Understanding Service Sets - Juniper ACX1000 Configuration Manual

Junos os; acx series universal access router
Hide thumbs Also See for ACX1000:
Table of Contents

Advertisement

ACX Series Universal Access Router Configuration Guide

Understanding Service Sets

1090
CoS for NAT Services on ACX Series Universal Access Routers on page 887
Network Address Translation Constraints on ACX on page 1003
Configuring Address Pools for Network Address Port Translation (NAPT) Overview on
page 1007
Network Address Translation Rules Overview on page 1004
Configuring Service Sets for Network Address Translation on page 1030
Configuring Service Sets to Be Applied to Services Interfaces on page 1031
Configuring Queuing and Scheduling on Inline Services Interface on page 1040
Junos OS for ACX Series routers enables you to create service sets that define a collection
of services to be performed by an inline services interface. You can configure the service
set either as an interface-style service set or as a next-hop-style service set.
An interface-style service set is used as an action modifier across an entire interface. You
can use an interface-style service set when you want to apply services to packets passing
through an interface.
A next-hop-style service set is a route-based method of applying a particular service.
Only packets destined for a specific next hop are serviced by the creation of explicit static
routes. This configuration is useful when services need to be applied to an entire virtual
routing and forwarding (VRF) table, or when routing decisions determine that services
need to be performed. When a next-hop-style service is configured, the services interface
is considered to be a two-legged module with one leg configured to be the inside interface
(inside the network) and the other configured as the outside interface (outside the
network).
To configure service sets for NAT services, include the
hierarchy level:
services]
[edit services]
service-set
service-set-name {
interface-service {
service-interface interface-name;
}
nat-rule-sets rule-set-name;
nat-rules rule-names;
stateful-firewall-rule-setsrule-set-name;
stateful-firewall-rules rule-names;
next-hop-service {
inside-service-interface interface-name.unit-number;
outside-service-interface interface-name.unit-number;
}
}
To configure service sets for IPsec VPN services, include the
hierarchy level:
[edit services]
statement at the
service-set
service-set
statement at the
Copyright © 2017, Juniper Networks, Inc.
[edit

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Acx5048Acx5096Acx500Acx1100Acx2000Acx2100 ... Show all

Table of Contents