Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

filter (Dynamic Firewalls)

Syntax

filter {adf {counter;input-precedence precedence;not-mandatory;output-precedence precedence;rule rule-value;}input filter-name {precedence precedence;shared-name filter-shared-name;}output filter-name {precedence precedence;shared-name filter-shared-name;}}

Hierarchy Level

[edit dynamic-profiles profile-name interfaces interface-name unit logical-unit-number family family],[edit dynamic-profiles profile-name interfaces demux0 unit logical-unit-number family family],[edit dynamic-profiles profile-name interfaces pp0 unit “$junos–interface–unit” family family]

Release Information

Statement introduced in Junos OS Release 9.2.

Support at the [edit dynamic-profiles profile-name interfaces pp0 unit “$junos-interface-unit” family family] hierarchy level introduced in Junos OS Release 10.1.

shared-name statement added in Junos OS Release 12.2.

Description

Apply a dynamic filter to an interface. You can configure filters for either family inet or family inet6, and the filters can be classic filters, fast update filters, or (for the adf statement) Ascend-Data-Filters. Only the Internet Protocol version 4 (IPv4) protocol family is currently supported for dynamic PPPoE logical interfaces.

Options

input filter-name—Name of one filter to evaluate when packets are received on the interface.

output filter-name—Name of one filter to evaluate when packets are transmitted on the interface.

The remaining statements are explained separately.

Required Privilege Level

interface—To view this statement in the configuration.

interface-control—To add this statement to the configuration.

Published: 2013-02-11