This is a old question. and this came up from GRC Shields Up test. I have searched internet and saw in numerous places that I shouldn't bother about it, and in some places some solutions have been given that didn't work for me. I am under Windows Firewall (+WSA) & D-Link DSL-2750U. Any or both Router or Software Configuration would be appreciated. P.S. My router has some settings enabled.
Windows firewall allows only ICMP type 3 code 4 inbound ( ICMPv4 ). Your routeur allows ICMP type 0 code 0 inbound ( echo reply ), and type 8 code 0 ( echo ) outbound , the other rules block some attacks, a few. Your computer do not reply to ping.
ICMP is not only for ping/trace http://security.stackexchange.com/questions/22711/is-it-a-bad-idea-for-a-firewall-to-block-icmp i dont care about - my netgear blocks all unwanted icmp HTH
@Boblvf & @Brummelchen I am not very much knowledgeable about Firewall configurations. How can I configure Windows Firewall or/and Router to block ICMP Echo ping?
- your computer. " Your computer do not reply to ping. " nothing to configure with Windows firewall. - your router. Uncheck " ICMP ECHO " and ping your internet IP for testing. The echo reply is not a problem, ports and services must be closed, here is the problem.
keep icmp enabled, from my view. the d-link should be new enough to handle it properly. as i can see this icmp settings only refer to the attack detection, not the common use. leave it as it is as long you dont have another experience or trouble with it. it seems that d-link is still to stupid to update their manuals along the current firmware. the manual only contains a single sentence to icmp, no picture, nothing for the "firewall settings". i had two of those - one died with the power sup, the previous was to old to handle much connections. i wont buy d-link again, piece of crap hardware. HTH