entry-id [create]
—no entry entry-id
— [no]
action [secondary]
— drop
— drop hop-limit hop-limit {{lt | eq | gt} hop-limit-value | range hop-
limit-value hop-limit-value}
— drop payload-length {{lt | eq | gt} payload-length-value | range
payload-length-value payload-length-value}
— forward
— forward esi esi sf-ip ip-address vas-interface interface-name router
{router-instance | service-name service-name}
— forward esi esi service-id vpls-service-id
— forward next-hop [indirect] ipv6-address
— forward next-hop [indirect] ipv6-address router {router-instance |
service-name service-name}
— forward redirect-policy policy-name
— forward router
{router-instance service-name service-name}
— forward sap sap-id
— forward sdp sdp-id:vc-id
— http-redirect rdr-url-string [allow-radius-override]
— nat nat-type nat-type [nat-policy nat-policy-name]
— rate-limit value
— tcp-mss-adjust
— description description-string
—no description
— egress-pbr {default-load-balancing | l4-load-balancing}
—no egress-pbr
— [no] filter-sample
— [no] interface-disable-sample
— log log-id
—no log
— match [next-header next-header]
—no match
— ah-ext-hdr {true | false}
—no ah-ext-hdr
— dscp dscp-name
—no dscp
— dst-ip {
ipv6-address/prefix-length | ipv6-address ipv6-address-mask |
ipv6-prefix-list prefix-list-name}
—no dst-ip
— dst-port {lt | gt | eq} dst-port-number
— dst-port port-list port-list-name
— dst-port range dst-port-number dst-port-number
—no dst-port
— esp-ext-hdr {true | false}
—no esp-ext-hdr