Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

Statement Hierarchy for Configuring Interface-Specific Firewall Filters

To enable interface-specific instances for stateless firewall filters, include the interface-specific statement in the filter filter-name or service-filter service-filter-name stanza. Any counters specified as actions in an interface-specific filter are maintained separately per filter instance. Any policers specified as actions in an interface-specific filter are applied per filter instance.

firewall {family family-name {(filter filter-name | service-filter service-filter-name) {...interface-specific;...term term-name {from {match-conditions;}then {count counter-name;policer policer-name;}}...}}]

You can include the firewall configuration at one of the following hierarchy levels:

  • [edit]
  • [edit logical-systems logical-system-name]

Published: 2013-08-28