I have ISA server as second firewall. I cannot ting from front end firewall to a host on internal network. Is it possible to allow this and what I should do if yes. Scenario: ISA has 3 interface: internal 172.17.1.2, external (to front end FW) 10.17.1.2 and DMZ 172.18.1.2. I can ping from ISA out and I can ping external interface of ISA from front end FW. But I cannot ping a host on internal network that has IP 172.17.1.13. Thanx in advance for any help. PS Help if u can but just don't ask me why do I need this:-)).