In addition to including policers in firewall filters, you can configure a load-balance group that is not part of a firewall filter configuration. A load-balance group contains interfaces that all use the same next-hop group characteristic to load-balance the traffic.
To configure a load-balance group, include the load-balance-group statement at the [edit firewall] hierarchy level:
- [edit firewall]
-
load-balance-group group-name {
- next-hop-group [ group-names ];
- }
Next-hop groups allow you to include multiple interfaces used to forward duplicate packets used in port mirroring. For more information about next-hop groups, see Configuring a Next-Hop Group.