EasyManuals Logo
Home>Juniper>Network Router>E Series

Juniper E Series Configuration Guide

Juniper E Series
212 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #86 background imageLoading...
Page #86 background image
JUNOSe 7.2.x Policy Management Configuration Guide
70 ! Applying Policy Lists to Interfaces and Profiles
Referenced by profile(s):
No profile references
Example 2 In this example, the Ascend-Data-Filter attribute is used to create RADIUS records
that configure two policies. The first policy is an input policy that filters all TCP
packets that come from a port greater than 9000 on host 10.2.1.1 and that go to
any destination. The second policy is an output policy that filters all UDP packets
from network 20.1.0.0 to host 10.2.1.1, port 3090.
Ascend-Data-Filter = "01000100 0A020101 00000000 20000600 23280000 03000000"
Ascend-Data-Filter = "01000000 14010000 0A020101 10201100 00000C12 00020000"
Using the show classifier-list and show policy-list commands produces the
following information about the new policies:
host1#show classifier-list
Classifier Control List Table
---------- ------- ---- -----
IP clin_6.1 tcp 10.2.1.1 gt 9000 any
IP clout_6.1 udp 20.1.0.0 0.0.255.255 10.2.1.1 eq 3090
host1#show policy-list
Policy Table
------ -----
IP Policy plin_6
Administrative state: enable
Reference count: 1
Classifier control list: clin_6_00, precedence 100
filter
Referenced by interface(s):
ATM4/0.0 input policy, statistics enabled, virtual-router default
Referenced by profile(s):
No profile references
IP Policy plout_6
Administrative state: enable
Reference count: 1
Classifier control list: clout_6_5, precedence 100
filter
Referenced by interface(s):
ATM4/0.0 output policy, statistics enabled, virtual-router default
Referenced by profile(s):
No profile references
Example 3 This example creates an input policy and an output policy, each with multiple rules.
The rules for the two policies are shown in the following list:
! Input policy rules
! Forward all TCP packets from host 10.2.1.1 to destination 20.0.0.0
0.255.255.255.
! Filter all TCP packets from host 10.2.1.1 to any destination.

Table of Contents

Other manuals for Juniper E Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Juniper E Series and is the answer not in the manual?

Juniper E Series Specifications

General IconGeneral
BrandJuniper
ModelE Series
CategoryNetwork Router
LanguageEnglish

Related product manuals