Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PIX 501 and ICMP 1

Status
Not open for further replies.

whocares23

Technical User
Oct 21, 2006
13
US
I want to stop the pix from responding to outside pings, etc. I've tried the following commands:
conduit deny icmp any any
access-list outside_access_in deny icmp any any
But the pix still responds. Anyone help a newbie? Thanks
 
Sorry, can't find how to edit posts. Also added:
access-group outside_acl in interface outside
 
Thanks for the reply. The "icmp deny any outside" works fine. I have a question though. The pix501 has v6.3(5) installed with a very basic config. Just enough to get internet access and assign a dhcp pool. Why wouldn't either:
"conduit deny icmp any any", or
"access-list outside_acl deny icmp any any
access-group outside_acl in interface outside" achive the same result? Are the access list statments wrong, and if so how? Why doesn't the conduit command work? Any insight would be appreciated. Thanks
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top