Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Common Criteria Guide for vSRX3.0
Table of Contents Expand all
list Table of Contents
file_download PDF
{ "lLangCode": "en", "lName": "English", "lCountryCode": "us", "transcode": "en_US" }
English
keyboard_arrow_right

Understanding Protocol Support

date_range 13-Dec-23

Devices running Junos OS can be configured to perform stateful network traffic filtering on network packets using network traffic protocols and network fields as described in Table 1.

Table 1: Network Traffic Protocols and Fields

Protocol or RFC

Fields

ICMPv4 - RFC 792, Internet Control Message Protocol version 4

  • Type

  • Code

ICMPv6 - RFC 4443, Internet Control Message Protocol version 6

  • Type

  • Code

IPv4 - RFC 791, Internet Protocol

  • Source address

  • Destination address

  • Transport Layer Protocol

IPv6 - RFC 8200, Internet Protocol

  • Source address

  • Destination address

  • Transport Layer Protocol

TCP - RFC 793, Transmission Control Protocol

  • Source port

  • Destination port

UDP - RFC 768, User Datagram Protocol

  • Source port

  • Destination port

The following protocols are also supported on devices running Junos OS and are a part of this evaluation.

  • IPsec

  • IKE

  • SSH

The following protocols are supported on devices running Junos OS but are not included in the scope of this evaluation.

  • OSPF

  • BGP

  • RIP

The firewall filter terms are evaluated in the order in which they are configured. To configure the order of rule processing, see Firewall Filter Terms.

footer-navigation