M7I Multiservices Module - Juniper M7i Hardware Manual

Multiservice edge router
Hide thumbs Also See for M7i:
Table of Contents

Advertisement

M7i Multiservice Edge Router Hardware Guide

M7i MultiServices Module

68
at a reduced bandwidth. The Adaptive Services Module enables you to perform one or
more services on the same PIC by configuring a set of services and applications.
The Adaptive Services Module provides the following services:
Stateful firewall—A type of firewall filter that considers state information derived from
previous communications and other applications when evaluating traffic.
Network Address Translation (NAT)—A security procedure for concealing host
addresses on a private network behind a pool of public addresses.
Intrusion detection services (IDS)—A set of tools for detecting, redirecting, and
preventing certain kinds of network attack and intrusion.
The configuration for these three services comprises a series of rules that you can arrange
in order of precedence as a rule set. Each rule follows the structure of a firewall filter,
with a
statement containing input or match conditions and a
from
containing actions to be taken if the match conditions are met.
For information about configuring interfaces on the ASM, see the Junos OS Services
Interfaces Library for Routing Devices.
The MultiServices Module is an optional component of the CFEB-E. The CFEB does not
support the MultiServices Module. The MultiServices Module enables you to perform one
or more services on the same PIC by configuring a set of services and applications. Like
the standalone MultiServices 100 PIC, the MultiServices Module supports the following
services:
Layer 3 Services:
Stateful firewall—A type of firewall filter that considers state information derived
from previous communications and other applications when evaluating traffic.
Network Address Translation (NAT)—A security procedure for concealing host
addresses on a private network behind a pool of public addresses.
Intrusion detection services (IDS)—A set of tools for detecting, redirecting, and
preventing certain kinds of network attack and intrusion.
IPsec
Layer 2 Tunneling Protocol (L2TP)
Active monitoring (cflowd)
Tunnel services
GRE prefragmentation
GRE key stamping
RPM
Layer 2 Services:
statement
then
Copyright © 2019, Juniper Networks, Inc.

Advertisement

Table of Contents
loading

Table of Contents