Allow NOOP packets through a ASA5505

Unanswered Question
Nov 24th, 2009

We have two private subnets protected with ASA5505s.  A poorly written application using ICMP and FTP produces NOOP packets and understandibly the Firewalls drop this traffic.  Is it possible to configure the ASA5505 temporarily to confirm the problem we have with the App?  I know its possible to configure a PIX for this.

Thanks, Ray

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Panos Kampanakis Tue, 11/24/2009 - 06:31

You can open up icmp in the inside and outisde ACLs to and from the ftp server and allow all ip traffic from the FT server.

Then disable the ftp and icmp inspection.

Try again to see if the app works.

I hope it helps.



This Discussion