For JUNOSe policies, you can apply filter conditions to the input (ingress) and output (egress) side of the router interface. Typically, you use filter conditions with hierarchical rate-limit actions.
Use the following configuration statements to configure match conditions for a JUNOSe filter
- policies group name list name rule name traffic-condition name traffic-match-condition
{
- parent-group parent-group
- source-class source-class ;
- destination-class destination-class ;
- traffic-class traffic-class;
- color color;
- user-packet-class user-packet-class;
- destination-local-interface destination-local-interface ;
- }
To add JUNOSe filter conditions to a classify-traffic condition:
- [edit]
- user@host# edit policies group junose list
ipv4 rule pr traffic--condition tcpg traffic-match-condition
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set parent-group parent-group
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set parent-group parent-group
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set source-class source-class
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set destination-class destination-class
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set traffic-class traffic-class
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set color color
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set user-packet-class user-packet-class
- [edit policies group junose list ipv4 rule pr traffic-condition
tcpg traffic-match-condition]
- user@host# set destination-local-interface destination-local-interface
[edit policies group junose list ipv4 rule pr traffic-condition tcpg traffic-match-condition] user@host# show