diff --git a/freebsd/resources/pf/pf.conf b/freebsd/resources/pf/pf.conf new file mode 100644 index 0000000..67dc6b5 --- /dev/null +++ b/freebsd/resources/pf/pf.conf @@ -0,0 +1,34 @@ +set skip on lo0 +pass out quick all +scrub in all + +antispoof for lo0 +table persist + +block in all +block in quick from +#pass in quick inet proto icmp all +#pass in quick inet6 proto icmp6 all + +pass in quick inet proto tcp from any to any port 22 keep state +pass in quick inet proto tcp from any to any port 80 keep state +pass in quick inet proto tcp from any to any port 443 keep state +pass in quick inet proto tcp from any to any port 5060 keep state +pass in quick inet proto udp from any to any port 5060 keep state +pass in quick inet proto tcp from any to any port 5080 keep state +pass in quick inet proto udp from any to any port 5080 keep state +pass in quick inet proto udp from any to any port 16384:32768 keep state + + + + + + + + + + + + + +