force-fbf-terms
Syntax
force-fbf-terms
Hierarchy Level
[edit system packet-forwarding-options firewall]
Description
When a firewall filter is configured with two terms; the first term without filter based forwarding action, and the second term with a filter based forwarding action, the packet is assigned the routing instance specified by the filter based forwarding action in the second term. This happens even if the first term is configured with a terminating action such as accept. Ideally, after the first term, the packet should terminate and not be procesed by the second term. But this is the default behavior - a firewall filter term that has a filter based forwarding action is always processed first, regardless of its order of placement.
You use force-fbf-terms
to change this default behavior. When
you apply this configuration, the firewall filter terms in a firewall are
always processed in the order of their placement in the configuration,
irrespective of whether a firewall filter term has a filter based forwarding
action.
Required Privilege Level
firewall – To view this statement in the configuration
firewall-control - To add this statement to the configuration
Release Information
Statement introduced in Junos OS Evolved Release 24.4R1