[j-nsp] solution to a firewall question

Ben Dale bdale at comlinx.com.au
Sun Apr 26 18:25:56 EDT 2015



Hi Vijesh,

On 24 Apr 2015, at 1:18 am, Vijesh Chandran <vijesh at juniper.net> wrote:

> Hi all,
>  I am wondering if we have a solution to this issue.
>  I need two firewall attached to an interface as input-list. e.g.: f1 and f2.
>  Input-list [f1 f2]
>  f1 to match a condition (all tcp port 80) and accept and count that packet.
>  f2 to classify those packets based on code points and push to a forwarding class. Is this possible?
> 
> -Thanks,
> Vijesh
> 

If f2 is only matching on code-points, is there any reason you can't just use a class-of-service classifier instead for this functionality?

Cheers,

Ben



More information about the juniper-nsp mailing list