Juniper JUNOS OS 10.3 - SOFTWARE Manual page 3106

For ex series ethernet switches
Hide thumbs Also See for JUNOS OS 10.3 - SOFTWARE:
Table of Contents

Advertisement

Complete Software Guide for Junos
Table 379: Supported Match Conditions Applicable to IPv4 Traffic for Firewall Filters on EX
Series Switches
Match Condition
Description
IP destination address field, which is the
destination-address
address of the final destination node.
ip-address
destination-mac-address
Destination media access control (MAC)
address of the packet.
mac-address
You can define a destination MAC address
with a prefix, such as from
destination-mac-address
00:01:02:03:04:05/24. If no prefix is
specified, the default value is taken as 48.
3010
®
OS for EX Series Ethernet Switches, Release 10.3
or more actions that the switch takes if a packet matches the match conditions for the
specific term. Allowed actions are to accept a packet or discard a packet. In addition,
you can specify action modifiers to count, mirror, rate limit, and classify packets.
For each firewall filter, you define the terms that specify the filtering criteria (match
conditions) to apply to packets and the action for the switch to take if a match occurs.
The string that defines a match condition is called a match statement. The following
tables list various match conditions, their supported platforms, binding points, and actions.
Table 379 on page 3010 describes the match conditions you can specify when configuring
a firewall filter for IPv4 traffic.
Table 380 on page 3020 describes the match conditions you can specify when configuring
a firewall filter for IPv6 traffic.
Table 381 on page 3027 shows the actions that you can specify in a term.
Table 382 on page 3028 shows the action modifiers that you can specify in a term.
Supported Platforms and Bind Points
Ingress
Egress
EX2200—ports, VLANs,
and Layer 3 interfaces
EX3200 and
EX4200—ports, VLANs,
and Layer 3 interfaces
EX4500—ports, VLANs,
and Layer 3 interfaces
EX8200—ports, VLANs,
and Layer 3 interfaces
EX2200—ports and
VLANs
EX3200 and
EX4200—ports and
VLANs
EX4500—ports and
VLANs
EX8200—ports and
VLANs
Copyright © 2010, Juniper Networks, Inc.
EX2200—ports, VLANs,
and Layer 3 interfaces
EX3200 and
EX4200—ports, VLANs,
and Layer 3 interfaces
EX4500—ports, VLANs,
and Layer 3 interfaces
EX8200—ports, VLANs,
and Layer 3 interfaces
EX2200—ports and
VLANs
EX3200 and
EX4200—ports and
VLANs
EX4500—ports and
VLANs
EX8200—ports and
VLANs

Advertisement

Table of Contents
loading

Table of Contents