icmp replies are allowed back to corresponding icmp echos when you configure
inspect icmp.

Working of inspect ipsec can be found in the following link:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008045a2d2.shtml

With regards
Kings

On Tue, Jan 18, 2011 at 10:09 AM, kamran shakil <[email protected]>wrote:

> Dear Guys ,
>
> Just 2 simple questions to clarify for exam :
>
> Inspect ICMP and Inspect IPSEC-PASS-THRU
>
> I believe that for the above Inspect ICMP, the corresponding command is
> PERMIT ICMP ANY ANY  from outside->inside  , while Inspect IPSEC-PASS-THRU ,
> the corresponding command is esp any any and isakmp any any   ? am i right
> !!!
>
> If i am right ...then in the exam If it is NOT clearly mentioned or pointed
> out whether i should use Inspections for the above or ACLs as described
> above , which one shall i consider to be first choice , priority !
>
>
> Waiting for reply !
>
> regards and truly,
> *
> Kamran Shakil.*
>
>
> _______________________________________________
> For more information regarding industry leading CCIE Lab training, please
> visit www.ipexpert.com
>
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to