Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

Configuring Stateful Firewall Rules for 6rd Softwire

You must configure a stateful firewall rule for use with 6rd softwires. The stateful firewall service is used only to direct packets to the softwire, not for firewalling purposes. The 6rd softwire service itself must be stateless. To support stateless processing, you must include an allow term in both directions of the stateful firewall policy.

To include a stateful firewall rule for 6rd softwire processing:

  1. Assign a name to the rule.
    [edit services stateful-firewall]user@host# edit rule rule-name
  2. Specify the match direction.
    [edit services stateful-firewall rule-name]user@host# set match-direction input-output
  3. Assign a name for the term.
    [edit services stateful-firewall rule-name]user@host# edit term term-name
  4. Specify that all traffic in both directions should be accepted for the softwire process.
    [edit services stateful-firewall rule-name term term-name]user@host# set then accept

Published: 2013-08-29