Technical Documentation

Technical Documentation

Policy Framework Configuration Guide

Policy FrameworkRouting PoliciesFirewall Filters
Routing Policy Configuration

Defining Routing Policies

Configuring Match Conditions in Routing Policy Terms

Configuring Actions in Routing Policy Terms

Applying Routing Policies and Policy Chains to Routing Protocols

Applying Policy Expressions to Routes Exported from Routing Tables

Applying Routing Policies to the Forwarding Table

Configuring Dynamic Routing Policies

Forwarding Packets to the Discard Interface

Testing Routing Policies

Routing Policy Examples

Example: Defining a Routing Policy from BGP to IS-IS

Example: Using Routing Policy to Set a Preference

Example: Importing and Exporting Access and Access-Internal Routes in a Routing Policy

Example: Exporting Routes to IS-IS

Example: Applying Export and Import Policies to BGP Peer Groups

Example: Applying a Prefix to Routes Learned from a Peer

Example: Redistributing BGP Routes with a Specific Community Tag into IS-IS

Example: Redistributing OSPF Routes into BGP

Example: Exporting Direct Routes Into IS-IS

Example: Exporting Internal IS-IS Level 1 Routes to Level 2

Example: Exporting IS-IS Level 2 Routes to Level 1

Example: Assigning Different Forwarding Next-Hop LSPs to Different Destination Prefixes

Example: Grouping Destination Prefixes

Example: Grouping Source Prefixes

Example: Grouping Source and Destination Prefixes in a Forwarding Class

Example: Accepting Routes with Specific Destination Prefixes

Example: Accepting Routes from BGP with a Specific Destination Prefix

Example: Using Routing Policy in an ISP Network

Configuring AS Path Regular Expressions to Use as Routing Policy Match Conditions

Overview of BGP Communities and Extended Communities as Routing Policy Match Conditions

Defining BGP Communities and Extended Communities for Use in Routing Policy Match Conditions

Including BGP Communities and Extended Communities in Routing Policy Match Conditions

How BGP Communities and Extended Communities Are Evaluated in Routing Policy Match Conditions

Using Routing Policies to Prevent Advertisement of BGP Communities to Neighbors

Examples: Configuring BGP Communities as Routing Policy Match Conditions

Configuring Prefix Lists for Use in Routing Policy Match Conditions

Example: Configuring a Prefix List

Configuring Route Lists for Use in Routing Policy Match Conditions

Configuring Subroutines in Routing Policy Match Conditions

Configuring Routing Policy Match Conditions Based on Routing Table Entries

Firewall Filter Configuration

Configuring Firewall Filters

Configuring Standard Firewall Filters

How Firewall Filters Are Evaluated

Overview of Match Conditions in Firewall Filter Terms

Configuring IPv4 Match Conditions

Configuring IPv6 Match Conditions

Configuring Protocol-Independent Match Conditions

Configuring MPLS Match Conditions

Configuring VPLS Match Conditions

Overview of Protocol Match Conditions

Example: Matching on Destination Port and Protocol Fields

Overview of Class-Based Match Conditions

How to Specify Firewall Filter Match Conditions

Configuring Actions in Firewall Filter Terms

Configuring Nested Firewall Filters

Applying Firewall Filters to Interfaces

Overview of Firewall Filter Lists

Firewall Filter Examples

Example: Blocking Telnet and SSH Access

Example: Blocking TFTP Access

Example: Accepting DHCP Packets with Specific Addresses

Example: Defining a Policer for a Destination Class

Example: Counting IP Option Packets

Example: Counting and Discarding IP Options Packets

Example: Accepting OSPF Packets from Certain Addresses

Example: Matching Packets Based on Two Unrelated Criteria

Example: Counting Both Accepted and Rejected Packets

Example: Blocking TCP Connections to a Certain Port Except from BGP Peers

Example: Accepting Packets with Specific IPv6 TCP Flags

Example: Setting a Rate Limit for Incoming Layer 2 Control Packets

Configuring Service Filters

Configuring Simple Filters

Configuring Firewall Filters for Logical Systems

Configuring Accounting for Firewall Filters

Configuring Filter-Based Forwarding

Configuring Forwarding Table Filters

Configuring System Logging of Firewall Filter Operations

Introduction to Traffic Sampling, Forwarding, and Monitoring Overview

Traffic Sampling, Forwarding, and Monitoring Overview