Re: ipfilter, return-icmp and RFC1122

> Subnet-specific broadcast addresses are only broadcast addresses on
> the subnet with that address.  If they arrive on another interface
> you can do anything you would normally do with any packet addressed
> to the same subnet, firewall or not, except that by default the
> router shouldn't forward the packet onto the subnet where it would be
> broadcast.

You mean that the "don't send ICMPs in response to packets sent to
broadcast addresses" actually means " packets sent to what on the
incoming interface is a broadcast address"?

/~\ The ASCII                           der Mouse
\ / Ribbon Campaign
 X  Against HTML     
/ \ Email!           7D C8 61 52 5D E7 2D 39  4E F1 31 3E E8 B3 27 4B

