Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

IMCP rediect - packet ignored

I am trying to ping a router from a switch thru a Firewall. All the appropriate routes are in place.

I am running debug in the PIX that I am pinging thru. I am pinging from inside to outside.

This is the error message I keep getting on the PIX when the PING fails:

ICMP echo-request from inside:172.16.1.7 to bhigw2 ID=5622 seq=1307 length=80

27: ICMP redirect (code 0, addr 69.0.0.164) 172.16.1.7 > 172.16.1.2 packet ignored

I am not sure why this packet is not allowed back in; I do not have any access-list in place on the PIX. PIX is supposed to by default allow connections from Higher Security interface to Lower Security interface...

Pls help

1 REPLY

Re: IMCP rediect - packet ignored

Hi,

Kindly explain more regarding your setup, with sample ip addresses.( inside address, outside address, switch, router details ...etc).

The PIX firewall doesn't allow/support ICMP redirect messages.

From where are you intiating the ping?

Provide complete details to help you out.

Basically You need to check the routing table entries, in your switch, pix and in the router and ensure that it is all properly configured and ensure that you are not running in to a situation which can cause ICMP redirects in your network to avoid this problem.

Hope this helps.

-VJ

136
Views
3
Helpful
1
Replies