cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
7190
Views
3
Helpful
5
Replies

ACE - Ping to Server-Side interface

stevek1
Level 1
Level 1

Hi Folks,

I have a problem whereby I need to allow my real servers to ping the Server-Side ACE interface. Is this explicitly denied? I have the VIP up and running OK but my server can't ping the Server-Side interface (which is it's gateway).

Thanks in advance,

SteveK.

2 Accepted Solutions

Accepted Solutions

Your management policy is not configured under server side vlan

Do the following and you are good to go

interface vlan 56

service-policy input REMOTE_MGMT_ALLOW_POLICY

Thanks

Syed Iftekhar Ahmed

View solution in original post

I think You should apply policy REMOTE_MGMT_ALLOW_POLICY to interface vlan 56 or globally.

Currently it's only applied to vlan 55 which is the client side interface.

If You don't want telnet/ssh access from server side, then You need to prepare another class and policy with only icmp traffic allowed.

View solution in original post

5 Replies 5

jleszewski
Level 1
Level 1

You probably didn't configure management type policy or didn't include icmp traffic there.

Or didn't apply this policy to appropriate interface or globally.

Thanks for the response Kuba.

I've attached the config for you - can you see what the cause is?

SteveK.

Your management policy is not configured under server side vlan

Do the following and you are good to go

interface vlan 56

service-policy input REMOTE_MGMT_ALLOW_POLICY

Thanks

Syed Iftekhar Ahmed

I think You should apply policy REMOTE_MGMT_ALLOW_POLICY to interface vlan 56 or globally.

Currently it's only applied to vlan 55 which is the client side interface.

If You don't want telnet/ssh access from server side, then You need to prepare another class and policy with only icmp traffic allowed.

Thanks Kuba and Syed,

Your speedy response was most helpful.

Cheers, SteveK.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: