04-30-2013 07:48 AM - edited 03-11-2019 06:36 PM
Dear All,
I have a problem with the configuration of the ACL of my ASA 5505 router.
However, the syntax seems okay
access-list 121 extended deny icmp 192.168.0.0 255.255.255.0 any
Thanks for your help
04-30-2013 07:50 AM
Hi,
Could you clarify a bit more.
What exactly is the problem? What are you trying to do and what is not working?
- Jouni
04-30-2013 08:30 AM
Hi,
After configuring the router, I like to focus on configuring ACLs.
To test my ACL I wanted to block the ping on the network, however it did not work.
PCs on the network can still do PING
Aï-Tany
04-30-2013 09:35 AM
Hi,
Its hard to say when I cant see your whole configuration.
Have you attached the ACL to an interface on the ASA?
access-group 102 in interface
Only then the ACL will have some effect on the traffic. Though remember to allow other traffic in the SAME ACL. Otherwise you will block all traffic from behind the interface to which you attach this ACL.
However this ACL wont block ICMP between the hosts on the same network naturally.
- Jouni
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide