Question
ICMP redirect passing through FW
Hello community,
I have TCP443 communication that goes from my local network through NAT outside. On a way to destination, it is stopped and ICMP redirect is sent back. It comes on my VIP which is mapped from TCP443 to TCP443. Then there is FW policy that is allowing only TCP443, but the ICMP packet still passes. How is that possible?

Thanks everyone for any help.
