1 log in all 2 count in tos 0x80 from any to any 3 pass in on ed0(!) inet tos 0x40 from 127.0.0.1/32 to 127.0.0.1/32 4 block in log on lo0(!) ttl 0 from any to any 5 pass in quick ttl 1 from any to any 6 skip 3 out inet from 127.0.0.1/32 to any 7 auth out on foo0(!) proto tcp from any to any port = 80 8 preauth out on foo0(!) proto tcp from any to any port = 22 9 nomatch out on foo0(!) proto tcp from any port < 1024 to any 10