Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
ICMP is a network layer protocol (ICMP has its own protocol number in the header, IP protocol
number 1). It does not rely on TCP or UDP.
Echo is simply call a 'ping'. The Echo Reply is the 'ping reply'. ICMP Echo's are used for
Network troubleshooting.
ICMP traffic is critical network traffic, but it can also cause security issues if used against your
network by a malicious attacker.
Router#conf t
Router(config)#hostname GW
GW(config)#interface fastEthernet 0/0
GW(config-if)#ip address 103.13.148.1 255.255.255.240
GW(config-if)#no shutdown
GW(config-if)#exit
GW(config)#interface fastEthernet 0/1
GW(config-if)#ip address 172.16.10.1 255.255.255.0
GW(config-if)#no shutdown
GW(config-if)#exit
ISP#conf t
ISP(config)#interface fastEthernet 0/0
ASHISH HALDER
CCNA ROUTING AND SWITCHING LAB GUIDE
Configure Static default route to Internet and Static route to Local LAN
ASHISH HALDER
CCNA ROUTING AND SWITCHING LAB GUIDE
But we do not want this. So we have to block ICMP Reply from inside LAN for outside hosts
ASHISH HALDER
CCNA ROUTING AND SWITCHING LAB GUIDE
Verification
But other Service such as WEB Service is permitted as we have not block it, only ICMP echo-
reply is blocked.
ASHISH HALDER