Filter Policies
Router Configuration Guide 513
— embed-filter flowspec [router {router-instance | service-name vprn-service-name}] 
[offset offset] [{active | inactive}]
— embed-filter open-flow ofs-name [{system | service {service-id | service-name} | sap 
sap-id}] [offset offset] [{active | inactive}]
—no embed-filter filter-id
—no embed-filter flowspec
—no embed-filter open-flow ofs-name [{system | service {service-id | service-name} | 
sap sap-id}]
— entry entry-id [create]
—no entry entry-id
— [no] 
action [secondary]
— drop
— drop hop-limit hop-limit {{lt | eq | gt} hop-limit-value | range hop-
limit-value hop-limit-value}
— drop payload-length {{lt | eq | gt} payload-length-value | range 
payload-length-value payload-length-value}
— forward
— forward esi esi sf-ip ip-address vas-interface interface-name router 
{router-instance | service-name service-name}
— forward esi esi service-id vpls-service-id
— forward next-hop [indirect] ipv6-address
— forward next-hop [indirect] ipv6-address router {router-instance | 
service-name service-name}
— forward redirect-policy policy-name
— forward router
 {router-instance service-name service-name}
— forward sap sap-id
— forward sdp sdp-id:vc-id
— http-redirect rdr-url-string [allow-radius-override]
— nat nat-type nat-type [nat-policy nat-policy-name] 
— rate-limit value
— tcp-mss-adjust
— description description-string
—no description
— egress-pbr {default-load-balancing | l4-load-balancing}
—no egress-pbr
— [no] filter-sample
— [no] interface-disable-sample
— log log-id
—no log
— match [next-header next-header]
—no match
— ah-ext-hdr {true | false}
—no ah-ext-hdr
— dscp dscp-name 
—no dscp
— dst-ip {
ipv6-address/prefix-length | ipv6-address ipv6-address-mask | 
ipv6-prefix-list prefix-list-name}
—no dst-ip
— dst-port {lt | gt | eq} dst-port-number 
— dst-port port-list port-list-name 
— dst-port range dst-port-number dst-port-number
—no dst-port
— esp-ext-hdr {true | false}
—no esp-ext-hdr