[BACK]Return to pf.conf CVS log [TXT][DIR] Up to [local] / src / etc

Annotation of src/etc/pf.conf, Revision 1.34

1.34    ! millert     1: #      $OpenBSD: pf.conf,v 1.33 2006/10/24 16:33:21 david Exp $
1.1       kjell       2: #
1.12      henning     3: # See pf.conf(5) and /usr/share/pf for syntax and examples.
1.28      frantzen    4: # Remember to set net.inet.ip.forwarding=1 and/or net.inet6.ip6.forwarding=1
                      5: # in /etc/sysctl.conf if packets are to be forwarded between interfaces.
1.4       henning     6:
1.27      cedric      7: #ext_if="ext0"
                      8: #int_if="int0"
1.19      ian         9:
1.27      cedric     10: #table <spamd-white> persist
1.12      henning    11:
1.30      henning    12: #set skip on lo
1.29      henning    13:
1.27      cedric     14: #scrub in
                     15:
1.31      camield    16: #nat-anchor "ftp-proxy/*"
                     17: #rdr-anchor "ftp-proxy/*"
1.27      cedric     18: #nat on $ext_if from !($ext_if) -> ($ext_if:0)
                     19: #rdr pass on $int_if proto tcp to port ftp -> 127.0.0.1 port 8021
1.34    ! millert    20: #no rdr on $ext_if proto tcp from <spamd-white> to any port smtp
        !            21: #rdr pass on $ext_if proto tcp from any to any port smtp \
1.27      cedric     22: #      -> 127.0.0.1 port spamd
                     23:
1.31      camield    24: #anchor "ftp-proxy/*"
1.27      cedric     25: #block in
1.32      mcbride    26: #pass out
1.27      cedric     27:
1.32      mcbride    28: #pass quick on $int_if no state
1.27      cedric     29: #antispoof quick for { lo $int_if }
                     30:
1.33      david      31: #pass in on $ext_if proto tcp to ($ext_if) port ssh
                     32: #pass in log on $ext_if proto tcp to ($ext_if) port smtp
1.32      mcbride    33: #pass out log on $ext_if proto tcp from ($ext_if) to port smtp