[j-nsp] Firewall filter: Allow ISIS

Michael Lyngbøl michael at lyngbol.dk
Wed Aug 27 14:31:16 EDT 2003


On 27.08.2003 12:06:42 +0000, Neil Stirling wrote:
> All,
> 
> I'm being a little lazy, but need to know what parameter 'from' is set for
> matching all ISIS packets in a firewall filter.
> This is obviously applied to the lo0 interface.
> 
> An OSPF example;
> 
> term allow-ospf {
>      from {
>       source-address {
> 	 192.168.2.0/24;
> 	 192.168.3.0/24;
>       }
>       protocol ospf;
>      }
>      then accept;
> }
> 
> There is NO 'protocol isis' or 'iso' in release 6.0R1.3.

As IS-IS isn't an IP protocol I'm not sure if you're able to filter
these kind of packets at all.

What are you trying to achieve?

/Michael

-- 
Michael Lyngbøl -- michael at lyngbol dot dk
Network Architect, AS3292 TDC, IP·backbone


More information about the juniper-nsp mailing list