11-14-2019 03:56 PM
Hi!
I am not sure if this belongs to this topic or to the network security, but It's a router, so I'll ask it here.
We have an ASR920 and would like to deny PING to the device from the outside.
Our problem when we ping the router, it shows the traffic is filtered instead of the "No reply"
Is there any way to change this? This way there is a way to figure out something is on that IP that filters the traffic, instead of straight dropping it.
Here is our ACL:
access-list 100 deny icmp any any echo access-list 100 permit ip any any
Thank you!
11-14-2019 04:26 PM
11-14-2019 07:56 PM - edited 11-14-2019 07:57 PM
It is applied to a BDI interface
interface BDI1 ip access-group 100 in
11-17-2019 10:45 AM
Any suggestions?
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: