Solved

How do I stop my Cisco 837 replying to Pings?

Posted on 2004-04-05
3
425 Views
Last Modified: 2010-04-17
Hi,
   I've just setup my first Cisco router. It's an 837 ADSL router. I've got it up and running ok but I want to stop it replying to ICMP requests although I want to allow ICMP requests out. It's the first time I've touched a Cisco router although I'm aware that to set advanced settings you have to telnet into the router and use commands. I have managed to get into the privileged command sets but don't know the exact command I need to deny ICMP coming in. Any help would be greatly appreciated.

Thanks.
0
Comment
Question by:leehewson
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 

Expert Comment

by:zubijalal
ID: 10756827
Hi lee
See what you need to do is to apply an access list which will deny all your icmp traffic.
give this command in the config mode.you can enter the config mode by typing 'config ter' at the priviledged mode.
once you are in config mode give this command
access-list 101 deny icmp any any echo.
see if that works
regards

zubair
0
 
LVL 1

Accepted Solution

by:
roddie earned 125 total points
ID: 10757216
Lee,

You'll also need to apply the ACL that Zubair specified to the interface that you want to block pings on (assuming it's Dialer1 for this post) - More importantly, make sure you have a "permit ip any any" at the end, otherwise you'll deny everything.  This you're not denying "echo-reply", outbound pings should still work.

conf t
access-list 101 deny icmp any any echo
access-list 101 permit

interface Dialer 1
ip access-group 101 in

Good luck!

Roddie
0
 

Author Comment

by:leehewson
ID: 10757746
That's done the trick! Thanks a lot for your time and thoughts guys.
0

Featured Post

Flexible connectivity for any environment

The KE6900 series can extend and deploy computers with high definition displays across multiple stations in a variety of applications that suit any environment. Expand computer use to stations across multiple rooms with dynamic access.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
replacing 2811 to ISR 4331 2 77
BGP Local Preference 5 75
Access-List 15 58
can you connect modem to 2 routers 42 20
While it is possible to put two routes in place with the secondary having a higher metric, this may not always work. In the event of a failure that does not bring down the physical interface on the router the primary route is not removed. There is a…
This article is a guide to configure bridging on Cisco Routers.  This is something I never knew was possible until after making a few phone calls to Cisco.  Using bridging saved our company money by not requiring us to purchase a new switch.  Bridgi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

739 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question