Windows Server 2003 RAS can't ping machines in DMZ
We've got a small LAN and a DMZ separated by a firewall. All the machines on
the LAN can ping the machines in the DMZ, except one. The machine in question is a Windows 2003
server configured as a RAS server. This machine can be pinged by the DMZ servers. I think it has
something to do with the server being configured for RAS. I'd appreciate any suggestions or ideas
you might have to allow the server to ping the DMZ machines.
You are correct. Most RAS servers are pre-configured to block ICMP traffic. Internet Control
Message Protocol (ICMP) packets used by the ping command are filtered out. To turn on the RAS
server to respond to ICMP (ping) packets, add an input filter and an output filter that permit
traffic for IP protocol 1 (ICMP traffic).
See the Windows Server 2003 Help and Support Center for more information about how to add a
packet filter. Click Start to access the Windows Server 2003 Help and Support Center.
This was first published in October 2003
Join the conversationComment
Share
Comments
Results
Contribute to the conversation