A service set is a collection of services to be performed on the Adaptive Services (AS) or MultiServices PIC. To configure service sets, include the following statements at the [edit services] hierarchy level:
-
service-set service-set-name {
- ([ ids-rules rule-names ] | ids-rule-sets rule-set-name);
- ([ ipsec-vpn-rules rule-names ] |
ipsec-vpn-rule-sets rule-set-name);
- ([ nat-rules rule-names ] | nat-rule-sets rule-set-name);
- ([ pgcp-rules rule-names] | pgcp-rule-sets rule-set-name);
- ([ stateful-firewall-rules rule-names ] | stateful-firewall-rule-sets rule-set-name);
-
allow-multicast;
-
-
extension-service service-name {
-
provider-specific rules;
- }
-
-
interface-service {
-
service-interface interface-name;
- }
-
-
ipsec-vpn-options {
-
ike-access-profile profile-name;
-
local-gateway address;
-
trusted-ca [ ca-profile-name ];
- }
-
max-flows number;
-
-
next-hop-service {
- inside-service-interface name.number;
- outside-service-interface name.number;
- service-interface-pool name;
- }
-
-
syslog {
-
-
host hostname {
-
services severity-level;
-
facility-override facility-name;
-
log-prefix prefix-value;
- }
- }
- }
-
adaptive-services-pics {
-
-
traceoptions {
- file filename <files number> <match regex> <size size> <(world-readable | no-world-readable)>;
- flag flag;
- }
- }
- logging {
-
-
traceoptions {
- file filename <files number> <match regex> <size size> <(world-readable | no-world-readable)>;
- flag flag;
- }
- }
This chapter contains the following sections: