cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
479
Views
0
Helpful
7
Replies

IMCP Deny on oustide Interface

I have an ASA 5505. I need to ping from the inside interface 10.xx.70.1 to the outside xx.xxx.120.115. I have IGMP inspect going but still can not ping anything on the outside.

Can some one help me fix this

Thanks

mike

2 Accepted Solutions

Accepted Solutions

Hi, Mike

Could you show the configuration.

I think it would the easiest way to help.

View solution in original post

access-list group-in_1 extended permit icmp any any

View solution in original post

7 Replies 7

Have you configured NAT for the internal subnet 10.xx.70.0 ?

Yes I have. Everything seems to be working I just can't ping from the inside to any device on the outside.

Mike

Fernando_Meza
Level 7
Level 7

Hi,

I suggest to read the below article. It contains steps and configuration examples

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080094e8a.shtml#topic0

Hello,

Thanks for the link. I have ICMP inspection tured on but when I ping I get

"Deny ICMP src inside 10.xx.180.5 dst outside xxx.xx.120.125 (type 8, code 0) by "access group-in_1" from the ASA.

Thanks

Mike

Hi, Mike

Could you show the configuration.

I think it would the easiest way to help.

access-list group-in_1 extended permit icmp any any

Thant did it thanks.

Mike

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card