Home » Cisco » 350-080 » What is the reason of this problem?
When testing ICMP access to a functional load-balancing ACE VIP, it fails. What is the reason of this problem? (Choose two.)
A. The interface is shut down
B. An access list is denying ICMP
C. Routing is not configured properly
D. vip icmp-reply is inactive
Correct Answer: BD
Explanation/Reference:
Explanation:
When you edit an ACL, it requires special attention. For example, if you intend to delete a specific line from a numbered ACL that exists as shown here, the entire ACL is deleted.
!— The access-list 101 denies icmp from any to any network
!— but permits IP traffic from any to any network.
router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
router(config)#access-list 101 deny icmp any any
router(config)#access-list 101 permit ip any any
router(config)#^Z
router#show access-list
Extended IP access list 101
deny icmp any any
permit ip any any
router#
*Mar 9 00:43:12.784: %SYS-5-CONFIG_I: Configured from console by console
router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
router(config)#no access-list 101 deny icmp any any
router(config)#^Z
router#show access-list
router#
*Mar 9 00:43:29.832: %SYS-5-CONFIG_I: Configured from console by console
Reference: http://www.cisco.com/c/en/us/td/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA3_1_0/configuration/slb/guide/slbgd/probe.html