Table 71: Standard Firewall Filter Match Conditions by Protocol Family for ACX Series Routers
Hierarchy Level at Which Match Conditions Are SpecifiedTraffic Type
[edit firewall family any filter filter-name term term-name]
No match conditions are supported for this traffic type on ACX
Series routers.
Protocol-independent
[edit firewall family inet filter filter-name term term-name
For the complete list of match conditions, see “Standard Firewall
Filter Match Conditions for IPv4 Traffic on ACX Series Routers”
on page 1054.
IPv4
[edit firewall family mpls filter filter-name term term-name]
For the complete list of match conditions, see “Standard Firewall
Filter Match Conditions for MPLS Traffic on ACX Series Routers”
on page 1062.
MPLS
[edit firewall family ccc filter filter-name term term-name]
No match conditions are supported for this traffic type on ACX
Series routers.
Layer 2 CCC
[edit firewall family bridge filter filter-name term term-name]
[edit firewall family ethernet-switching filter filter-name term
term-name] (Applicable to ACX5048 and ACX5096 routers only.)
Bridge
Under the then statement for a standard stateless firewall filter term, you can specify
the actions to be taken on a packet that matches the term.
Table 72 on page 1053 summarizes the types of actions you can specify in a standard
stateless firewall filter term.
Table 72: Standard Firewall Filter Action Categories for ACX Series Routers
CommentDescriptionType of Action
See “Standard Firewall Filter
Terminating Actions on ACX Series
Routers” on page 1063.
Halts all evaluation of a firewall filter for a specific
packet. The router performs the specified action,
and no additional terms are used to examine the
packet.
You can specify only one terminating action in a
standard firewall filter. You can, however, specify
one terminating action with one or more
nonterminating actions in a single term. For
example, within a term, you can specify accept
with count and syslog.
Terminating
1053Copyright © 2017, Juniper Networks, Inc.
Chapter 32: Configuring Firewall Filters