[ Contents] [ Prev] [ Next] [ Index] [ Report an Error]

Index

Symbols  Numbers  A  B  C  D  E  F  G  H  I  J  K  L  M  N  O  P  Q  R  S  T  U  V  W  X

Symbols

( ), in syntax descriptions    1
[ ], in configuration statements    1
{ }, in configuration statements    1
*,G notation, for multicast forwarding states    1
#, comments in configuration statements    1
< >, in syntax descriptions    1
| (pipe), in syntax descriptions    1

Numbers

3DES-CBC algorithm    1

A

accept, filter action    1
access control lists (ACLs)    See stateless firewall filters    
ACLs    See stateless firewall filters    
action modifiers, stateless firewall filters    
list of    1
setting    1
See also actions    
actions    
accept, setting    1
count modifier, setting    1
default, routing policy    1
discard, setting    1
final, routing policy    1
forwarding class modifier, setting    1
log modifier, setting    1
loss priority modifier, setting    1
modifiers, list of    1
NAT, list of    1
next term, setting    1
no action, setting    1
reject, setting    1
route list match types    1
routing instance, setting    1
routing policy    1
routing policy, summary of    1
sample modifier, setting    1
stateful firewall filters, list of    1
stateless firewall filters, list of    1
stateless firewall filters, setting actions (Quick Configuration)    1
stateless firewall filters, setting modifiers (Quick Configuration)    1
syslog modifier, setting    1
virtual channel modifier, setting    1
Action tab, stateless firewall filters    1
adaptive shaping    
applying CoS rules to logical interfaces    1
verifying    1
addresses    
multicast ranges    1
translating    See NAT    
address match conditions    1
address translation    See NAT    
administrative groups, for MPLS path selection    1
administrative scoping    1
Advanced Encryption Standard (AES)    1
AES algorithm    1
AF forwarding class    See assured forwarding forwarding class    
AH (Authentication Header) protocol, IPSec    1
aliases, CoS    See CoS value aliases    
AS path, prepending    1
ASs (autonomous systems)    
AS number, in VPNs    1
LSPs through    1
assured forwarding (AF) forwarding class    1
RED drop profiles for    1
See also CoS; forwarding classes    
authentication algorithms, IPSec    1
Authentication Header (AH) protocol, IPSec    1
Auto-re-enrollment for IPSec certification authority.    1
Auto-RP    1

B

BA classifiers    See classifiers    
bandwidth, for RSVP-signaled LSPs    1
BE forwarding class    See best-effort forwarding class    
behavior aggregate classifiers    See classifiers    
best-effort (BE) forwarding class    
default assignment    1
See also CoS; forwarding classes    
typical usage    1
BGP (Border Gateway Protocol)    
export policy for CLNS    1
for CLNS VPN NLRI    1
injecting OSPF routes into BGP    1
policy to make routes less preferable    1
route-flap damping    1
VPNs    1
BGP confederations    
route-flap damping    1
bit-field logical operators, stateless firewall filters    1
bit-field match conditions    1
bit-field synonym match conditions    1
bootstrap router    1
braces, in configuration statements    1
brackets    
angle, in syntax descriptions    1
square, in configuration statements    1
branches    1
See also multicast    
BSR (bootstrap router)    1

