16.03.2014 Views

Policy Framework Configuration Guide - Juniper Networks

Policy Framework Configuration Guide - Juniper Networks

Policy Framework Configuration Guide - Juniper Networks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Table of Contents<br />

Configuring Flow Aggregation (cflowd) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 351<br />

Debugging cflowd Flow Aggregation . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 353<br />

Configuring Active Flow Monitoring Using Version 9 . . . . . . . . . . . . . . . . . . . . . . 354<br />

Example: Configuring Active Flow Monitoring Using Version 9 . . . . . . . . . . . 355<br />

Traffic Sampling Examples . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 355<br />

Example: Sampling a Single SONET/SDH Interface . . . . . . . . . . . . . . . . . . . . . . 355<br />

Example: Sampling All Traffic from a Single IP Address . . . . . . . . . . . . . . . . . . . 356<br />

Example: Sampling All FTP Traffic . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 357<br />

Chapter 15 Traffic Forwarding and Monitoring <strong>Configuration</strong> . . . . . . . . . . . . . . . . . . . . 359<br />

Configuring Traffic Forwarding and Monitoring . . . . . . . . . . . . . . . . . . . . . . . . . . 359<br />

Applying Filters to Forwarding Tables . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 363<br />

Configuring IPv6 Accounting . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 364<br />

Configuring Discard Accounting . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 364<br />

Configuring Flow Monitoring . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 366<br />

Configuring Next-Hop Groups . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 367<br />

Per-Flow and Per-Prefix Load Balancing Overview . . . . . . . . . . . . . . . . . . . . . . . 367<br />

Configuring Per-Prefix Load Balancing . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 368<br />

Configuring Per-Flow Load Balancing Based on Hash Values . . . . . . . . . . . . . . . 369<br />

Configuring Routers, Switches, and Interfaces as DHCP and<br />

BOOTP Relay Agents . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 369<br />

Configuring DNS and TFTP Packet Forwarding . . . . . . . . . . . . . . . . . . . . . . . . . . . 371<br />

Tracing BOOTP, DNS, and TFTP Forwarding Operations . . . . . . . . . . . . . . . 372<br />

Configuring the Log Filename . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 373<br />

Configuring the Number and Size of Log Files . . . . . . . . . . . . . . . . . . . . 373<br />

Configuring Access to the Log File . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 373<br />

Configuring a Regular Expression for Lines to Be Logged . . . . . . . . . . . 374<br />

Example: Configuring DNS Packet Forwarding . . . . . . . . . . . . . . . . . . . . . . . 374<br />

Preventing DHCP Spoofing on MX Series Ethernet Services Routers . . . . . . . . . 374<br />

Configuring Port Mirroring . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 375<br />

<strong>Configuration</strong> <strong>Guide</strong>lines . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 376<br />

Configuring Port Mirroring . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 377<br />

Configuring the Port-Mirroring Address Family and Interface . . . . . . . . 377<br />

Configuring Multiple Port-Mirroring Instances . . . . . . . . . . . . . . . . . . . . . . . . 377<br />

Configuring Port-Mirroring Instances . . . . . . . . . . . . . . . . . . . . . . . . . . . 378<br />

Associating a Port-Mirroring Instance on M320 Routers . . . . . . . . . . . . 378<br />

Associating a Port-Mirroring Instance on M120 Routers . . . . . . . . . . . . 379<br />

Configuring MX Series Ethernet Services Routers and M120 Routers to<br />

Mirror Traffic Only Once . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379<br />

Configuring Packet Capture . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379<br />

Chapter 16<br />

Summary of Traffic Sampling, Forwarding, and Monitoring<br />

<strong>Configuration</strong> Statements . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 383<br />

accounting . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 384<br />

aggregation . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 385<br />

autonomous-system-type . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 386<br />

bootp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 387<br />

cflowd . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 388<br />

cflowd (Discard Accounting) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 388<br />

cflowd (Flow Monitoring) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 389<br />

Copyright © 2010, <strong>Juniper</strong> <strong>Networks</strong>, Inc.<br />

xvii

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!