16.03.2014 Views

Policy Framework Configuration Guide - Juniper Networks

Policy Framework Configuration Guide - Juniper Networks

Policy Framework Configuration Guide - Juniper Networks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 9: Firewall Filter <strong>Configuration</strong><br />

• Source address—Source IP address in the packet.<br />

• Destination address—Destination IP address in the packet.<br />

NOTE: If the protocol is ICMP, the ICMP type and code are displayed. For<br />

all other protocols, the source and destination ports are displayed.<br />

The last two fields (both zero) are the source and destination TCP/UDP ports, respectively,<br />

and are shown for TCP or UDP packets only. This log message indicates that only one<br />

packet for this match has been detected in about a one-second interval. If packets arrive<br />

faster, the system log function compresses the information so that less output is<br />

generated, and displays an output similar to the following:<br />

root@hostname> show log filter<br />

Mar 20 08:08:45 hostname feb FW: so-0/1/0.0 A icmp 192.168.207.222<br />

192.168.207.223 0 0 (515 packets)<br />

Copyright © 2010, <strong>Juniper</strong> <strong>Networks</strong>, Inc.<br />

275

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!