C

CA (certificate authority)    
CA profile (configuration editor)    1
enrolling a local certificate with    1
loading a certificate from    1
overview    12
requesting a certificate from    1
canureach message, DLSw    1
capabilities exchange, DLSw    1
CA profile, for digital certificates    1
CE (customer edge) routers    1
description    1
VPN task overview    1
VPN topology    1
See also VPNs    
certificate revocation lists    1
chained stateless firewall filters    1
channelized Nxds0 interface, maximum delay buffer time    1
channelized T1/E1 interfaces, larger delay buffer    
configuration editor    1
overview    1
circuit    See Layer 2 circuits    
circuit establishment, DLSw    1
classifiers    
adding and editing (Quick Configuration)    1
applying behavior aggregate classifiers    12
assigning to logical interfaces (Quick Configuration)    1
behavior aggregate    1
default behavior aggregate classifiers    1
default DSCP CoS classifier for DLSw    1
defining (Quick Configuration)    1
description    1
multifield classifiers    1
sample, for firewall filter    1
sample behavior aggregate classification    1
sample behavior aggregate classifier assignments    12
strict high-priority queuing, applying classifier to interface (configuration editor)    1
strict high-priority queuing (configuration editor)    1
summary (Quick Configuration)    1
class of service    See Class of Service pages; CoS    
Class of Service classifiers page    1
field summary    1
Class of Service Cos value aliases page    1
field summary    1
Class of Service forwarding classes page    1
field summary    1
Class of Service initial page    1
Class of Service Interfaces page    1
field summary    1
Class of Service RED drop profiles page    1
field summary    1
Class of Service rewrite rules page    1
field summary    1
Class of Service scheduler maps page    1
field summary    1
Class of Service schedulers page    1
field summary    1
Class of Service virtual channel groups page    1
field summary    1
clear-channel interfaces, maximum delay buffer time    1
clear services ipsec-vpn certificates service-set command    1
CLI configuration editor    
CLNS    1
CoS    1
CoS, large delay buffers    1
CoS, strict high priority for queuing    1
DLSw (basic)    1
DLSw CoS    1
IPSec tunnels    1
MPLS traffic engineering    1
multicast network    1
routing policies    1
stateful firewall filters    1
stateless firewall filters    1
VPNs    1
CLNS (Connectionless Network Service) VPNs    
BGP, to carry CLNS VPN NLRI    1
BGP export policy    1
displaying configurations    1
ES-IS    1
IS-IS    1
linking hosts    1
overview    1
requirements    1
static routes (without IS-IS)    1
verifying configuration    1
VPN routing instance    1
coloring, link, for MPLS path selection    1
comments, in configuration statements    1
Common Criteria environment, stateless firewall filters in    1
congestion control    
with CoS schedulers (Quick Configuration)    1
with DiffServ assured forwarding (configuration editor)    1
Connectionless Network Service    See CLNS    
Constrained Shortest Path First    See CSPF    
conventions    
how to use this guide    1
notice icons    1
text and syntax    1
CoS (class of service)    
adaptive shaping for rules    1
aliases    See CoS value aliases    
assigning components to interfaces (Quick Configuration)    1
assigning forwarding classes to output queues    1
behavior aggregate classifiers    See classifiers    
benefits    1
classifiers    See classifiers    
configuration tasks (configuration editor)    1
configuration tasks (Quick Configuration)    1
CoS process (JUNOS implementation)    1
CoS value aliases    See CoS value aliases    
CoS value rewrites    1
CoS values    See CoS value aliases    
default DSCP classifier for DLSw    1
default scheduler settings    See schedulers    
default settings    1
defining components (Quick Configuration)    1
DLSw packets, classification of    1
firewall filter for a multifield classifier    1
forwarding classes    See forwarding classes    
interfaces, assigning components to (Quick Configuration)    1
JUNOS components    1
JUNOS implementation    1
large delay buffers (configuration editor)    1
overview    1
See also Class of Service pages    
policer for firewall filter    1
preparation    1
Quick Configuration    1
RED drop profiles    See RED drop profiles    
rewrite rules    See rewrite rules    
sample behavior aggregate classification    1
scheduler maps    See scheduler maps    
schedulers    See schedulers    
slower interfaces, enlarging delay buffers for (configuration editor)    1
starvation prevention for queues (configuration editor)    1
strict high priority for queuing (configuration editor)    1
ToS value for DLSw    1
traffic flow    1
transmission scheduling    1
uses    1
verifying adaptive shaper configuration    1
verifying multicast session announcements    1
verifying virtual channel configuration    1
verifying virtual channel group configuration    1
virtual channel groups (Quick Configuration)    1
See also virtual channels    
virtual channels for rules    See virtual channels    
CoS-based Forwarding (CBF)    1
CoS components    
classifiers    1
code-point alias    1
forwarding classes    1
forwarding policies    1
loss priorities    1
policers    1
RED drop profiles    1
rewrite rules    1
schedulers    1
shaping rate    1
transmission queues    1
virtual channels    1
CoS process    
incoming packets    1
outgoing packets    1
overview (JUNOS implementation)    1
CoS value aliases    
adding (Quick Configuration)    1
default values    1
rewrite rules    1
summary (Quick Configuration)    1
CoS values    See CoS value aliases    
count, filter action modifier    1
CRLs (certificate revocation lists)    1
CSPF (Constrained Shortest Path First)    
constraints    1
link coloring    1
rules    1
disabling    1
CSPF algorithm    See CSPF    
curly braces, in configuration statements    1
customer edge routers    See CE routers    
customer support    1
contacting JTAC    1

