Example: Dynamic Flow Capture Configuration on a Router


The following example shows a complete dynamic flow capture configuration. On Router 1, configure the dynamic flow capture interface, the interfaces that connect to the control source and content destination, and the interface that receives passively monitored traffic. Then, configure the capture group and specify your control source and content destination requirements. Next, configure filter-based forwarding (FBF) to send monitored traffic to logical unit 1 of the dynamic flow capture interface. Finally, configure a firewall filter and routing table groups to complete the configuration.

Verifying Your Work

To verify that your dynamic flow capture configuration is operating correctly, issue the following command:

The following section shows the output of this command when used with the configuration example.

Router 1

user@router1> show services dynamic-flow-capture control-source capture-group g1 source-identifier cs2 detail

To clear dynamic flow capture criteria belonging to a particular control source, issue the clear services dynamic-flow-capture command. For more information on other dynamic flow capture-related operational mode commands, see the Junos System Basics and Services Command Reference.