interface-group (Decapsulate GRE)
Syntax
interface-group (0 -255)
Hierarchy Level
[edit firewall family family-name filter filter-name term term-name then decapsulate gre]
Description
Allows you to explicitly specify and add an interface group to packets after they have undergone GRE decapsulation. In releases prior to Junos OS Release 14.1, the interface group upon decapsulation was always 0 and could not be changed.
In Junos OS Release 14.1 and later, you can assign any arbitrary
value in the range of 1 to 255 to the packets’ interface-group
upon GRE decapsulation. For example, you could use this command
to retain the original interface from which the packet was received
(if no value is set, the default interface group is 0). You could
also use it to ensure that all decapsulated GRE packets are placed
in the same group, for example to trigger additional filtering in
the forwarding table on the basis of the this data from the inner
packet.
The value used in interface-group
is set after the
GRE packet is decapsulate by a filter action in a filter attached
to a given ingress interface.
Required Privilege Level
firewall—To view this statement in the configuration.
firewall-control—To add this statement to the configuration.
Release Information
Statement introduced in Junos OS Release 14.1 .