We have a QFX5100 trying to protect it against NTP, SSH attacks, etc what ever filters we create does not seem to work. We have to block them at the routing level but its not so effective what do you guys do?
show configuration interfaces lo0
unit 0 {
family inet {
filter {
input protect-mngmt;
unit 0 {
family inet {
filter {
input protect-mngmt;