Technical Documentation
Dynamic Firewall Services for Subscriber Access, Release 10.0
Firewall filters provide rules that define whether to
permit or deny packets that are transiting an interface on a router.
The subscriber management feature supports two categories of firewall
filters—classic filters and fast update filters. You configure
firewall filters to determine whether to permit or deny traffic before
it enters or exits an interface to which the firewall filter is applied.
An input (or ingress) firewall
filter is one that is applied to packets that are entering
a network. An output (or egress) firewall filter is one that is applied to packets that are exiting
a network. You can configure firewall filters to subject packets to
filtering or class-of-service (CoS) marking (grouping similar types
of traffic together and treating each type of traffic as a class with
its own level of service priority).
OverviewConfigurationAdministrationTroubleshooting