ICMP Ping - Security Appliance Services - Question

Solved
NJNetworkGuy100
Getting noticed

ICMP Ping - Security Appliance Services - Question

Is this setting for only allowing certain public IPs to ping the MX through the WAN, or does this setting control internal LAN IPs that can ping the MX as well, like those local to the network or over the S2S VPN?  

1 Accepted Solution
ww
Kind of a big deal
Kind of a big deal

 

These fields control what services are available on the outside interface. When a service is set to "None", the appliance will not respond to requests of that type from the WAN. When it is set to "Any", it will respond to requests of that type from any source on the WAN. To specify certain IPs or IP subnets that the appliance should respond to, enter the IPs and/or CIDR subnets in a comma separated list

 

For local you need the L3 firewall.  For vpn the sts-vpn firewall

 

View solution in original post

2 Replies 2
ww
Kind of a big deal
Kind of a big deal

 

These fields control what services are available on the outside interface. When a service is set to "None", the appliance will not respond to requests of that type from the WAN. When it is set to "Any", it will respond to requests of that type from any source on the WAN. To specify certain IPs or IP subnets that the appliance should respond to, enter the IPs and/or CIDR subnets in a comma separated list

 

For local you need the L3 firewall.  For vpn the sts-vpn firewall

 

NJNetworkGuy100
Getting noticed

Thanks...the documentation doesn't specify the WAN interfaces, which is why I was a bit confused....MX Firewall Settings - Cisco Meraki

 

Just trying to get some clarity while we update our network setting standards.  

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels