You need to know the difference between use of the asterisk (*) or use of "Any" in the Application field when you create a firewall rule in Symantec Endpoint Protection (SEP), and why the default "Allow all applications" rule does not pass Internet Control Messaging Protocol (ICMP) or broadcast traffic.
When you create a firewall rule in the Symantec Endpoint Protection Manager (SEPM), there is some difference between use of an asterisk and use of "Any" within the Application field of the rule, in order to match all applications.
The default "Allow all applications" rule, included when creating a new policy uses the asterisk in the rule, therefore it does not match incoming ICMP traffic. To allow a ping of a host which employs the SEP firewall, you should use the "Allow ping" rule.