Rate and give feedback:
Feedback Received. Thank You!
[edit access] Configuration Statement Hierarchy on EX Series
Switches
This topic lists supported and unsupported configuration
statements in the [edit access] hierarchy level on EX Series
switches.
- Supported statements are those that
you can use to configure some aspect of a software feature on the
switch.
- Unsupported statements are those
that appear in the command-line interface (CLI) on the switch, but
that have no effect on switch operation if you configure them.
- Not all features are supported on all switch platforms.
For detailed information about feature support on specific EX Series
switch platforms, see EX Series Switch Software Features Overview.
This topic lists:
Supported Statements in the [edit access] Hierarchy Level
The following hierarchy shows the [edit access] configuration statements supported on EX Series switches:
access {address-assignment {abated-utilization;abated-utilization-v6;high-utilization;high-utilization-v6;neighbor-discovery-router-advertisement;pool name {family {inet {dhcp-attributes {boot-file filename;boot-server server-address;domain-name domain-name;grace-period seconds;maximum-lease-time (length | infinite);name-server ip-address;netbios-node-type (b-node | h-node | m-node | p-node);option option-identifier-code;option-match {option-82 {circuit-id match-value;remote-id match-value;}}router ip-address;server-identifier;tftp-server;wins-server ip-address;}host;network;range;xauth-attributes;}inet6 {dhcp-attributes;prefix;range;}}link name {family {inet;inet6;}}}}address-pool pool-name {address address-or-prefix;address-range <low lower-limit> <high upper-limit>;}address-protection;domain {delimiter characters;map name {aaa-logical-system name {aaa-routing-instance;}aaa-routing-instance aaa-routing-instance;access-profile;address-pool;dynamic-profile;padn destination-ip-address;strip-domain;target-logical-system;target-routing-instance;}parse-direction (left-to-right | right-to-left);}domain-name-server address;domain-name-server-inet address;domain-name-server-inet6 address;group-profile;gx-plus {global {include-ipv6;max-outstanding-requests;}partition {destination-host;destination-realm;diameter-instance;}}ldap-options {assemble {common-name name;}base-distinguished-name name;revert-interval seconds;search {admin-search {distinguished-name name;password password;}search-filter filter;}}ldap-server address {port number;retry number;routing-instance routing-instance;source-address address;timeout seconds;}ppp-options; profile profile-name {accounting {accounting-stop-on-access-deny;accounting-stop-on-failure;coa-immediate-update;duplication;immediate-update;order (radius | none);statistics (time | volume-time);wait-for-acct-on-ack;}accounting-order (radius | [accounting-order-data-list]);address-assignment {pool;}authentication-order [(ldap | none | password | radius | secureid)];authorization-order (jsrc | [authorization-order-data-list]);client client-name {chap-secret chap-secret;client-group;firewall-user {password password;}ike; no-rfc2486;pap-password password;}client-name-filter {count number;domain-name name;separator character;}domain-name-server;domain-name-server-inet;domain-name-server-inet6;ldap-options {assemble {common-name name;}base-distinguished-name name;revert-interval seconds;search {admin-search {distinguished-name name;password password;}search-filter filter;}}ldap-server address {port number;retry number;routing-instance routing-instance;source-address address;timeout seconds;}provisioning-order {gx-plus;jsrc;}radius {accounting-server [server-addresses];attributes {exclude [exclude-options];ignore [ignore-options];}authentication-server [server-addresses];options {accounting-session-id-format (decimal | description);client-accounting-algorithm (direct | round-robin);client-authentication-algorithm (direct | round-robin);coa-dynamic-variable-validation;ethernet-port-type-virtual;interface-description-format {exclude-adapter;exclude-sub-interface;}juniper-dsl-attributes;nas-identifier nas-identifier;nas-port-extended-format {adapter-width adapter-width;ae-width ae-width;port-width port-width;slot-width slot-width;stacked-vlan-width stacked-vlan-width;vlan-width vlan-width;}nas-port-id-delimiter nas-port-id-delimiter;nas-port-id-format {agent-circuit-id;agent-remote-id;interface-description;nas-identifier;}nas-port-type {ethernet;}revert-interval seconds;vlans-nas-port-stacked-format;}}radius-server address {max-outstanding-requests max-outstanding-requests;port port-number;retry retry;routing-instance instance-name;secret secret;source-address address;timeout seconds;}service {accounting-order {activation-protocol;radius;}}session-options {client-group [group-names];client-idle-timeout minutes;client-session-timeout minutes;}}radius-options {interim-rate number;interim-update-tolerance interim-update-tolerance;request-rate number;revert-interval interval;}radius-server server-address {accounting-port port-number;max-outstanding-requests number;port port-number;retry attempts;routing-instance instance-name;secret password;source-address address;timeout seconds;}securid-server server-name{configuration-file file-path;}terminate-code {}} Unsupported Statements in the [edit access] Hierarchy Level
All statements in the [edit access] hierarchy level
that are displayed in the command-line interface (CLI) on the switch
are supported on the switch and operate as documented with the following
exceptions:
Table 1: Unsupported
[edit access] Configuration Statements on EX Series Switches
Statement | Hierarchy Level |
---|
Note:
Variables, such as filename, are not shown
in the statements or hierarchies listed below. |
aaa | [edit access terminate-code] |
administrative-reset | [edit access terminate-code aaa shutdown] |
authentication-denied | [edit access terminate-code aaa deny] |
client-request | [edit access terminate-code aaa dhcp] |
compliance | [edit access ppp-options] |
deny | [edit access terminate-code aaa] |
dhcp | [edit access terminate-code] |
group-profile | [edit access] |
ike | [edit access profile client] |
initiate-dead-peer-detection | [edit access profile client ike] |
lost-carrier | [edit access terminate-code dhcp] |
nak | [edit access terminate-code dhcp] |
nas-logout | [edit access terminate-code dhcp] |
no-offers | [edit access terminate-code dhcp] |
no-resources | [edit access terminate-code aaa deny] |
ppp-options | [edit access] |
preference | [edit access profile client ike reverse-route] |
remote-reset | [edit access terminate-code aaa shutdown] |
rfc | [edit access ppp-options compliance] |
reverse-route | [edit access profile client ike] |
server-request-timeout | [edit access terminate-code aaa deny] |
shutdown | [edit access terminate-code aaa] |
terminate-code | [edit access] |
Published: 2014-04-23