01-31-2019 06:53 AM - edited 02-21-2020 08:44 AM
I am trying to get traceroute to work from my internal network to the Internet through a FTD2110 managed by FMC running 6.2.3 code
I created an access policy allowing ICMP type 3 and 11 from the outside to the inside. I added ICMP permit statements in the Platform Settings for the device (3 and 11 on the outside interface to any-ipv4).
I also added the Flex config statement to decrement the TTL
But this still isn't working. Is this a bug? Unsupported?
Solved! Go to Solution.
05-31-2024 04:26 AM
icmp permit any time-exceeded <your outside interface name> icmp permit any unreachable <your outside interface name>
How did you enabled this in FDM can't find?
05-31-2024 08:56 AM
This can be done in FDM using a Flexconfig object and policy:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide