Configuring Classify-Traffic Conditions

You create classify-traffic conditions in JUNOSe policy rules, in JUNOS ASP and JUNOS filter policy rules, and in PCMM policy rules.

The available configuration statements change depending on the type of policy rule that holds the condition and on the type of protocol that you specify.

To configure a classify-traffic condition, do the following:

  1. Create a classify-traffic condition.
  2. Configure source networks. You can configure source networks in one of two formats.
  3. Configure destination networks. You can configure destination networks in one of two formats.
  4. Configure protocol conditions. The type of protocol condition that you use depends on your configuration.
  5. For JUNOS filter policies, configure a JUNOS filter condition. See:
  6. For JUNOSe secondary input policies, configure a traffic match condition for the packet flow. See:
  7. For the stateful firewall and NAT policies, configure an application protocol condition. See:

Note: PCMM classifiers support only the following classifiers:

  • Source and destination IP addresses
  • Network protocol
  • Source or destination port
  • Type-of-service (ToS) byte and ToS mask

The policy engine ignores all other values.