cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
293
Views
0
Helpful
1
Replies

PIX Rule Question

jonchill
Level 1
Level 1

We have recently installed a couple of PIX and I want our management station to ping the route on the outside of the PIX.

I setup a rule to allow ICMP from the NMS to the router and then a echo reply from the route to the NMS but it does not seem to work and I don't know why.

Please can someone give me an idea of what the correct rules should be to allow me to achieve the above?

Thanks

1 Reply 1

mostiguy
Level 6
Level 6

A PIX will allow all icmp traffic directed at its interfaces by default. It will block all ICMP traffic through it by default.

It sounds like you are pinging from behind a pix to a router in front of the pix. The pix will need to allow icmp echo requests and replies inbound and outbound. What access lists exist on the outside interface of the pix, as well as the pix interface to which the NMS is connected? How do they impact ICMP traffic?

Review Cisco Networking for a $25 gift card