zito2000
asked on
Turn On Pings To External Interface
Hello,
I have a Cisco ASA FPR-2110. I am running ASA code and I'm using ASDM.
I have Pings blocked so external sources can't ping my WAN interface.
How do I, through ASDM, allow pings only to a certain set of public IP's?
I have a Cisco ASA FPR-2110. I am running ASA code and I'm using ASDM.
I have Pings blocked so external sources can't ping my WAN interface.
How do I, through ASDM, allow pings only to a certain set of public IP's?
We'll first you need to allow the pings from a host or network then DO THE DENY at the END like this
use the following command
Pete
icmp permit host 123.123.123.123 outside
icmp deny any outside
If you need to add one, then remove the deny, add the new ip/range, then add the deny again....no icmp deny any outside
icmp permit 123.123.123.0 255.255.255.0 outside
icmp deny any outside
How do you know if you got it right?use the following command
show run | incl icmp
And make sure the permits are BEFORE the deniesPete
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Otherwise, you will create rule in the ASDM on the outside interface to permit any to those IP's using the ICMP protocol.