D

Data Encryption Standard-cipher block chaining (DES-CBC)    1
data link switching    See DLSw    
defaults    
behavior aggregate classifiers    1
CoS forwarding class assignments    12
DSCP classifier for DLSw    1
junos-algs-outbound group, stateful firewall filters    1
routing policy actions    1
delay buffer size    
allocation methods    1
calculation    1
description    1
enlarging    1
enlarging (configuration editor)    1
maximum available    1
denial-of-service attacks, preventing    1
dense routing mode, caution for use    1
See also multicast routing modes    
DES-CBC algorithm    1
designated router, stopping outgoing PIM register messages on    1
destination static NAT    
basic configuration (configuration editor)    1
description    1
example    1
diagnosis    
displaying CLNS VPN configurations    1
displaying stateful firewall filter configurations    1
displaying stateless firewall filter configurations    1
displaying stateless firewall filter statistics    1
LDP neighbors    1
LDP sessions    1
LDP-signaled LSP    1
RSVP neighbors    1
RSVP sessions    1
RSVP-signaled LSP    1
traffic forwarding over LDP-signaled LSPs    1
verifying adaptive shaper configuration    1
verifying DLSw capabilities    1
verifying DLSw circuit state    1
verifying DLSw circuit state (detail)    1
verifying DLSw Ethernet redundancy interface statistics    1
verifying DLSw Ethernet redundancy status    1
verifying DLSw LLC2 properties    1
verifying DLSw peers    1
verifying DLSw peers (detail)    1
verifying DLSw reachability    1
verifying firewall filter handles fragments    1
verifying IPSec tunnel operation    1
verifying MPLS traffic engineering    1
verifying multicast IGMP versions    1
verifying multicast SAP and SDP configuration    1
verifying multicast session announcements    1
verifying NAT configurations    1
verifying PIM mode and interface configuration    1
verifying PIM RPF routing table    1
verifying PIM RPs    1
verifying stateful firewall filters    1
verifying stateless firewall filter actions    1
verifying stateless firewall filter DoS protection    1
verifying stateless firewall filter flood protection    1
verifying stateless firewall filters with packet logs    1
verifying virtual channel configuration    12
verifying VPN connectivity    1
Differentiated Services    See DiffServ    
Diffie-Hellman exchange, IPSec    1
DiffServ (Differentiated Services)    
assigning forwarding classes to output queues    1
assured forwarding    1
behavior aggregate classifiers    1
configuration tasks (configuration editor)    1
firewall filter for a multifield classifier    1
interoperability    1
JUNOS implementation    1
policer for firewall filter    1
RED drop profiles    1
rewrite rules    1
scheduler maps    1
schedulers    1
virtual channels for rules    1
digital certificates    
CA certificate, loading on the router    1
CA profile (configuration editor)    1
certificate authority (CA)    1
See also CA    
configuring for IPSec tunnels    1
CRLs    1
deleting    1
generating public and private keys    1
key pair, generating    1
local certificate, applying to an IPSec tunnel    1
local certificate, enrolling    1
local certificate, generating    1
local certificate, loading on the router    1
requesting from a CA    1
revocation of    1
white papers about    1
discard, filter action    
automatic, stateful firewall filters    1
automatic, stateless firewall filters    1
stateless firewall filters (Quick Configuration)    1
discard rule    See discard, filter action    
Distance Vector Multicast Routing Protocol    1
DLSw (data link switching)    
basic configuration (configuration editor)    1
basic configuration (Quick Configuration)    1
canureach message    1
capabilities exchange    1
circuit establishment    1
CoS classification of DLSw packets    1
DLSw MIB    1
Ethernet redundancy    See DLSw Ethernet redundancy    
icanreach message    1
LLC type 2 properties on Ethernet interfaces    1
LLC type 2 properties on Ethernet interfaces    1
load balancing    See DLSw load balancing    
local router configuration    1
monitoring capabilities    1
overview    1
peers    See DLSw peers    
preparation    1
Quick Configuration    1
reachability cache, clearing    1
remote router configuration    1
sample DLSw network    1
sample peer router values    1
SNA forwarding    1
SSP    1
stages of operation    1
ToS precedence for DLSw packets    1
verifying capabilities    1
verifying DLSw circuit state    1
verifying DLSw circuit state (detail)    1
verifying DLSw peers    1
verifying DLSw peers (detail)    1
verifying DLSw reachability    1
verifying Ethernet redundancy interface statistics    1
verifying Ethernet redundancy status    1
verifying LLC2 properties    1
idle timeout    1
promiscuous mode    1
DLSw Ethernet redundancy    
configuring    1
network topology    1
overview    1
verifying interface statistics    1
verifying status    1
DLSw load balancing    
configuring    1
network topology    1
overview    1
DLSw page    1
field summary    1
DLSw peers    
local (configuration editor)    1
local (Quick Configuration)    1
remote (configuration editor)    1
remote (Quick Configuration)    1
setting a preference for    1
verifying    1
verifying (detail)    1
documentation set    
comments on    1
DoS (denial-of-service) attacks, preventing    1
downstream interfaces    1
See also multicast    
DR    See designated router    
drop profiles    See CoS; RED drop profiles    
DS0 interfaces, maximum delay buffer time    1
DSCP IPv6    See CoS; DSCPs    
DSCPs (DiffServ code points)    
default behavior aggregate classifiers    1
default classifier for DLSw    1
DSCP aliases and values    1
See also CoS    
replacing with rewrite rules    1
rewrites    1
sample behavior aggregate classification    1
matching with an IPv4 filter    1
matching with a filter    1
DVMRP (Distance Vector Multicast Routing Protocol)    1
dynamic LSPs    1
dynamic SAs    
creating (configuration editor)    1
IKE policy (configuration editor)    1
IKE proposal (configuration editor)    1
IPSec policy (configuration editor)    1
IPSec proposal (configuration editor)    1
IPSec rules (configuration editor)    1
IPSec services interfaces (configuration editor)    1
overview    1
service sets (configuration editor)    1
See also IPSec service sets    

