Home | History | Annotate | Line # | Download | only in etc
pf.conf revision 1.4
      1  1.4   yamt #	$NetBSD: pf.conf,v 1.4 2008/06/18 09:06:25 yamt Exp $
      2  1.4   yamt #	$OpenBSD: pf.conf,v 1.34 2007/02/24 19:30:59 millert Exp $
      3  1.1   yamt #
      4  1.3  peter # See pf.conf(5) and /usr/share/examples/pf for syntax and examples.
      5  1.1   yamt # Remember to set net.inet.ip.forwarding=1 and/or net.inet6.ip6.forwarding=1
      6  1.1   yamt # in /etc/sysctl.conf if packets are to be forwarded between interfaces.
      7  1.1   yamt 
      8  1.1   yamt #ext_if="ext0"
      9  1.1   yamt #int_if="int0"
     10  1.1   yamt 
     11  1.1   yamt #table <spamd-white> persist
     12  1.1   yamt 
     13  1.4   yamt #set skip on lo
     14  1.4   yamt 
     15  1.1   yamt #scrub in
     16  1.1   yamt 
     17  1.4   yamt #nat-anchor "ftp-proxy/*"
     18  1.4   yamt #rdr-anchor "ftp-proxy/*"
     19  1.1   yamt #nat on $ext_if from !($ext_if) -> ($ext_if:0)
     20  1.1   yamt #rdr pass on $int_if proto tcp to port ftp -> 127.0.0.1 port 8021
     21  1.4   yamt #no rdr on $ext_if proto tcp from <spamd-white> to any port smtp
     22  1.4   yamt #rdr pass on $ext_if proto tcp from any to any port smtp \
     23  1.1   yamt #	-> 127.0.0.1 port spamd
     24  1.1   yamt 
     25  1.4   yamt #anchor "ftp-proxy/*"
     26  1.1   yamt #block in
     27  1.4   yamt #pass out
     28  1.1   yamt 
     29  1.4   yamt #pass quick on $int_if no state
     30  1.1   yamt #antispoof quick for { lo $int_if }
     31  1.1   yamt 
     32  1.4   yamt #pass in on $ext_if proto tcp to ($ext_if) port ssh
     33  1.4   yamt #pass in log on $ext_if proto tcp to ($ext_if) port smtp
     34  1.4   yamt #pass out log on $ext_if proto tcp from ($ext_if) to port smtp
     35