<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: Linux Iptables allow or block ICMP ping request</title> <atom:link href="http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html/feed" rel="self" type="application/rss+xml" /><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html</link> <description>This is a Linux sys admin journal by Vivek about sys admin work, Linux tips &#38; tricks, hacks, news and more.</description> <lastBuildDate>Fri, 10 Feb 2012 20:37:43 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>By: help</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-178982</link> <dc:creator>help</dc:creator> <pubDate>Wed, 01 Feb 2012 18:18:20 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-178982</guid> <description>hi,
i want to do ip spoofing for my excersize but i can&#039;t !!!
the question is :
use iptables to modify your IP address to 10.2.3.4 when sending out icmp requests.</description> <content:encoded><![CDATA[<p>hi,<br
/> i want to do ip spoofing for my excersize but i can&#8217;t !!!<br
/> the question is :<br
/> use iptables to modify your IP address to 10.2.3.4 when sending out icmp requests.</p> ]]></content:encoded> </item> <item><title>By: Snehal</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-175201</link> <dc:creator>Snehal</dc:creator> <pubDate>Tue, 25 Oct 2011 13:38:04 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-175201</guid> <description>Thanks very much and appricate your knowledge sharing. This was helped me to block icmp traffic for my application testing.</description> <content:encoded><![CDATA[<p>Thanks very much and appricate your knowledge sharing. This was helped me to block icmp traffic for my application testing.</p> ]]></content:encoded> </item> <item><title>By: Sun</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-160073</link> <dc:creator>Sun</dc:creator> <pubDate>Wed, 06 Oct 2010 16:43:03 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-160073</guid> <description>Actually worked right away didnt need to restart atall thanks</description> <content:encoded><![CDATA[<p>Actually worked right away didnt need to restart atall thanks</p> ]]></content:encoded> </item> <item><title>By: Michael</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-158738</link> <dc:creator>Michael</dc:creator> <pubDate>Sat, 07 Aug 2010 17:38:32 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-158738</guid> <description>Thanks a lot it worked perfectly for me.</description> <content:encoded><![CDATA[<p>Thanks a lot it worked perfectly for me.</p> ]]></content:encoded> </item> <item><title>By: Vivek Gite</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-156123</link> <dc:creator>Vivek Gite</dc:creator> <pubDate>Fri, 21 May 2010 16:12:30 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-156123</guid> <description>Yes, you need to restart firewall if you made changes to config file.
Reload script if  you made changes to a shell  script that loads all other rules.</description> <content:encoded><![CDATA[<p>Yes, you need to restart firewall if you made changes to config file.</p><p>Reload script if  you made changes to a shell  script that loads all other rules.</p> ]]></content:encoded> </item> <item><title>By: Bill</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-156122</link> <dc:creator>Bill</dc:creator> <pubDate>Fri, 21 May 2010 15:46:40 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-156122</guid> <description>This may be a dumb question, but I can&#039;t find the answer anywhere else.  After I make a rule change, do I have to reload iptables or stop/start to activate the change?</description> <content:encoded><![CDATA[<p>This may be a dumb question, but I can&#8217;t find the answer anywhere else.  After I make a rule change, do I have to reload iptables or stop/start to activate the change?</p> ]]></content:encoded> </item> <item><title>By: Jorge Filippo</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-151328</link> <dc:creator>Jorge Filippo</dc:creator> <pubDate>Thu, 29 Oct 2009 11:11:20 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-151328</guid> <description>How can I accept ICMP with a specific packetsize? I want to be able to ping my server from my windows notebook, but with -l 666 (for example), for monitoring purposes. But IPTABLES doesn&#039;t seem to have an option to accept or denay a specific ping size. Is that correct?. Thanks in advance.</description> <content:encoded><![CDATA[<p>How can I accept ICMP with a specific packetsize? I want to be able to ping my server from my windows notebook, but with -l 666 (for example), for monitoring purposes. But IPTABLES doesn&#8217;t seem to have an option to accept or denay a specific ping size. Is that correct?. Thanks in advance.</p> ]]></content:encoded> </item> <item><title>By: myHPLinuxdummyServersux</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-151119</link> <dc:creator>myHPLinuxdummyServersux</dc:creator> <pubDate>Tue, 20 Oct 2009 21:08:53 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-151119</guid> <description>hi.. im from a networking background... couldnt play around that much at home coz of ChISCO too $$$$... i heard linux also can work as a router with their IPtables stuff... may i know:
1. SERVER_IP=&quot;202.54.10.20&quot; is whos address? me as a server or the client&#039;s IP?
2. 0/0 ?
