The following match criteria are available using filter type packet-length in addition to the match criteria that are available using the filter type normal:
packet-length
Total packet length including both the IP header and payload for IPv4 and IPv6 ingress and egress filter policies
ttl or hop-limit
Match criteria available using FP4-based cards and ingress filter policies; if configured on FP2 or FP3-based cards, the ttl or hop-limit match criteria part of the filter entries are not programmed in the line card.
The following match criteria are not available for filter entries in a filter policy of type packet-length:
IPv4
dscp, ip-option, option-present, multiple-option, src-route-option
IPv6
flow-label
For a QoS policy assigned to the same service or interface endpoint on egress as a filter policy of type packet-length, QoS IP criteria cannot use dscp match criteria with no restriction to ingress.
This filter type is available for both ingress and egress on all service and router interfaces endpoints with the exception of video ISA, service templates, and PW templates.
Dynamic filter entry embedding using Openflow and VSD is not supported using this filter type.