(process-override | no-process-override);
process-port port-number;
}
log {
cache-size size;
suppression {
disable;
(include-destination-address | no-include-destination-address);
max-logs-operate value;
max-time-report value;
start-log value;
}
}
packet-log {
host ip-address <port number>;
max-sessions percentage;
source-address ip-address;
total-memory percentage;
}
re-assembler {
action-on-reassembly-failure (drop | drop-session | ignore);
(force-tcp-window-checks | no-force-tcp-window-checks);
(ignore-memory-overflow | no-ignore-memory-overflow);
(ignore-reassembly-memory-overflow | no-ignore-reassembly-memory-overflow);
ignore-reassembly-overflow;
max-flow-mem value;
max-packet-mem-ratio percetnage-value;
max-synacks-queued value;
(tcp-error-logging | no-tcp-error-logging);
}
ssl-inspection {
cache-prune-chunk-size number;
key-protection;
maximum-cache-size number;
session-id-cache-timeout seconds;
sessions number;
}
}
traceoptions {
file {
filename;
files number;
match regular-expression;
(no-world-readable | world-readable);
size maximum-file-size;
}
flag all;
level (all | error | info | notice | verbose | warning);
no-remote-trace;
}
}
}
Related
Documentation
Security Configuration Statement Hierarchy on page 75•
• Understanding Intrusion Detection and Prevention for SRX Series on page 63
Copyright © 2016, Juniper Networks, Inc.86
Getting Started Guide for Branch SRX Series