Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 25 Nov 2015 17:45:13 -0500
From:      Ryan Stone <rysto32@gmail.com>
To:        Kevin Oberman <rkoberman@gmail.com>
Cc:        Daniel Bilik <ddb@neosystem.org>, "freebsd-net@freebsd.org" <freebsd-net@freebsd.org>
Subject:   Re: Outgoing packets being sent via wrong interface
Message-ID:  <CAFMmRNyhc06utwTtTq69NQMqqMYz%2BRGGKYAU3Y5iPz3YSsggTg@mail.gmail.com>
In-Reply-To: <CAN6yY1vECcj5_4n0fRv6j-2CUJ8mHDoDaxBkYsKZaornQm2CKg@mail.gmail.com>
References:  <20151120155511.5fb0f3b07228a0c829fa223f@neosystem.org> <C1D7F956-81C9-4ED4-99B8-E0C73A3ECB37@FreeBSD.org> <20151120163431.3449a473db9de23576d3a4b4@neosystem.org> <20151121212043.GC2307@vega.codepro.be> <20151122130240.165a50286cbaa9288ffc063b@neosystem.cz> <20151125092145.e93151af70085c2b3393f149@neosystem.cz> <20151125122033.GB41119@in-addr.com> <20151125141626.6f9579478e1b9d0eb1d4a84f@neosystem.cz> <CAN6yY1vECcj5_4n0fRv6j-2CUJ8mHDoDaxBkYsKZaornQm2CKg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
An easier way to block ICMP redirects would be to set the sysctl:

sysctl net.inet.icmp.drop_redirect=1



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAFMmRNyhc06utwTtTq69NQMqqMYz%2BRGGKYAU3Y5iPz3YSsggTg>