Example: Configuring Interface And Firewall Filter Policers At The Same; Interface - Juniper EX9200 Features Manual

Traffic policers feature guide ex series
Hide thumbs Also See for EX9200:
Table of Contents

Advertisement

Traffic Policers Feature Guide for EX9200 Switches
Meaning
Related
Documentation
Example: Configuring Interface and Firewall Filter Policers at the Same Interface
Requirements
Overview
64
[User@Host]#
hping 172.16.80.1 -c 10 -s 80 -k -d 350
HPING 172.16.80.1 (eth1 172.16.80.1): NO FLAGS are set, 40 headers + 350 data
bytes
len=46 ip=172.16.80.1 ttl=62 DF id=0 sport=0 flags=RA seq=0 win=0 rtt=0.5 ms
.
.
.
--- 172.16.80.1 hping statistic ---
10 packets transmitted, 6 packets received, 40% packet loss
round-trip min/avg/max = 0.5/3000.8/7001.3 ms
On Device R1, check the firewall counters by using the
2.
user@R1> show firewall
User@R1# run show firewall
Filter: __default_bpdu_filter__
Filter: mf-classifier
Policers:
Name
discard-t1
In Steps 1 and 2 the output from both devices shows that 4 packets were discarded This
means that there was at least 8 Kbps of green (in-contract HTTP port 80) traffic and
that the 1500 KBps burst option for red out-of-contract HTTP port 80 traffic was
exceeded.
Junos OS Routing Protocols and Policies Configuration Guide for Security Devices
This example shows how to configure three single-rate two-color policers and apply the
policers to the IPv4 input traffic at the same single-tag virtual LAN (VLAN) logical

interface.

Requirements on page 64
Overview on page 64
Configuration on page 66
Verification on page 72
No special configuration beyond device initialization is required before configuring this
example.
In this example, you configure three single-rate two-color policers and apply the policers
to the IPv4 input traffic at the same single-tag VLAN logical interface. Two policers are
show firewall
command.
Bytes
Packets
1560
Copyright © 2016, Juniper Networks, Inc.
4

Advertisement

Table of Contents
loading

Table of Contents