cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
638
Views
0
Helpful
2
Replies

Why One to One Deny ICMP rule blocking all ICMP traffic for inside host ?

Haider Malik
Level 1
Level 1

Hello , I have created one to one deny rule for ICMP just for single inside host to block PING to 8.8.8.8 .

however the rule is blocking all ICMP traffic for this inside host .

I cant ping to any outside from this host 

Can you please explain what is wrong in this rule ? 

I have attached the screen shot . 

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

Once you add an ACL to an interface, you are also adding an implicit "deny any-any".

You need to add a "permit any-any" after the first ACL entry to override that behavior.

View solution in original post

2 Replies 2

Marvin Rhoads
Hall of Fame
Hall of Fame

Once you add an ACL to an interface, you are also adding an implicit "deny any-any".

You need to add a "permit any-any" after the first ACL entry to override that behavior.

You are always a supper hero here :) . Resolved 

Review Cisco Networking for a $25 gift card