E

EBGP (external BGP), route-flap damping    1
EF forwarding class    1
See also CoS; forwarding classes    
egress router    See LSPs; outbound router    
Encapsulating Security Payload (ESP) protocol, IPSec    1
Encapsulating Security Payload Security Parameter Index (ESP SPI) values, matching with a filter    1
encryption algorithms, IPSec    
3DES-CBC    1
AES    1
DES-CBC    1
overview    1
End System-to-Intermediate System    See ES-IS    
enrollment URL, for IPSec certification authority    1
EROs (Explicit Route Objects)    
loose hops    1
strict hops    1
ES-IS (End System-to-Intermediate System)    
for a PE router in a CLNS island    1
overview    1
ESP (Encapsulating Security Payload) protocol, IPSec    1
ESP SPI (Encapsulating Security Payload Security Parameter Index) values, matching with a filter    1
Ethernet interfaces, DLSw, LLC type 2 properties for    See LLC    
Ethernet redundancy, DLSw    See DLSw Ethernet redundancy    
exact route list match type    1
expedited-forwarding (EF) forwarding class    1
See also CoS; forwarding classes    
Explicit Route Objects    See EROs    
export routing policy, for Layer 2 VPNs    1
export statement, for routing policies    1
external networks, access with NAT    See NAT    

