Networking: Forward Ping for Devices behind UTM
In V8 it was possible to Ping Devices behind the UTM Device, in V9 it is Disabled and could not be Enabled with a Packet filter Rule.
This function is useful for us and our Customer which has Devices behind the UTM in his own DMZ that should be monitored by Monitoring Systems etc.
While already possible by disabling the built-in ICMP handlers and creating your own packet filter rules for explicitly allowing such traffic, we will review the operation of this behavior and if we can refine the GUI here.
4 comments
-
Andre Soe
commented
We know what is to do that it run, but we want to know why they changed that in the V9 ????
-
Frank commented
Hello,
yes, just deactivate all checkboxes in ICMP Tab and create a manually PF rule.
-
Andre Soe
commented
Why was that changed in the V9 ?
-
Urs
commented
If i remember right from a workshop, it's still possible, but you have to do it in a special way.
Don't remember exactly, but i think you have to create the firewall rules for ICMP, and then disable ALL ICMP settings the ICMP tab of the package filters, and i think also ALL ping checkboxes.
Ask your reseller/support, they definitely should know that exactly.