Question
ICMP echo (PING) replies from secondary IP address
While helping a client set up a SSH server interface with a healthcare vendor I' ve run into a strange request I' m having difficulty fulfilling. This server is to be accessed via a secondary public IP address. The vendor wants this server to respond to ICMP echo (PING) requests. With a secondary valid public IP address, I’ve set up a Dynamic IP Pool and have used it to create an Internal – WAN policy for the SSH service. Traffic is now reaching the SSH server as intended. I cannot seem to sort through how to get he PING thing working. From the FortiGate I can successfully ping the local IP of the server. With other TCP/UPD services, the typical way to do port forwarding (via VIP) doesn’t cover services such as ICMP. I’ve also tried adding the second Public IP address as a secondary address to the WAN1 interface …but that didn’t work either. Ideas? I’ve not found anything in the Forum that applies.
