PIX pinging

seem to recall that the PIX explicitly allows for ping to its interfaces, i.e. permit icmp inside any

what if at the same time i had this on an ACL that's applied to the inside interface: access-list in_acl deny icmp any any

which one takes precedence?

Reply to
Cen
Loading thread data ...

In article , Cen wrote: :seem to recall that the PIX explicitly allows for ping to its interfaces, :i.e. :permit icmp inside any

icmp permit any inside

:what if at the same time i had this on an ACL that's applied to the inside :interface: :access-list in_acl deny icmp any any

:which one takes precedence?

ACLs do not affect traffic *to* the PIX. in_acl would not be looked at in that situation.

Reply to
Walter Roberson

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.