Technical Documentation

simple-filter (Configuring)

Syntax

simple-filter filter-name {term term-name {from {match-conditions;}then {forwarding-class class-name;loss-priority (high | low | medium);}}}

Hierarchy Level

[edit firewall family inet filter filter-name]

Release Information

Statement introduced in JUNOS Release 7.6.

Description

Define a simple filter. Simple filters are recommended for metropolitan Ethernet applications.

Options

from—Match packet fields to values. If the from option is not included, all packets are considered to match and the actions and action modifiers in the then statement are taken.

match-conditions—One or more conditions to use to make a match. The conditions are described in the JUNOS Policy Framework Configuration Guide.

term-name—Name that identifies the term. The name can contain letters, numbers, and hyphens (-), and can be up to 255 characters long. To include spaces in the name, enclose it in quotation marks (“ ”).

then—Actions to take on matching packets. If the then option is not included and a packet matches all the conditions in the from statement, the packet is accepted.

The remaining statements are explained separately. Only forwarding-class and loss-priority are valid in a simple filter configuration.

Usage Guidelines

See Configuring Multifield Classifiers; for a general discussion of this statement, see the JUNOS Policy Framework Configuration Guide.

Required Privilege Level

firewall—To view this statement in the configuration.

firewall-control—To add this statement to the configuration.


Published: 2010-04-14