EasyManua.ls Logo

Juniper ACX2000

Juniper ACX2000
3270 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
match-conditions;
protocol (tcp | udp) {
match conditions;
}
}
}
then {
actions;
}
}
}
}
}
You can include the firewall configuration at one of the following hierarchy levels:
[edit]
[edit logical-systems logical-system-name]
NOTE: For stateless firewall filtering, you must allow the output tunnel traffic
through the firewall filter applied to input traffic on the interface that is the
next-hop interface toward the tunnel destination. The firewall filter affects
only the packets exiting the router (or switch) by way of the tunnel.
Firewall Filter Protocol Families
A firewall filter configuration is specific to a particular protocol family. Under the firewall
statement, include one of the following statements to specify the protocol family for
which you want to filter traffic:
family anyTo filter protocol-independent traffic.
family inetTo filter Internet Protocol version 4 (IPv4) traffic.
family inet6To filter Internet Protocol version 6 (IPv6) traffic.
family mplsTo filter MPLS traffic.
family vplsTo filter virtual private LAN service (VPLS) traffic.
family cccTo filter Layer 2 circuit cross-connection (CCC) traffic.
family bridgeTo filter Layer 2 bridging traffic for MX Series 3D Universal Edge Routers
only.
family ethernet-switchingTo filter Layer 2 (Ethernet) traffic.
The family family-name statement is required only to specify a protocol family other than
IPv4. To configure an IPv4 firewall filter, you can configure the filter at the [edit firewall]
hierarchy level without including the family inet statement, because the [edit firewall]
and [edit firewall family inet] hierarchy levels are equivalent.
1045Copyright © 2017, Juniper Networks, Inc.
Chapter 32: Configuring Firewall Filters

Table of Contents

Other manuals for Juniper ACX2000

Related product manuals