11-20-2013 11:14 AM - edited 03-11-2019 08:07 PM
Hello All,
I have what I'm sure is a simple question, but is frustrating me. I'd like to enable ICMP response on the outside interface of my ASA's to respond to ICMP traffic that is sent from a specific DNS address (an external monitoring service). Any thoughts on how best to accomplish this? Thanks in advance.
Issue is the routable IP will change regularly, but the DNS address will remain the same. A pool of IPs basically. Thanks in advance,
Solved! Go to Solution.
11-21-2013 10:25 PM
Hello Ronan,
So only ICMP responsed from outside from the Domain-Name of that host
Nah, I do not see this being possible on the ASA at the moment, you will need to use the IP pool as the only method to be restrictive.
Rate all of the helpful posts!!!
Regards,
Jcarvaja
Follow me on http://laguiadelnetworking.com
11-21-2013 07:57 PM
Well ICMP is always allowed but ISP normally have what is called stick DNS, so my question would be, do you want to restric IP address from reaching the ASA via ICMP and only allow the DNS hosting site
Value our effort and rate the assistance!
11-21-2013 10:25 PM
Hello Ronan,
So only ICMP responsed from outside from the Domain-Name of that host
Nah, I do not see this being possible on the ASA at the moment, you will need to use the IP pool as the only method to be restrictive.
Rate all of the helpful posts!!!
Regards,
Jcarvaja
Follow me on http://laguiadelnetworking.com
11-22-2013 09:32 PM
Need help????
Value our effort and rate the assistance!
11-27-2013 11:08 AM
My sincere apologies for not replying sooner. I've been away and unable to respond quicker. Thank you very much for your quick answer. Looks like IP Pool is the way to go in this case. Once again, thank you.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide