Re: [j-nsp] Firewall filters and bursting traffic

From: Sean Capshaw (scapshaw@yahoo.com)
Date: Fri Feb 02 2001 - 09:00:49 EST


Rich,

> I note that in 4.3 of the JunOs you can implement
> policing around the now
> inappropately named 'firewall filters'.

Policers are defined within the firewall filters
because of their flexibility. You can select which
traffic is passed to the policer based on any
combination of the match conditions of a filter.

>
> With this you state the bandwidth required and the
> burst size, but *not* the
> length of the burst. Does this mean that traffic is
> allowed to burst at a
> sustained rate for an indefinate period ?

No, burst-size-limit specifies bursts of data that
exceed the given bandwidth limit, but only up to a
total number of bytes given by this value.

You can look at the manual:

http://www.juniper.net/techpubs/

or a white paper on policing located at:

http://www.juniper.net/techcenter/

for more detail.

Thanks
Sean

__________________________________________________
Get personalized email addresses from Yahoo! Mail - only $35
a year! http://personal.mail.yahoo.com/



This archive was generated by hypermail 2b29 : Mon Aug 05 2002 - 10:42:40 EDT