<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco FTD ping VRF in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013635#M1108828</link>
    <description>&lt;P&gt;Are you trying to ping one of the FTD interfaces from another segment connected to another interface? if so, that won't work as none of the FTDs or ASAs allows this by design. Essentially, if you try to ping the outside interface from the inside network, or for instance from the inside segment to the DMZ interface, the ping will fail regardless of VRF.&lt;/P&gt;</description>
    <pubDate>Tue, 06 Feb 2024 15:49:52 GMT</pubDate>
    <dc:creator>Aref Alsouqi</dc:creator>
    <dc:date>2024-02-06T15:49:52Z</dc:date>
    <item>
      <title>Cisco FTD ping VRF</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013621#M1108826</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;pinging a VRF interface is not possible on FTD. Is this a feature?&lt;/P&gt;&lt;P&gt;Pinging from VRF to somewhere works, but if you try to ping a VRF from outside, it's dropped by "implicit rule"?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;Phase: 5
Type: ACCESS-LIST
Subtype:
Result: DROP
Elapsed time: 122 ns
Config:
Implicit Rule
Additional Information:

Drop-reason: (acl-drop) Flow is denied by configured rule, Drop-location: frame 0x0000xxxxxxx&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So this is a bit annoying if you want to troubleshoot ... any idea? Is there a way to enable "allow pinging vrf"?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2024 15:27:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013621#M1108826</guid>
      <dc:creator>D Le Wando</dc:creator>
      <dc:date>2024-02-06T15:27:48Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD ping VRF</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013635#M1108828</link>
      <description>&lt;P&gt;Are you trying to ping one of the FTD interfaces from another segment connected to another interface? if so, that won't work as none of the FTDs or ASAs allows this by design. Essentially, if you try to ping the outside interface from the inside network, or for instance from the inside segment to the DMZ interface, the ping will fail regardless of VRF.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2024 15:49:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013635#M1108828</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2024-02-06T15:49:52Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD ping VRF</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013643#M1108829</link>
      <description>&lt;P&gt;thats what I feared.&lt;BR /&gt;Thx for your fast reply&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2024 15:53:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-ping-vrf/m-p/5013643#M1108829</guid>
      <dc:creator>D Le Wando</dc:creator>
      <dc:date>2024-02-06T15:53:28Z</dc:date>
    </item>
  </channel>
</rss>

