<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Enable ICMP response on OUTSIDE interface based on DNS in ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399476#M308559</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well ICMP is always allowed but ISP normally have what is called stick DNS, so my question would be, do you want to restric IP address from reaching the ASA via ICMP and only allow the DNS hosting site&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Value our effort and rate the assistance!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 22 Nov 2013 03:57:19 GMT</pubDate>
    <dc:creator>jumora</dc:creator>
    <dc:date>2013-11-22T03:57:19Z</dc:date>
    <item>
      <title>Enable ICMP response on OUTSIDE interface based on DNS in ASA</title>
      <link>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399475#M308558</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have what I'm sure is a simple question, but is frustrating me.&amp;nbsp; I'd like to enable ICMP response on the outside interface of my ASA's to respond to ICMP traffic that is sent from a specific DNS address (an external monitoring service).&amp;nbsp; Any thoughts on how best to accomplish this?&amp;nbsp; Thanks in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Issue is the routable IP will change regularly, but the DNS address will remain the same.&amp;nbsp; A pool of IPs basically.&amp;nbsp; Thanks in advance,&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:07:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399475#M308558</guid>
      <dc:creator>rmcgurn</dc:creator>
      <dc:date>2019-03-12T03:07:22Z</dc:date>
    </item>
    <item>
      <title>Enable ICMP response on OUTSIDE interface based on DNS in ASA</title>
      <link>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399476#M308559</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well ICMP is always allowed but ISP normally have what is called stick DNS, so my question would be, do you want to restric IP address from reaching the ASA via ICMP and only allow the DNS hosting site&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Value our effort and rate the assistance!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Nov 2013 03:57:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399476#M308559</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2013-11-22T03:57:19Z</dc:date>
    </item>
    <item>
      <title>Enable ICMP response on OUTSIDE interface based on DNS in ASA</title>
      <link>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399477#M308560</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Ronan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So only ICMP responsed from outside from the Domain-Name of that host&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nah, I do not see this being possible on the ASA at the moment, you will need to use the IP pool as the only method to be restrictive.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate all of the helpful posts!!! &lt;BR /&gt; &lt;BR /&gt;Regards, &lt;BR /&gt; &lt;BR /&gt;Jcarvaja &lt;BR /&gt; &lt;BR /&gt;&lt;SPAN&gt;Follow me on &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://laguiadelnetworking.com"&gt;http://laguiadelnetworking.com&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Nov 2013 06:25:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399477#M308560</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-11-22T06:25:04Z</dc:date>
    </item>
    <item>
      <title>Enable ICMP response on OUTSIDE interface based on DNS in ASA</title>
      <link>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399478#M308561</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Need help????&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Value our effort and rate the assistance!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Nov 2013 05:32:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399478#M308561</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2013-11-23T05:32:34Z</dc:date>
    </item>
    <item>
      <title>Enable ICMP response on OUTSIDE interface based on DNS in ASA</title>
      <link>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399479#M308563</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;My sincere apologies for not replying sooner.&amp;nbsp; I've been away and unable to respond quicker.&amp;nbsp; Thank you very much for your quick answer.&amp;nbsp; Looks like IP Pool is the way to go in this case.&amp;nbsp; Once again, thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Nov 2013 19:08:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/enable-icmp-response-on-outside-interface-based-on-dns-in-asa/m-p/2399479#M308563</guid>
      <dc:creator>rmcgurn</dc:creator>
      <dc:date>2013-11-27T19:08:01Z</dc:date>
    </item>
  </channel>
</rss>

