[j-nsp] Firewall filter: Allow ISIS
Michael Lyngbøl
michael at lyngbol.dk
Wed Aug 27 14:31:16 EDT 2003
On 27.08.2003 12:06:42 +0000, Neil Stirling wrote:
> All,
>
> I'm being a little lazy, but need to know what parameter 'from' is set for
> matching all ISIS packets in a firewall filter.
> This is obviously applied to the lo0 interface.
>
> An OSPF example;
>
> term allow-ospf {
> from {
> source-address {
> 192.168.2.0/24;
> 192.168.3.0/24;
> }
> protocol ospf;
> }
> then accept;
> }
>
> There is NO 'protocol isis' or 'iso' in release 6.0R1.3.
As IS-IS isn't an IP protocol I'm not sure if you're able to filter
these kind of packets at all.
What are you trying to achieve?
/Michael
--
Michael Lyngbøl -- michael at lyngbol dot dk
Network Architect, AS3292 TDC, IP·backbone
More information about the juniper-nsp
mailing list