F

Fast Ethernet ports, LLC type 2 properties for DLSw    See LLC    
filters    See firewall filters; stateful firewall filters; stateless firewall filters    
Firewall/NAT application page    1
field summary    1
Firewall/NAT main page    1
field summary    1
firewall filters    
applying CoS rules to logical interfaces    1
in a Common Criteria environment    1
multifield classifier filter terms    1
overview    1
policer for    1
sample classifier terms    1
stateful firewall filters    1
See also stateful firewall filters    
stateless firewall filters    1
See also stateless firewall filters    
term number caution    12
verifying fragment handling    1
Firewall Filters configuration pages    
field summary    1
initial page    1
match conditions and actions page    1
Firewall Filters interface assignment pages    
available interfaces and filter status page    1
field summary    1
flap damping    1
parameters    1
flooding, preventing    1
flow control, actions in routing policies    1
font conventions    1
forwarding classes    
adding and editing (Quick Configuration)    1
assigning to logical interfaces (Quick Configuration)    1
assigning to output queues (configuration editor)    1
assigning to output queues (Quick Configuration)    1
default assignments    1
default values    1
defining (Quick Configuration)    1
description    1
filter action modifier, setting    1
mapping to schedulers (configuration editor)    1
matching with a filter    1
policy to group source and destination prefixes    1
queue assignments, default    1
sample behavior aggregate classification    1
sample mappings    1
summary (Quick Configuration)    1
forwarding policy options    1
forwarding states, multicast notation    1
fragment offset, matching with a filter    1
Frame Relay, CoS adaptive shaping for    1
from statement, routing policy match conditions    1
full-cone NAT    
basic configuration (configuration editor)    1

G

gateway, IPSec tunnel mode for    1
See also IPSec tunnels    
gateway, local and remote, for IPSec service sets    1
ge-0/0/0, disabling PIM on    1
glossary    
CLNS    1
CoS    1
DLSw    1
firewall filters    1
IPSec    1
MPLS    1
multicast    1
NAT    1
routing policies    1
VPNs    1
groups, default junos-algs-outbound group, for stateful firewall filters    1

H

handling packet fragments    1
high-priority CoS queuing    1
host, IPSec transport mode for    1
how to use this guide    1

