How to disable ICMP redirects in pfSense

When a router’s next hop gateway is in the same subnet as the previous hop, it’ll send an ICMP redirect to the previous router in order to cut itself out of the routing. In some setups, this may not be desirable.

To disable this on pfSense, go to System->Advanced and change to the System Tunables tab. EditĀ net.inet.ip.redirect and/orĀ net.inet6.ip6.redirect to change their values to 0 (zero).

Leave a Reply

Your email address will not be published. Required fields are marked *