MichealC4
Programmer
- Jun 26, 2003
- 457
After 4 weeks of talking with Microsoft trying to figure out why our clients behind a NAT with PAT overflow are trying to ping the heck out of our public domain controllers, they have come to the conclusion that it is because ICMP is disabled on the firewall. We have ICMP disabled on the firewall for security reasons and would really rather it not be enabled again. So, is it possible to allow ICMP only to a certain subnet (actually, need it to go to several subnets)? It has been a while since I've touched the FOS, so I'm a bit rusty. 515E and 506
----------------------------
"Will work for bandwidth" - Thinkgeek T-shirt
----------------------------
"Will work for bandwidth" - Thinkgeek T-shirt