Configure pf Firewall

From wiki
Revision as of 07:47, 4 June 2019 by imported>Jacob (Created page with "The philosophy we will use for the fire wall is that we split in 2 or 4 paths depending on the traffic initiated outside or inside. We als split the config in tcp and udp traf...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

The philosophy we will use for the fire wall is that we split in 2 or 4 paths depending on the traffic initiated outside or inside. We als split the config in tcp and udp traffic for efficiency reasons see: NOTE link needed here to article or book. So the general layout is

      1. Macro definitions
  1. Stateful Tracking Options (STO)
  2. TABLES
  3. OPTIONS
  4. TRAFFIC NORMALISATION
  5. QUEUEING
  6. TRANSLATION
  7. PACKET FILTERING
  1. ======================================================
  2. ext-if
  3. ========================================
  4. ext-if IN
  5. ===========================
  6. ext-if IN TCP
  7. ===========================
  8. ext-if IN UDP
  9. ===========================
  10. ext-if IN IMCP
  11. ========================================
  12. ext-if OUT
  13. ===========================
  14. ext-if OUT TCP
  15. ===========================
  16. ext-if OUT UDP
  17. ===========================
  18. ext-if OUT IMCP