I'm not using PF, I'm using IPFW. I'd have to rework the entire firewall if I switched, and I'm lazy, I already know how to use ipfw whereas I'd have to learn pf.
Besides, I think I found a way around the kernel prohibition on sending ICMP REdirects using raw sockets so I may be able to do it in the router code after all. - Brian
On Sun, May 28, 2017 at 10:25:35AM -0700, David Ranch wrote:
Hey Brian, I thought the FreeBSD PF firewall can do this for you (check out the comments): https://utcc.utoronto.ca/~cks/space/blog/unix/OpenBSDPfRedirIssue?showcommen... --David KI6ZHD