Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


web-filtering (Logical System Security Feature Profile)


Hierarchy Level


Configures the Content Security Web filtering feature for logical systems. The Web filtering allows you to manage Internet usage by preventing access to inappropriate Web content. The potential policies conflict check of the Web filtering feature is independent of the content filtering, antivirus, and antispam features. You can also configure the default Content Security configuration for Web filtering feature profile. If you do not configure any option in the Web filtering feature profile, the values configured in the default Content Security configuration are applied.



Enables Enhanced Web Filtering (EWF) on the device.


A base filter is an object that contains a category-action pair for all categories defined in the category file.


Juniper enhanced block message settings.


Select a custom URL category list you created (custom objects) for filtering against.


Enter a custom message to be sent when HTTP requests are blocked.


Specify an action for the profile, for requests that experience internal errors in the Web filtering module.


Fallback settings helps the system how to handle errors.


Do not perform safe-search for Juniper enhanced protocol. Safe-search redirect supports HTTP only. Therefore it is not possible to generate a redirect response for HTTPS search URLs. Safe-search redirects can be disabled by using the CLI option no-safe-search.


Juniper enhanced quarantine custom message.


Juniper enhanced quarantine message settings.


Set server parameters by entering the server name or IP address.


Specify the action to be taken depending on the site reputation returned for all types of URLs whether it is categorized or uncategorized.


Enter a timeout limit for requests. Once this limit is reached, fail mode settings are applied.

  • Range: 1 through 1800


Enables Juniper Networks local URL filtering on the device.


Juniper local block message settings.


Web filtering websense redirect engine. Websense occasionally releases new EWF categories. EWF classifies websites into categories according to host, URL, or IP address and performs filtering based on the categories.


Type of Web filtering solution or URL filtering solution used by the device.

The remaining statements are explained separately. See CLI Explorer.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 18.3R1.

Support for configuration in tenant systems introduced in Junos OS Release 19.2R1.