cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
876
Views
4
Helpful
3
Replies

traceroute through firewalls

carl_townshend
Spotlight
Spotlight

Hi all, can anyone tell me why when I traceroute through my firewall, I cannot see the ip, what do i need to enable on my asa so you can see it as a hop ?

3 Replies 3

singhsaju
Level 4
Level 4

Hi Carl,

By default firewall interface does not respond to ping,traceroute(icmp pkts) being security device . However, you can configure its interfaces to respond to icmp .

enable following commands:

icmp permit any outside

icmp permit any inside

HTH

Saju

Pls rate helpful posts

is that part of an access list or seperate commands? and why do you need to do it on the inside , does the inside not respond to ping by default, i can normally ping the inside by default

no they are just commands . Just input those commands when you are in config mode.

check your config , maybe its already enabled for inside interface.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card