<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Block PING]]></title><description><![CDATA[<p dir="auto">Is there a way to block people from ping-ing our servers? I cannot find the ICMP protocol in the firewall protocol list.</p>
<p dir="auto">are there any problems related to blocking ping in general? Do programs, software, packages or connections rely on this functionality?</p>
<p dir="auto">If not, I would like to block it in the sense.. the less they see the better..</p>
]]></description><link>https://forum.netgate.com/topic/9704/block-ping</link><generator>RSS for Node</generator><lastBuildDate>Sun, 08 Mar 2026 10:11:39 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/9704.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 09 Jul 2008 08:05:00 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Block PING on Sat, 19 Jul 2008 00:44:05 GMT]]></title><description><![CDATA[<p dir="auto">Yes it's a bad idea to block all ICMP types - there are legit and important uses for ICMP in a network.</p>
<p dir="auto">But with that said, the state tracking code will allow return ICMP traffic resulting from connections initiated inside your network, so you can pretty much block at will on your WAN and not break anything. There may be some cases where you'll want to not block everything, but in most environments that's fine to do with pfSense since it'll allow these legit ICMP types.</p>
]]></description><link>https://forum.netgate.com/post/177646</link><guid isPermaLink="true">https://forum.netgate.com/post/177646</guid><dc:creator><![CDATA[cmb]]></dc:creator><pubDate>Sat, 19 Jul 2008 00:44:05 GMT</pubDate></item><item><title><![CDATA[Reply to Block PING on Wed, 09 Jul 2008 09:14:47 GMT]]></title><description><![CDATA[<p dir="auto">edit : my bad.. I found the ICMP protocol (i must of overlooked it).</p>
<p dir="auto">Can somebody tell me if it's a bad idea to block all the ICMP types? Would this give me any issue's? if set to source any -&gt; destination any block all? Or would a echo/ echo reply be sufficient</p>
]]></description><link>https://forum.netgate.com/post/176930</link><guid isPermaLink="true">https://forum.netgate.com/post/176930</guid><dc:creator><![CDATA[AudiAddict]]></dc:creator><pubDate>Wed, 09 Jul 2008 09:14:47 GMT</pubDate></item></channel></rss>