16.03.2014 Views

Policy Framework Configuration Guide - Juniper Networks

Policy Framework Configuration Guide - Juniper Networks

Policy Framework Configuration Guide - Juniper Networks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Junos 10.4 <strong>Policy</strong> <strong>Framework</strong> <strong>Configuration</strong> <strong>Guide</strong><br />

Table 35: Firewall Filter Actions (continued)<br />

Action<br />

Description<br />

sample<br />

(Family inet, inet6, and mpls only) Sample the packets.<br />

service-accounting<br />

(Family inet and inet6 only) Count the packet under a positive match condition. The count is applied to a<br />

specific named counter (__junos-dyn-service-counter) that RADIUS can obtain.<br />

service-filter-hit<br />

(Family inet and inet6 only) Indicate to subsequent filters in the chain that the packet was already processed.<br />

This action, coupled with the service-filter-hit match condition in receiving filters, helps to streamline filter<br />

processing.<br />

syslog<br />

Log the packet to the system log file.<br />

three-color-policer<br />

policer-name<br />

Apply rate limits to the traffic using the tricolor marking policer.<br />

You cannot also configure the loss-priority action modifier for the same firewall filter term. These two<br />

action modifiers are mutually exclusive.<br />

topology<br />

topology-name<br />

(Family inet and inet6 only) Specify a topology to which packets are forwarded.<br />

230<br />

Copyright © 2010, <strong>Juniper</strong> <strong>Networks</strong>, Inc.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!