Juniper JUNOS OS 10.4 - FOR EX REV 1 Manual page 3338

For ex series ethernet switches
Table of Contents

Advertisement

Complete Software Guide for Junos
Table 416: Supported Match Conditions Applicable to IPv4 Traffic for Firewall Filters on EX
Series Switches
Match Condition
Description
IP destination address field, which is the
destination-address
address of the final destination node.
ip-address
Destination media access control (MAC)
destination-mac-address
address of the packet.
mac-address
You can define a destination MAC address
with a prefix, such as from
destination-mac-address
00:01:02:03:04:05/24. If no prefix is
specified, the default value 48 is used.
3234
®
OS for EX Series Ethernet Switches, Release 10.4
specific term. Allowed actions are to accept a packet or discard a packet. In addition,
you can specify action modifiers to count, mirror, rate limit, and classify packets.
For each firewall filter, you define the terms that specify the filtering criteria (match
conditions) to apply to packets and the action for the switch to take if a match occurs.
The string that defines a match condition is called a match statement. The following
tables list various match conditions, their supported platforms, binding points, and actions.
Table 416 on page 3234 describes the match conditions you can specify when configuring
a firewall filter for IPv4 traffic.
Table 417 on page 3244 describes the match conditions you can specify when configuring
a firewall filter for IPv6 traffic.
Table 418 on page 3250 shows the actions that you can specify in a term.
Table 419 on page 3251 shows the action modifiers that you can specify in a term.
Supported Platforms and Bind Points
Ingress
Egress
EX2200—ports, VLANs,
and Layer 3 interfaces
EX3200 and
EX4200—ports, VLANs,
and Layer 3 interfaces
EX4500—ports, VLANs,
and Layer 3 interfaces
EX8200—ports, VLANs,
and Layer 3 interfaces
EX2200—ports and
VLANs
EX3200 and
EX4200—ports and
VLANs
EX4500—ports and
VLANs
EX8200—ports and
VLANs
Copyright © 2010, Juniper Networks, Inc.
EX2200—ports, VLANs,
and Layer 3 interfaces
EX3200 and
EX4200—ports, VLANs,
and Layer 3 interfaces
EX4500—ports, VLANs,
and Layer 3 interfaces
EX8200—ports, VLANs,
and Layer 3 interfaces
EX2200—ports and
VLANs
EX3200 and
EX4200—ports and
VLANs
EX4500—ports and
VLANs
EX8200—ports and
VLANs

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junos os 10.4

Table of Contents