04-05-2023 10:44 PM - edited 04-05-2023 11:05 PM
Hello
Find the below diagram. There are 2 gateway on firewall. 192.168.13.1 and 192.168.15.1. Also there is default route from Core Switch to firepower and Static Route from Firepower to Core Switch which uses 10.1.1.1/30 Subnet. Problem I am facing is I am able to Ping 192.168.14.1,10,11 from 192.168.13.10 and vice versa, but unable to Ping 192.168.13.1(Gateway) from 192.168.14.10 also I am unable to Ping 192.168.15.1,10 from 192.168.13.10.
In ACP everything is ANY as for now.
04-05-2023 11:17 PM
This I think normal you can not ping any interface in FW accpet the interface that your host connect to.
This normal behavior no issue.
The most important is you can ping pass through fw.
04-05-2023 11:22 PM - edited 04-05-2023 11:24 PM
Thanks for your response. Any option to allow, I am using FDM for configuration like in ASA we use.
same-security-traffic permit inter-interface
same-security-traffic permit intra-interface
Also PC with IP 13.10 and 15.10 are able to ping their gateway. But 192.168.13.10 is unable to ping 15.10 and vice versa.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide