Filter Policies
Router Configuration Guide 539
• drop packet-length
A packet matching the entry will be dropped only if “Total Length” field in the packet’s IPv4
header meets the configured condition.
• drop ttl
A packet matching the entry will be dropped only if “Time-to-live” field in the packet’s IPv4
header meets the configured condition.
• forward
A packet matching the entry will be forwarded using regular routing.
• forward esi
forward esi service-id—A packet matching the entry will be forwarded to ESI identified
first appliance in Nuage service chain using EVPN-resolved VXLAN tunnel in the specified
VPLS service.
• forward esi
forward esi sf-ip vas-interface router — A packet matching the entry will be forwarded to
ESI/SF-IP identified first appliance in Nuage service chain using EVPN-resolved VXLAN
tunnel over the configured VAS interface in the specified VPRN service.
• forward lsp
A packet matching the entry will be forwarded using the specified lsp.
• forward next-hop
A packet matching the entry will be forwarded in the routing context of the incoming interface
using direct or indirect IP address in the routing lookup.
• forward next-hop router
A packet matching the entry will be forwarded in the configured routing context using direct
or indirect IP address in the routing lookup.
• forward next-hop interface
A packet matching the entry will be forwarded using the configured local interface.
• forward redirect-policy
A packet matching the entry will be forwarded using forward next-hop or forward next-
hop router and the IP address of destination selected by the configured redirect policy. If no
destination is selected, packets are subject to action forward.
• forward router
A packet matching the entry will be routed in the configured routing instance and not in the
incoming interface routing instance.
• forward sap
A packet matching the entry will be forwarded using the configured SAP.
• forward sdp
A packet matching the entry will be forwarded using the configured SDP.
• gtp-local-breakout
A packet matching the entry will be forwarded to NAT instead of being GTP tunneled to
mobile operator’s PGW or GGSN.
• http-redirect