Home | History | Annotate | Line # | Download | only in etc
pf.conf revision 1.3.28.1
      1  1.3.28.1  wrstuden #	$NetBSD: pf.conf,v 1.3.28.1 2008/06/23 04:28:52 wrstuden Exp $
      2  1.3.28.1  wrstuden #	$OpenBSD: pf.conf,v 1.34 2007/02/24 19:30:59 millert Exp $
      3       1.1      yamt #
      4       1.3     peter # See pf.conf(5) and /usr/share/examples/pf for syntax and examples.
      5       1.1      yamt # Remember to set net.inet.ip.forwarding=1 and/or net.inet6.ip6.forwarding=1
      6       1.1      yamt # in /etc/sysctl.conf if packets are to be forwarded between interfaces.
      7       1.1      yamt 
      8       1.1      yamt #ext_if="ext0"
      9       1.1      yamt #int_if="int0"
     10       1.1      yamt 
     11       1.1      yamt #table <spamd-white> persist
     12       1.1      yamt 
     13  1.3.28.1  wrstuden #set skip on lo
     14  1.3.28.1  wrstuden 
     15       1.1      yamt #scrub in
     16       1.1      yamt 
     17  1.3.28.1  wrstuden #nat-anchor "ftp-proxy/*"
     18  1.3.28.1  wrstuden #rdr-anchor "ftp-proxy/*"
     19       1.1      yamt #nat on $ext_if from !($ext_if) -> ($ext_if:0)
     20       1.1      yamt #rdr pass on $int_if proto tcp to port ftp -> 127.0.0.1 port 8021
     21  1.3.28.1  wrstuden #no rdr on $ext_if proto tcp from <spamd-white> to any port smtp
     22  1.3.28.1  wrstuden #rdr pass on $ext_if proto tcp from any to any port smtp \
     23       1.1      yamt #	-> 127.0.0.1 port spamd
     24       1.1      yamt 
     25  1.3.28.1  wrstuden #anchor "ftp-proxy/*"
     26       1.1      yamt #block in
     27  1.3.28.1  wrstuden #pass out
     28       1.1      yamt 
     29  1.3.28.1  wrstuden #pass quick on $int_if no state
     30       1.1      yamt #antispoof quick for { lo $int_if }
     31       1.1      yamt 
     32  1.3.28.1  wrstuden #pass in on $ext_if proto tcp to ($ext_if) port ssh
     33  1.3.28.1  wrstuden #pass in log on $ext_if proto tcp to ($ext_if) port smtp
     34  1.3.28.1  wrstuden #pass out log on $ext_if proto tcp from ($ext_if) to port smtp
     35