Verify that packets are being policed and counted.
From operational mode in the CLI, enter the show firewall filter filter-name command.
The value of the counter, icmp-counter, and the number of packets discarded by the policers in the stateless firewall filter configured in Configuring a Routing Engine Firewall Filter to Protect Against TCP and ICMP Floods are displayed in the following sample output.
user@host> show firewall filter protect-RE
Filter: protect-RE Counters: Name Bytes Packets icmp-counter 1040000 5600 Policers: Name Packets tcp-connection-policer 643254873 icmp-policer 7391
Verify the following information:
For a complete description of the show firewall filter command and output, see the JUNOS Routing Protocols and Policies Command Reference.