03-01-2007 08:36 PM - edited 03-11-2019 02:40 AM
A one page description of the problem is attached with a sketch. The Firewall is not allowing access from a router that it should be by access rules. A sanitized version of the running cfg is also attached.
03-09-2007 05:46 AM
The following procedure shows the basic configuration required for this example. This procedure is similar to the configuration shown in " Basic Configuration Examples:
03-09-2007 06:40 AM
can you turn on your debug pings..usng debug icmp trace and then notice ICMP request hitting SMF01 from RT01 ?
I first want to make sure that the request is at least reaching the firewall...and then we can take it further...
03-09-2007 08:45 AM
I was able to see the ICMP build in the ASA SM-FW01 using ASDM live logging and then be torn down after the 2 sec timeout for ICMP.
BTW- The problem with the DB DMZ was not part of this - I caused it while trouble-shooting by redoing the routing and forgetting to replace the route to the SM-DBDMZ.
But I still can't ping the SM-FW01 from the EM-RT01 and it is mystifying me.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide