Understanding Firewall Filter Match Conditions - Juniper JUNOS OS 10.4 - FOR EX REV 1 Manual

For ex series ethernet switches
Table of Contents

Advertisement

Table 416: Supported Match Conditions Applicable to IPv4 Traffic for Firewall Filters on EX
Series Switches (continued)
Match Condition
Description
TTL type to match. The value can be 1–255.
ttl value
The VLAN that is associated with the packet.
vlan [vlan-name |
vlan-id]
Copyright © 2010, Juniper Networks, Inc.
Some of the numeric range and bit-field match conditions allow you to specify a text
synonym. For a list of all the synonyms for a match condition, do any of the following:
If you are using the J-Web Filters Configuration page, select the synonym from the
appropriate list.
If you are using the CLI, type a question mark (
To specify the bit-field value to match, you must enclose the values in quotation marks
(
). For example, a match occurs if the RST bit in the TCP flags field is set:
" "
tcp-flags "rst";
For information about logical operators and how to use bit-field logical operations to
create expressions that are evaluated for matches, see "Understanding Firewall Filter
Match Conditions" on page 3255.
On Juniper Networks EX Series Ethernet switches, you can apply a router firewall filter
to both IPv4 and IPv6 traffic. You can apply firewall filter match conditions to IPv6 traffic
on Layer 3 interfaces, aggregated Ethernet interfaces, and loopback interfaces. Table
417 on page 3244 describes the match conditions you can specify when configuring a firewall
filter for IPv6 traffic.
Chapter 106: Firewall Filters—Overview
Supported Platforms and Bind Points
Ingress
Egress
EX2200—Layer 3
interfaces
EX3200 and
EX4200—Layer 3
interfaces
EX4500—Layer 3
interfaces
EX8200—Layer 3
interfaces
EX2200—ports and
VLANs
EX3200 and
EX4200—ports and
VLANs
EX4500—ports and
VLANs
EX8200—ports and
VLANs
) after the
?
from
EX2200—not
supported
EX3200 and
EX4200—not
supported
EX4500—not
supported
EX8200—not
supported
EX2200—ports and
VLANs
EX3200 and
EX4200—ports and
VLANs
EX4500—ports and
VLANs
EX8200—ports and
VLANs
statement.
3243

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junos os 10.4

Table of Contents