Owner's Manual

467
Policy Options -> Policers
Policing, or rate limiting, lets you limit the amount of traffic that passes into or out of an interface.
It is an essential component of firewall filters that thwart denial-of-service (DoS) attacks. You can
define specific classes of traffic on an interface and apply a set of rate limits to each. You can use a
policer in one of two ways: as part of a filter configuration or as an individual policer statement that
applies to each family on an interface. After you have defined and named a policer, the application
stores it as a template. You can later use the same policer name to provide the same policer
configuration each time you use it. This eliminates the need to define the same policer values more
than once.
To make a policer, click the
Policer
node in Equipment Editor after you have selected the
appropriate device. The subsequent screen lets you configure the policer:
Figure 13-40. Policer Manager
Click
Export
to save a description of the listed items. Click
Add
or select an existing Policer and
click
Edit
. The
Policer Properties
and
Policer Actions
portions of the screen let you set policies and
actions for this policer. Here are the fields that appear: