i have gone mad chasing my tail with this icmp problem. I cannot ping any host outside with the pix nor can i ping any host once i VPN into the pix. I can connect to other services i just cannot ping. I have tried different scenarios using the ICMP command but i havent had any luck. I am going to post part of my config, if anyone has any suggestions plz feel free. Thanks!
here are my ACL's
access-list vpn; 1 elements
access-list vpn line 1 permit ip 192.168.0.0 255.255.255.224 192.168.1.0 255.255.255.224
access-list acl_inside; 16 elements
access-list acl_inside line 1 deny tcp any any eq 6667
access-list acl_inside line 2 deny udp any any eq 8998
access-list acl_inside line 3 deny udp any any eq 6667
access-list acl_inside line 4 deny udp any any eq 139
access-list acl_inside line 5 deny tcp any any eq 445
access-list acl_inside line 6 deny tcp any any eq 593
access-list acl_inside line 7 deny tcp any any eq 4444
access-list acl_inside line 8 deny tcp any any eq 138
access-list acl_inside line 9 deny udp any any eq netbios-dgm
access-list acl_inside line 10 deny tcp any any eq netbios-ssn
access-list acl_inside line 11 deny udp any any eq tftp
access-list acl_inside line 12 deny tcp any any eq 135
access-list acl_inside line 13 deny udp any any eq 135
access-list acl_inside line 14 deny tcp any any eq 137
access-list acl_inside line 15 deny udp any any eq netbios-ns
access-list acl_inside line 16 permit ip any any
access-list acl_outside; 8 elements
access-list acl_outside line 1 deny udp any any eq 99
access-list acl_outside line 2 deny udp any any eq 1434
access-list acl_outside line 3 deny tcp any any eq 6667
access-list acl_outside line 4 deny udp any any eq 6667
access-list acl_outside line 5 deny tcp any any eq 445
access-list acl_outside line 6 deny tcp any any eq 4444
access-list acl_outside line 7 deny tcp any any eq 593
access-list acl_outside line 8 permit ip any any
access-group acl_outside in interface outside
access-group acl_inside in interface inside
This is what i have for my ICMP statements
icmp permit any echo-reply outside
icmp permit any echo outside
here are my ACL's
access-list vpn; 1 elements
access-list vpn line 1 permit ip 192.168.0.0 255.255.255.224 192.168.1.0 255.255.255.224
access-list acl_inside; 16 elements
access-list acl_inside line 1 deny tcp any any eq 6667
access-list acl_inside line 2 deny udp any any eq 8998
access-list acl_inside line 3 deny udp any any eq 6667
access-list acl_inside line 4 deny udp any any eq 139
access-list acl_inside line 5 deny tcp any any eq 445
access-list acl_inside line 6 deny tcp any any eq 593
access-list acl_inside line 7 deny tcp any any eq 4444
access-list acl_inside line 8 deny tcp any any eq 138
access-list acl_inside line 9 deny udp any any eq netbios-dgm
access-list acl_inside line 10 deny tcp any any eq netbios-ssn
access-list acl_inside line 11 deny udp any any eq tftp
access-list acl_inside line 12 deny tcp any any eq 135
access-list acl_inside line 13 deny udp any any eq 135
access-list acl_inside line 14 deny tcp any any eq 137
access-list acl_inside line 15 deny udp any any eq netbios-ns
access-list acl_inside line 16 permit ip any any
access-list acl_outside; 8 elements
access-list acl_outside line 1 deny udp any any eq 99
access-list acl_outside line 2 deny udp any any eq 1434
access-list acl_outside line 3 deny tcp any any eq 6667
access-list acl_outside line 4 deny udp any any eq 6667
access-list acl_outside line 5 deny tcp any any eq 445
access-list acl_outside line 6 deny tcp any any eq 4444
access-list acl_outside line 7 deny tcp any any eq 593
access-list acl_outside line 8 permit ip any any
access-group acl_outside in interface outside
access-group acl_inside in interface inside
This is what i have for my ICMP statements
icmp permit any echo-reply outside
icmp permit any echo outside