Possible cause:
1.The security policy does not permit the local area to the destination area.
2. The service manage function is not enabled on the interface.
3. In Eth-Trunk multi-link mode, cables are incorrectly connected.
4. A destination NAT policy is configured on the firewall.
Cause 1. The security policy does not permit the local area to the destination area.
By default,firewall default security policy action is deny, therefore could refer below steps and input related firewall zone and ip address,check whether the target traffic could meet a policy that the action is permit.

Cause 2. The service manage function is not enabled on the interface.
Check whether the service-manage ping is already enabled under interface.

Cause 3. In Eth-Trunk multi-link mode, cables are incorrectly connected.
Run display interface brief on firewall,and check whether the interface connect to correct interface,if one eth-trunk member connect to other interface that did not belong to same eth-trunk interface, may occur One-way pingable issue.

Cause 4. A destination NAT policy is configured on the firewall.
Check whether the destination nat policy have been configured based on the test destination address,if the policy configured,firewall’s ip address also could not been pingable, need disable it.

