Pf.conf file

From wiki
Revision as of 20:17, 4 June 2019 by imported>Jacob (Created page with "So the general layout of the pf file is ==== Macro Definitions ==== In the macro definitions we declare the: interfaces, hosts, ports etc.<br> To be able to change port numbe...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

So the general layout of the pf file is

Macro Definitions

In the macro definitions we declare the: interfaces, hosts, ports etc.
To be able to change port numbers or IP-addresses without the need to go through the complete configuration file.

Stateful Tracking Options (STO)

TABLES

Here we define Tables used for spamd and ftp proxy functionality

OPTIONS

TRAFFIC NORMALISATION

QUEUEING

TRANSLATION

In the translation section we define the redirect rules for incoming traffic. Like send http and https to the webserver and smtp traffic to the mailserver.

PACKET FILTERING

#======================================================
#	ext-if
#========================================
#	ext-if IN
#===========================
#	ext-if IN TCP
#===========================
#	ext-if IN UDP
#===========================
#	ext-if IN IMCP
#========================================
#	ext-if OUT
#===========================
#	ext-if OUT TCP
#===========================
#	ext-if OUT UDP
#===========================
#	ext-if OUT IMCP
#======================================================
#	int-if
#========================================
#	int-if IN
#===========================
#	int-if IN TCP
#===========================
#	int-if IN UDP
#===========================
#	int-if IN ICMP
#========================================
#	int-if OUT
#===========================
#	int-if OUT TCP
#===========================
#	int-if OUT UDP
#===========================
#	int-if OUT ICMP