11-14-2019 03:56 PM
Hi!
I am not sure if this belongs to this topic or to the network security, but It's a router, so I'll ask it here.
We have an ASR920 and would like to deny PING to the device from the outside.
Our problem when we ping the router, it shows the traffic is filtered instead of the "No reply"
Is there any way to change this? This way there is a way to figure out something is on that IP that filters the traffic, instead of straight dropping it.
Here is our ACL:
access-list 100 deny icmp any any echo access-list 100 permit ip any any
Thank you!
11-14-2019 04:26 PM
11-14-2019 07:56 PM - edited 11-14-2019 07:57 PM
It is applied to a BDI interface
interface BDI1 ip access-group 100 in
11-17-2019 10:45 AM
Any suggestions?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide