Filter Configuration Command Reference
540 Router Configuration Guide
An HTTP GET packet matching an entry is forwarded to CPM for HTTP captive portal
processing.
• nat
A packet matching the entry will be forwarded to NAT; when configured with allow-radius-
override, the system overwrites the configured rdr-url-string with the URL returned from
Radius.
• rate-limit
Enables ACL rate limiting for packets matching the entry of this ACL filter policy. Rate
limiters are configured by default with MBS = CBS = 10-ms-of-the-rate and high-prio-only
= 0.
• reassemble
A packets matching the entry will be forwarded to the reassembly function.
• tcp-mss-adjust
Configures the Maximum Segment Size (MSS) adjustment for TCP packets. A packet
matching the entry will be forwarded to the ISA BB.
Default no specific action is configured by default.
Parameters esi — Specifies a 10-byte Ethernet Segment Identifier.
ip-address — Specifies the IPv4 address of a direct or indirect next hop to which to forward
matching packets.
ip-int-name — Specifies the name of an egress IP interface where matching packets will be
forwarded from. This parameter is only valid for unnumbered point-to-point interfaces. If the
string contains special characters (such as #, $, spaces), the entire string must be enclosed
within double quotes.
interface-name — Specifies the (maximum 32-character) name of an egress R-VPLS IP interface
used to forward the packets using ESI redirect for VPRN/IES service.
lsp-name — Specifies an existing RSVP-TE or MPLS-TP LSP that supports LSP redirect.
nat-policy-name — Specifies the NAT policy to be used in NAT redirect.
policy-name — Specifies an IPv4 redirect policy configured in the config>filter>redirect-policy
context.
sap-id — Specifies an existing VPLS Ethernet SAP.
sdp-id:vc-id — Specifies an existing VPLS SDP.
packet-length-value — Specifies integer value to be compared against “Total Length” field in the
packet’s IPv4 header.
rdr-url-string — Specifies the HTTP web address that will be sent to the user’s browser.
router-instance — Specifies “Base” or an existing VPRN service ID.
service-name — Specifies an existing VPRN service name.
ttl-value — specifies an integer value to be compared against “Time-to-live” field in the packet’s
IPv4 header.