Has anyone came across issues with icmps on the ASA running on the 8.3 (1) code? I've been trying get inside hosts to ping external hosts but coming back as no replies?
I've made changes to the inbound access-list and even turned off "inspect icmp" but have been unsuccessful so far. Outbound www's work fine.
Attached is a sample config.
I tried your configuration on one of my test firewalls and I did not have any trouble getting ICMP through it. My test device was 5510 though. One possibility for this behavior could be that you are exceeding the host limit on the ASA (if you have base license). Can you post the output of "show xlate count" and "show conn count" here?
Your config looks correct. I think it's the packet tracer command that is giving you the trouble. You specified the packet as type 0, code 8 when really the the packet inbound on the inside interface should be type 8, code 0 (echo request). If you swap those numbers around on the packet tracer the packet should be allowed.
Have you tried pinging a host on the outside from a host on the inside since you started making config changes? You should be seeing replies. If not, I would suggest setting up a capture like this:
capture capin int inside match icmp any any
capture capout int outside match icmp any any
Take a look at the captures and see if the ICMP packets are reaching the ASA.
Hope that helps.