target
Syntax
target (destination-address
| service | source-address | source-zone | zone-service);
Hierarchy Level
[edit security idp idp-policy policy-name rulebase-ips rule rule-name then ip-action]
Release Information
Statement introduced in Release 9.2 of Junos OS.
Description
Specify the blocking options that you want to set to block the future connections. Blocking options can be based on the following matches of the attack traffic:
Options
- destination-address—Matches traffic based on the destination address of the attack traffic.
- service—For
TCP and UDP, matches traffic based on the source address, source port,
destination address, and destination port of the attack traffic. This
is the default.
For ICMP flows, the destination port is 0. Any ICMP flow matching source port, source address, and destination address is blocked.
- source-address—Matches traffic based on the source address of the attack traffic.
- source-zone—Matches traffic based on the source zone of the attack traffic.
- zone-service—Matches traffic based on the source zone, destination address, destination port, and protocol of the attack traffic.
Usage Guidelines
For configuration instructions and examples, see the Junos OS Security Configuration Guide.
Required Privilege Level
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.
Hide Navigation Pane
Show Navigation Pane
Download
SHA1