in mnf2 (same in mnf1)
 
the rules
 
ACCEPT "zone X" ------> fw     icmp   8
 
is non fonctionnal because in /etc/sysctl.conf
 
we have ever:
 
net.ipv4.icmp_echo_ignore_all = 1.
 
For allowed the ping to the fw, we must have: net.ipv4.icmp_echo_ignore_all = 0
 
Why in webgui, in "zones interfaces/interfaces configuration" the checkbox "noping" is not present ?
 
With the mnf1, i have configured net.ipv4.icmp_echo_ignore_all = 0 and i have checked "noping" on any zone
 
Thanx
 
VUILLET D
 
 

Reply via email to