09-11-2008 12:06 PM - edited 03-06-2019 01:19 AM
Hi all, can anyone tell me why when I traceroute through my firewall, I cannot see the ip, what do i need to enable on my asa so you can see it as a hop ?
09-11-2008 12:12 PM
Hi Carl,
By default firewall interface does not respond to ping,traceroute(icmp pkts) being security device . However, you can configure its interfaces to respond to icmp .
enable following commands:
icmp permit any outside
icmp permit any inside
HTH
Saju
Pls rate helpful posts
09-11-2008 12:26 PM
is that part of an access list or seperate commands? and why do you need to do it on the inside , does the inside not respond to ping by default, i can normally ping the inside by default
09-11-2008 12:31 PM
no they are just commands . Just input those commands when you are in config mode.
check your config , maybe its already enabled for inside interface.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: