<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic icmp issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574097#M602125</link>
    <description>&lt;PRE class="event"&gt;&lt;EM class="t"&gt;hello,&lt;BR /&gt;&lt;BR /&gt;I've an issue with the outside interface traffic. In the log server appears this error continuously:&lt;BR /&gt;&lt;BR /&gt;Deny&lt;/EM&gt; &lt;EM class="t"&gt;icmp&lt;/EM&gt; &lt;EM class="t"&gt;src&lt;/EM&gt; &lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;Internet&lt;/EM&gt;:&lt;EM class="t"&gt;213&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;221&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;90&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;107&lt;/EM&gt;&lt;/EM&gt; &lt;EM class="t"&gt;dst&lt;/EM&gt; &lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;inside&lt;/EM&gt;:&lt;EM class="t"&gt;212&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;6&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;X&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;X&lt;/EM&gt;&lt;/EM&gt; (&lt;EM class="t"&gt;type&lt;/EM&gt; &lt;EM class="t"&gt;3&lt;/EM&gt;, &lt;EM class="t"&gt;code&lt;/EM&gt; &lt;EM class="t"&gt;1&lt;/EM&gt;) &lt;EM class="t"&gt;by&lt;/EM&gt; &lt;EM class="t"&gt;&lt;EM class="t"&gt;access&lt;/EM&gt;-&lt;EM class="t"&gt;group&lt;/EM&gt;&lt;/EM&gt; "&lt;EM class="t"&gt;100&lt;/EM&gt;" [&lt;EM class="t"&gt;0x0&lt;/EM&gt;, &lt;EM class="t"&gt;0x0&lt;/EM&gt;]&lt;BR /&gt;&lt;BR /&gt;dst inside 212.6.X.X correspond to outside interface.&lt;BR /&gt;&lt;BR /&gt;&lt;EM&gt;In the acl number 100 only have a rule to access to the public web server. This ip is different than outside public interface.&lt;BR /&gt;&lt;BR /&gt;access-list 100 extended permit tcp any host 212.6.X.X eq https&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;&lt;BR /&gt;How I can fix this issue?&lt;BR /&gt;&lt;BR /&gt;thanks&lt;/EM&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;</description>
    <pubDate>Mon, 11 Mar 2019 18:48:24 GMT</pubDate>
    <dc:creator>Javi Benito</dc:creator>
    <dc:date>2019-03-11T18:48:24Z</dc:date>
    <item>
      <title>icmp issue</title>
      <link>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574097#M602125</link>
      <description>&lt;PRE class="event"&gt;&lt;EM class="t"&gt;hello,&lt;BR /&gt;&lt;BR /&gt;I've an issue with the outside interface traffic. In the log server appears this error continuously:&lt;BR /&gt;&lt;BR /&gt;Deny&lt;/EM&gt; &lt;EM class="t"&gt;icmp&lt;/EM&gt; &lt;EM class="t"&gt;src&lt;/EM&gt; &lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;Internet&lt;/EM&gt;:&lt;EM class="t"&gt;213&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;221&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;90&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;107&lt;/EM&gt;&lt;/EM&gt; &lt;EM class="t"&gt;dst&lt;/EM&gt; &lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;inside&lt;/EM&gt;:&lt;EM class="t"&gt;212&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;6&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;X&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;X&lt;/EM&gt;&lt;/EM&gt; (&lt;EM class="t"&gt;type&lt;/EM&gt; &lt;EM class="t"&gt;3&lt;/EM&gt;, &lt;EM class="t"&gt;code&lt;/EM&gt; &lt;EM class="t"&gt;1&lt;/EM&gt;) &lt;EM class="t"&gt;by&lt;/EM&gt; &lt;EM class="t"&gt;&lt;EM class="t"&gt;access&lt;/EM&gt;-&lt;EM class="t"&gt;group&lt;/EM&gt;&lt;/EM&gt; "&lt;EM class="t"&gt;100&lt;/EM&gt;" [&lt;EM class="t"&gt;0x0&lt;/EM&gt;, &lt;EM class="t"&gt;0x0&lt;/EM&gt;]&lt;BR /&gt;&lt;BR /&gt;dst inside 212.6.X.X correspond to outside interface.&lt;BR /&gt;&lt;BR /&gt;&lt;EM&gt;In the acl number 100 only have a rule to access to the public web server. This ip is different than outside public interface.&lt;BR /&gt;&lt;BR /&gt;access-list 100 extended permit tcp any host 212.6.X.X eq https&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;&lt;BR /&gt;How I can fix this issue?&lt;BR /&gt;&lt;BR /&gt;thanks&lt;/EM&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:48:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574097#M602125</guid>
      <dc:creator>Javi Benito</dc:creator>
      <dc:date>2019-03-11T18:48:24Z</dc:date>
    </item>
    <item>
      <title>Re: icmp issue</title>
      <link>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574098#M602126</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ICMP type 3, code 1 is an ICMP host unreachable packet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you would like the unreachable packet on your outside interface, you can configure the following:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;&lt;SPAN class="content"&gt;&lt;PRE&gt;&lt;STRONG class="cBold"&gt;icmp permit any unreachable outside&lt;BR /&gt;&lt;/STRONG&gt;&lt;SPAN class="cBold"&gt;&lt;BR /&gt;Hope that helps.&lt;/SPAN&gt;&lt;/PRE&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Oct 2010 11:31:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574098#M602126</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-10-01T11:31:15Z</dc:date>
    </item>
    <item>
      <title>Re: icmp issue</title>
      <link>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574099#M602127</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've configured this option and the issue persist.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Oct 2010 11:45:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574099#M602127</guid>
      <dc:creator>Javi Benito</dc:creator>
      <dc:date>2010-10-01T11:45:59Z</dc:date>
    </item>
    <item>
      <title>Re: icmp issue</title>
      <link>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574100#M602128</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;STRONG&gt;access-list 100 permit icmp any host&lt;EM&gt; &lt;/EM&gt;&lt;/STRONG&gt;&lt;EM class="t"&gt;&lt;STRONG&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;&lt;EM class="t"&gt;212&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;6&lt;/EM&gt;&lt;/EM&gt;.&lt;EM class="t"&gt;X&lt;/EM&gt;&lt;/EM&gt;.&lt;/STRONG&gt;&lt;EM class="t"&gt;&lt;STRONG&gt;X unreachable&lt;/STRONG&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/EM&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Oct 2010 11:59:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574100#M602128</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-10-01T11:59:26Z</dc:date>
    </item>
    <item>
      <title>Re: icmp issue</title>
      <link>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574101#M602129</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;now yes!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Oct 2010 06:01:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/icmp-issue/m-p/1574101#M602129</guid>
      <dc:creator>Javi Benito</dc:creator>
      <dc:date>2010-10-04T06:01:38Z</dc:date>
    </item>
  </channel>
</rss>

