Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: no ping reply |
|---|---|
| Date: | Mon, 27 Feb 2006 21:39:29 +0100 |
Hi Imran, Check to which interface your access-lists are mapped if you are using an ACL to allow the icmp ping with "show access-group", however you need to control the icmp traffic with "debug icmp trace" and make sure that the following rules are applied: Access from high security level to low security level needs only an access-list. Access from low security level to a high security level needs a NAT translation (static) + ACL. Do not forget to control the routing as well " show route". Regards, Jalal On 2/24/06, Albert Tuulas <albert@cubio.fi> wrote:
Do you have NAT rules configured? Seems to be NAT misconfigured. Albert What does 'show log' and 'debug icmp trace' give when you ping inside 192.168.1.1 from 192.168.1.2? AlbertI have cisco pix 501 firewall the ip of outside interface is 192.168.0.9 and inside interface is 192.168.1.1. i have opened icmp on outside and inside interfaces. Now when i ping 192.168.1.1 from a client having ip 192.168.1.2 no ping reply com how ever if i ping the router attached to the outside interface replys come. where is the problem?the securiting level of outside is 0 and inside is 100regards,imran imtiaz
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: layer 2&3 firewall/filter?, heitmann |
|---|---|
| Next by Date: | RE: no ping reply, Pablo Hauser |
| Previous by Thread: | RE: no ping reply, Pablo Hauser |
| Next by Thread: | RE: no ping reply, Pablo Hauser |
| Indexes: | [Date] [Thread] [Top] [All Lists] |