Security Mode Configuration Commands
105
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Command example:
SRX5308>
security services qos_profile add
security-config[qosProfile]>
profile name Voice
security-config[qosProfile]>
remark Y
security-config[qosProfile]>
qos_type DSCP
security-config[qosProfile]>
qos_value 24
security-config[qosProfile]>
qos_priority High
security-config[qosProfile]>
save
Related show command: show security services qos_profile setup
security services qos_profile edit <row id>
This command configures an existing Quality of Service (QoS) profile that you can associate
with a nonblocking inbound or outbound IPv4 firewall rule. After you have issued the
security services qos_profile edit command to specify the row to be edited, you
enter the security-config [qosProfile] mode, and then you can configure one keyword and
associated parameter or associated keyword at a time in the order that you prefer. You
cannot change the name of the profile.
qos_priority Default, High,
Medium-high, Medium,
or Low
Specifies the priority queue that
determines the allocation of excess
bandwidth and the classification level of
the packets among other priority queues
on the VPN firewall:
• Default. Traffic is mapped based on the
ToS field in the packet’s IP header.
• High. This queue includes the following
DSCP values: AF41, AF42, AF43, AF44,
and CS4.
• Medium-high. This queue includes the
following DSCP values: AF31, AF32,
AF33, AF34, and CS3.
• Medium. This queue includes the
following DSCP values: AF21, AF22,
AF23, AF24, and CS2.
• Low. This queue includes the following
DSCP values: AF11, AF12, AF13, AF14,
CS1, 0, and all other values.
Step 1 Format security services qos_profile edit <row id>
Mode security
Keyword (might consist of two
separate words)
Associated Keyword to
Select or Parameter to Type
Description