I

IBM networking    See DLSw    
icanreach message, DLSw    1
ICMP (Internet Control Message Protocol), policers    1
ICMP packets, matching with a filter    1
idle timeout, DLSw    1
IEEE 802.1 CoS value type, aliases and values    1
See also CoS    
IGMP (Internet Group Management Protocol)    
IGMPv2    1
IGMPv3    1
setting the version    1
verifying the version    1
IGMPv1    1
IGPs (interior gateway protocols)    1
VPNs    1
See also OSPF    
IKE (Internet Key Exchange)    
dynamic SAs    1
IKE policy, configuring    1
IKE proposal, configuring    1
negotiation phases    1
preshared key (Quick Configuration)    1
description    1
preshared key (configuration editor)    1
import routing policy, for Layer 2 VPNs    1
import statement, for routing policies    1
inbound router, in an LSP    1
inet routing table    1
ingress router    See inbound router; LSPs    
injecting routes    1
input filters, assigning to interfaces    1
interface groups, matching with a filter    1
interface service set, for IPSec tunnels    1
interface sets, matching with a filter    1
Intermediate System-to-Intermediate System    See IS-IS    
internal networks, access with NAT    See NAT    
Internet Control Message Protocol policers    1
Internet Group Management Protocol    See IGMP    
Internet Key Exchange    See IKE    
invalid routes, rejecting    1
IP addresses, translation with NAT    See NAT    
IP options, matching with a filter    1
IP precedence CoS value type, aliases and values    1
See also CoS    
IPSec (IP Security)    
AH traffic protection protocol    1
authentication algorithms    1
authentication methods    1
digital certificates authentication    1
See also digital certificates    
dynamic SAs (configuration editor)    1
dynamic SAs for large-scale networks    1
encryption algorithms    1
ESP traffic protection protocol    1
IKE    See IKE    
IKE policy (configuration editor)    1
IKE proposal (configuration editor)    1
IPSec policy (configuration editor)    1
IPSec proposal (configuration editor)    1
IPSec rules (configuration editor)    1
NAT pools (configuration editor)    1
overview    1
preshared key authentication    1
protocol bundle traffic protection    1
requirements    1
security associations    See dynamic SAs; IPSec security associations    
service sets (configuration editor)    1
See also IPSec service sets    
services interfaces (configuration editor)    1
Services Router as secure gateway or host    1
traffic protection protocols    1
transport mode    1
tunnel mode    1
See also IPSec tunnels    
verifying tunnels    1
ESP SPI values, matching with a filter    1
IPSec security associations    
manual SAs    1
overview    1
See also dynamic SAs; IKE; IPSec tunnels    
IPSec service sets    
applying rules (configuration editor)    1
interface service set (configuration editor)    1
local gateway (configuration editor)    1
next-hop services interface (configuration editor)    1
overview    1
See also dynamic SAs    
IPSec tunnels    
digital certificates for    1
See also digital certificates    
dynamic SAs (configuration editor)    1
IKE key (configuration editor)    1
IKE key (Quick Configuration)    1
IKE policy (configuration editor)    1
IKE proposal (configuration editor)    1
IPSec policy (configuration editor)    1
IPSec proposal (configuration editor)    1
IPSec rule (configuration editor)    1
IPSec rules (configuration editor)    1
NAT pools (configuration editor)    1
private addresses (Quick Configuration)    1
Quick Configuration    1
requirements    1
security associations (configuration editor)    1
services interfaces (configuration editor)    1
services sets (configuration editor)    1
See also IPSec service sets    
verifying    1
VPN policy for digital certificates    1
local endpoint (Quick Configuration)    1
remote endpoint (Quick Configuration)    1
IPSec Tunnels page    1
field summary    1
IP Security    See IPSec    
IPv4 filters    
assigning to interfaces (Quick Configuration)    1
creating and editing (Quick Configuration)    1
See also stateless firewall filters    
IPv6 filters    
assigning to interfaces (Quick Configuration)    1
creating and editing (Quick Configuration)    1
See also stateless firewall filters    
IS-IS (Intermediate System-to-Intermediate System)    
for CLNS route exchange    1
with CLNS    1

J

J-series    
CLNS VPNs    1
CoS    1
CoS overview    1
DLSw    1
firewall filter overview    1
IBM networking    1
IPSec    1
MPLS for VPNs overview    1
MPLS traffic engineering    1
multicast    1
multicast overview    1
NAT    1
NAT and stateful firewall filters    1
NAT overview    1
policy framework overview    1
release notes, URL    1
routing policies    1
routing policy overview    1
stateful firewall filters    1
stateful firewall filters overview    1
stateless firewall filter overview    1
stateless firewall filters    1
VPNs    1
junos-algs-outbound group, for stateful firewall filters    1
JUNOS Internet software    
release notes, URL    1
JUNOS software    
CoS components    1
CoS implementation    1
J-Web configuration editor    
CLNS    1
CoS    1
CoS, large delay buffers    1
CoS, strict high priority for queuing    1
DLSw (basic)    1
DLSw CoS    1
IPSec tunnels    1
MPLS traffic engineering    1
multicast network    1
NAT    1
routing policies    1
stateful firewall filters    1
stateless firewall filters    1
VPNs    1

K

keepalive interval, for LDP-signaled LSPs    1
keys    
preshared    1
See also preshared keys    
public, for digital certificates    1
public-private key pair, generating    1

L

Label Distribution Protocol    See LDP    
labels, MPLS    1
label operations    1
PHP    1
label-switched paths    See LSPs    
label switching    1
label-switching routers (LSRs)    1
Layer 2 circuits    
AS number