3. NEW,ESTABLISHED,RELATED (try to understand this on9, maybe yall have a clearer explanation)
4. -m?</description> <content:encoded><![CDATA[<p>hi.. im from a networking background&#8230; couldnt play around that much at home coz of ChISCO too $$$$&#8230; i heard linux also can work as a router with their IPtables stuff&#8230; may i know:<br
/> 1. SERVER_IP=&#8221;202.54.10.20&#8243; is whos address? me as a server or the client&#8217;s IP?<br
/> 2. 0/0 ?<br
/> 3. NEW,ESTABLISHED,RELATED (try to understand this on9, maybe yall have a clearer explanation)<br
/> 4. -m?</p> ]]></content:encoded> </item> <item><title>By: hamed</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-149914</link> <dc:creator>hamed</dc:creator> <pubDate>Fri, 07 Aug 2009 04:51:32 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-149914</guid> <description>thank u alot</description> <content:encoded><![CDATA[<p>thank u alot</p> ]]></content:encoded> </item> <item><title>By: ashwani</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-148293</link> <dc:creator>ashwani</dc:creator> <pubDate>Fri, 24 Apr 2009 20:27:33 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-148293</guid> <description>Nice...how about i can ping anyone but none cant ping me?...i mad lil rule
iptables -A OUTPUT -p icmp --icmp-type echo-reply -s 192.168.1.50 -d 192.168.1.0/24  -j  REJECT
this for an single subnet :-)</description> <content:encoded><![CDATA[<p>Nice&#8230;how about i can ping anyone but none cant ping me?&#8230;i mad lil rule</p><p>iptables -A OUTPUT -p icmp &#8211;icmp-type echo-reply -s 192.168.1.50 -d 192.168.1.0/24  -j  REJECT</p><p>this for an single subnet :-)</p> ]]></content:encoded> </item> <item><title>By: Vivek Gite</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-146069</link> <dc:creator>Vivek Gite</dc:creator> <pubDate>Mon, 08 Dec 2008 20:20:48 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-146069</guid> <description>@ak,
You must replace $SERVER_IP with actual IP address or create a variable itself.</description> <content:encoded><![CDATA[<p>@ak,</p><p>You must replace $SERVER_IP with actual IP address or create a variable itself.</p> ]]></content:encoded> </item> <item><title>By: Bill</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-146064</link> <dc:creator>Bill</dc:creator> <pubDate>Mon, 08 Dec 2008 18:48:07 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-146064</guid> <description>AK, you have a typo. Should be &quot;--state&quot;</description> <content:encoded><![CDATA[<p>AK, you have a typo. Should be &#8220;&#8211;state&#8221;</p> ]]></content:encoded> </item> <item><title>By: ak</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-145461</link> <dc:creator>ak</dc:creator> <pubDate>Mon, 03 Nov 2008 03:13:21 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-145461</guid> <description>iptables -A INPUT -p icmp --icmp-type 8 -s 0/0 -d $SERVER_IP -m state --state NEW,ESTABLISHED,RELATED -j ACCEPT
Error: Bad argument `state&#039;</description> <content:encoded><![CDATA[<p>iptables -A INPUT -p icmp &#8211;icmp-type 8 -s 0/0 -d $SERVER_IP -m state &#8211;state NEW,ESTABLISHED,RELATED -j ACCEPT</p><p>Error: Bad argument `state&#8217;</p> ]]></content:encoded> </item> <item><title>By: Hide IP</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-142032</link> <dc:creator>Hide IP</dc:creator> <pubDate>Sun, 02 Dec 2007 07:51:05 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-142032</guid> <description>Thanks for info! We&#039;ll use this info in our script firewall.</description> <content:encoded><![CDATA[<p>Thanks for info! We&#8217;ll use this info in our script firewall.</p> ]]></content:encoded> </item> <item><title>By: vivek</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-141303</link> <dc:creator>vivek</dc:creator> <pubDate>Mon, 08 Oct 2007 05:02:30 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-141303</guid> <description>--state will improve security and it is one of the best features of Iptables. I recommend keeping it..</description> <content:encoded><![CDATA[<p>&#8211;state will improve security and it is one of the best features of Iptables. I recommend keeping it..</p> ]]></content:encoded> </item> <item><title>By: China Landscape</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-141302</link> <dc:creator>China Landscape</dc:creator> <pubDate>Mon, 08 Oct 2007 04:48:13 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-141302</guid> <description>Hi,
Thanks for your tip, it&#039;s work perfectly.
Just one question :
Is the options --state NEW,ESTABLISHED,RELATED are mandatory ?
&lt;a href=&quot;http://www.photos-china.com&quot; rel=&quot;nofollow&quot;&gt;China Landscape&lt;/a&gt;</description> <content:encoded><![CDATA[<p>Hi,</p><p>Thanks for your tip, it&#8217;s work perfectly.<br
/> Just one question :<br
/> Is the options &#8211;state NEW,ESTABLISHED,RELATED are mandatory ?</p><p><a
href="http://www.photos-china.com" rel="nofollow">China Landscape</a></p> ]]></content:encoded> </item> <item><title>By: OSCAR</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-140317</link> <dc:creator>OSCAR</dc:creator> <pubDate>Thu, 28 Jun 2007 16:58:48 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-140317</guid> <description>Hi,
How block ping request with ENDIAN firewall?
Best regards</description> <content:encoded><![CDATA[<p>Hi,<br
/> How block ping request with ENDIAN firewall?<br
/> Best regards</p> ]]></content:encoded> </item> <item><title>By: LinuxTitli</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-19159</link> <dc:creator>LinuxTitli</dc:creator> <pubDate>Tue, 31 Jan 2006 21:52:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-19159</guid> <description>fsckyou, you are right i have updated the entire  rules, thanks :D</description> <content:encoded><![CDATA[<p>fsckyou, you are right i have updated the entire  rules, thanks :D</p> ]]></content:encoded> </item> <item><title>By: LinuxTitli</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-19158</link> <dc:creator>LinuxTitli</dc:creator> <pubDate>Tue, 31 Jan 2006 21:51:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-19158</guid> <description>I have updated post as per your request see above.</description> <content:encoded><![CDATA[<p>I have updated post as per your request see above.</p> ]]></content:encoded> </item> <item><title>By: Anonymous</title><link>http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-19157</link> <dc:creator>Anonymous</dc:creator> <pubDate>Tue, 31 Jan 2006 19:45:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-9-allow-icmp-ping.html#comment-19157</guid> <description>i need to disable ougoing ICMP from my server with iptables, how do I do that?</description> <content:encoded><![CDATA[<p>i need to disable ougoing ICMP from my server with iptables, how do I do that?</p> ]]></content:encoded> </item> </channel> </rss>
