Quantcast
Channel: All Ethernet Switching posts
Viewing all articles
Browse latest Browse all 10307

Re: Firewall filter to restrict traffic for one interface

$
0
0

Hi,

 

Just wish to clear some doubts.

_____________________________________________

by defalt the action is to discard

_____________________________________________

The default action in a term, i,e if no action is specified, is accept.

http://www.juniper.net/documentation/en_US/junos15.1/topics/concept/firewall-filter-ex-series-evaluation-understanding.html

 

The implicit rule however is implicit discard for firewall filters.

The issue here is certainly not the missing accept action. Quoting:

' I tried specifying "set then accept" to the NAS-Inbound-Allow term, and then I applied the filter to ge-0/0/5 again, but then I still can't ping the NAS'

 

Cheers,

Ashvin


Viewing all articles
Browse latest Browse all 10307

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>