Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


appfw-profile (System)


Hierarchy Level


Specify the application firewall profile quota of a logical system and tenant systems.

As a primary administrator, you can create a security profile and specify the kinds and amounts of resources that are to be allocated to a logical system to which the security profile is bound. A security profile is used for share the device resources, including policies, zones, addresses and address books, flow sessions, and various forms of NAT, among all the logical systems appropriately. You can dedicate various amounts of a resource to the logical systems and also allow the logical systems to compete for use of the free resources.


  • maximum amount—Specify the maximum allowed quota value.

    Range: 0 through 1024

  • reserved amount—Specify a reserved quota value that guarantees that the resource amount specified is always available to the logical system.

Required Privilege Level

system—To view this statement in the configuration.

system-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 11.4.

The edit tenant tenant-name security application-firewall level is introduced in Junos OS Release 18.4R1.