EasyManuals Logo
Home>Juniper>Network Router>E Series

Juniper E Series Configuration Guide

Juniper E Series
212 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #80 background imageLoading...
Page #80 background image
JUNOSe 7.2.x Policy Management Configuration Guide
64 ! Applying Policy Lists to Interfaces and Profiles
Policy Commands
Use the commands described in this section to assign policy lists to interfaces.
atm policy
frame-relay policy
gre-tunnel policy
ip policy
ipv6 policy
mpls policy
l2tp policy
vlan policy
! Use to assign an ATM, Frame Relay, GRE tunnel, IP, IPv6, MPLS, or VLAN policy
list to an interface. Also use to specify an IP, IPv6, or L2TP policy list to a profile,
which then assigns the policy to the interfaces to which the profile is attached.
! Use the input or output keyword to assign the policy list to the ingress or
egress of the interface.
! For ATM, IP, and IPv6 policy lists, use the secondary-input keyword to assign
the policy list, after route lookup, to data destined for local or remote
destinations.
! For IP and IPv6 policy lists, use the secondary-input keyword to assign the
policy list, after route lookup, to data destined to local or remote destinations.
The router supports secondary input policies whose principal applications are:
! To defeat denial-of-service attacks directed at a router’s local IP or IPv6
stack
! To protect a router from being overwhelmed by legitimate local traffic
! To apply policies on packets associated with the route class
! You can enable or disable the recording of routing statistics for bytes and
packets affected by the policy.
! If you enable statistics, you can enable or disable baselining of the statistics.
The router implements the baseline by reading and storing the statistics at the
time the baseline is set and then subtracting this baseline whenever
baseline-relative statistics are retrieved.
NOTE: The mpls policy command is used to attach policies to MPLS Layer 2
circuits only.
NOTE: The SRP module Fast Ethernet port does not support policy attachments,
nor can the module be the destination for the forward next-hop, forward
next-interface, next-hop, and next-interface commands.
NOTE: The local-input keyword for the ip policy and ipv6 policy commands is
deprecated, and may be completely removed in a future release. We recommend
you remove the keyword should be removed from scripts.
Re-create any local input policies using the ip classifier-list local true command
and attaching the policies using the ip policy secondary-input command.

Table of Contents

Other manuals for Juniper E Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Juniper E Series and is the answer not in the manual?

Juniper E Series Specifications

General IconGeneral
BrandJuniper
ModelE Series
CategoryNetwork Router
LanguageEnglish

Related product manuals