You can add an access list to your interface going out to the Internet that blocks all ICMP messages, including ping.
Be carefull just stoping ping, by doing this, anyone that pings your public address will see that something is there, just blocking the reply, but they will get an acknowledgment that something is there..
The below one would block ping, but allow all other traffic.
#ip access-list extended STOP_PING #deny icmp any any #permit ip any any
then go into your outbound interfaced, and apply the access list with the command, #$ip access-group STOP_PING in
Just to add.... This would stop ping, but allow ALL OTHER TRAFFIC to cross your outside interface. I recommend gathering some information about what is a typical access list to set up for some basic security...
And also "no ip redirects" in global config mode should turn off ICMP packets
If I'm understanding your requirement correctly, then you simply want to block ping to the interface (let's say it's fa0/0:10.1.1.1/24). If you want to do this, and only this, then your acl will look like this:
ip access-list extended BLOCKPING
deny icmp any host 10.1.1.1 eq echo-reply
permit ip any any
ip access-group BLOCKPING in
This will block ping and ping ONLY (which according to your post is all you asked for). Using 'deny icmp any any' on an interface in both directions does block ping to the interface, but it also blocks pings, and any other ICMP messages that may or may not be needed to conduct business, to everything on the network configured to it. So, in a case like that hosts in the 10.1.1.0/24 network would also not be pingable.
Be careful with the ACLs, being too vague may give you more than you bargain for.
This is actually a pretty cool feature, i didn't even know it existed until I was looking for a solution to advertise a subnet (prefix in BGP talk), only if a certain condition existed. This is exactly what conditional advertisements does
j ai une question j ai achete un routeur cisco 887VA-k9 , je le configuré avec la configuration ci- dessous
si je le lier avec mon pc portable sur l un de ses ports directement ça marche toute est bien ( la connexion internet + m...
Attached policy provides CLI access to the Cisco 4G router over text messaging. Two files are in the attached .tar file:
2. PDF with instructions on how to load and use the .tcl file.