EasyManuals Logo
Home>Juniper>Network Hardware>Junos OS

Juniper Junos OS User Manual

Juniper Junos OS
158 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #138 background imageLoading...
Page #138 background image
Table 16: show security policies Output Fields (continued)
Field DescriptionField Name
Name of a preconfigured or custom application whose type the packet matches, as
specified at configuration time.
IP protocol: The Internet protocol used by the application—for example, TCP, UDP,
ICMP.
ALG: If an ALG is explicitly associated with the policy, the name of the ALG is displayed.
If application-protocol ignore is configured, ignore is displayed. Otherwise, 0 is displayed.
However, even if this command shows ALG: 0, ALGs might be triggered for packets
destined to well-known ports on which ALGs are listening, unless ALGs are explicitly
disabled or when application-protocol ignore is not configured for custom applications.
Inactivity timeout: Elapsed time without activity after which the application is
terminated.
Source port range: The low-high source port range for the session application.
Applications
Status of the destination address translation traffic:
drop translated—Drop the packets with translated destination addresses.
drop untranslated—Drop the packets without translated destination addresses.
Destination Address Translation
An application firewall includes the following:
Rule-set—Name of the rule set.
Rule—Name of the rule.
Dynamic applications—Name of the applications.
Dynamic application groups—Name of the application groups.
ActionThe action taken with respect to a packet that matches the application
firewall rule set. Actions include the following:
permit
deny
Default ruleThe default rule applied when the identified application is not specified
in any rules of the rule set.
Application Firewall
The action taken in regard to a packet that matches the policy’s tuples. Actions include
the following:
permit
firewall-authentication
tunnel ipsec-vpn vpn-name
pair-policy pair-policy-name
source-nat pool pool-name
pool-set pool-set-name
interface
destination-nat name
deny
reject
services-offload
Action or Action-type
Session log entry that indicates whether the at-create and at-close flags were set at
configuration time to log session information.
Session log
Copyright © 2016, Juniper Networks, Inc.122
Getting Started Guide for Branch SRX Series

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Juniper Junos OS and is the answer not in the manual?

Juniper Junos OS Specifications

General IconGeneral
BrandJuniper
ModelJunos OS
CategoryNetwork Hardware
LanguageEnglish

Related product manuals