Forum Discussion

vishal_7918_352's avatar
vishal_7918_352
Icon for Nimbostratus rankNimbostratus
Jun 19, 2018

Block ICMP on self IP and SNAT Pool IP

Hello Members,

 

First of all thank you so much for all the help on the posts, I get to learn so much here!

 

My requirement is that, I need to block ICMP on self IP addresses and SNAT Pool list IP on LTM. All are public IP addresses and none of the IPs should respond to ICMP requests from internet.

 

I would also like to add here that currently, under LTM self-IP port lock-down option, only TCP-4353 and UDP-1026 ports are allowed. Still I am able to ping self IPs from internet.

 

What configuration on LTM can help block ICMP request/response to requests initiated from internet?

 

Many thanks!

 

-Vishal