Well,

I don't see why you would need to allow anyone to ping the FW.

simply block all pings to the FW, and make a rule allowing the specific
client to be allowed to ping the external host directly.

That should work.

Mike

> -----Original Message-----
> From: Sumash Singh [SMTP:[EMAIL PROTECTED]]
> Sent: ä éðåàø 25 2001 16:33
> To:   FW1-mail (E-mail)
> Subject:      [FW1] ping
> 
> 
> I need to allow only one host on our network to ping an external host, but
> deny all other attempts to ping the fire 
> 
> any idea on how to do this. i do not want to enable the policy properties
> to
> accept icmp.
> 
> any ideas???
> 
> thanx
> 
> sumash
> 
> 
> **********************************************************************
> This email and any files transmitted with it are confidential and
> intended solely for the use of the individual or entity to whom they
> are addressed. If you have received this email in error please notify
> the system manager at [EMAIL PROTECTED]
> **********************************************************************
> 
> 
> ==========================================================================
> ======
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
> ==========================================================================
> ======


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to