From owner-freebsd-pf@FreeBSD.ORG Wed Mar 15 12:30:09 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 1897316A401 for ; Wed, 15 Mar 2006 12:30:09 +0000 (UTC) (envelope-from dvincent1@free.fr) Received: from email.siw.ch (email.siw.ch [217.197.213.203]) by mx1.FreeBSD.org (Postfix) with ESMTP id 1E56743D55 for ; Wed, 15 Mar 2006 12:30:07 +0000 (GMT) (envelope-from dvincent1@free.fr) Received: from [127.0.0.1] by email.siw.ch (MDaemon.PRO.v8.1.4.R) with ESMTP id md50006151732.msg for ; Wed, 15 Mar 2006 13:31:40 +0100 Message-ID: <441808C5.2020509@free.fr> Date: Wed, 15 Mar 2006 13:29:57 +0100 From: David Vincent User-Agent: Thunderbird 1.5 (Windows/20051201) MIME-Version: 1.0 To: freebsd-pf@freebsd.org Content-Type: text/plain; charset=ISO-8859-15; format=flowed Content-Transfer-Encoding: 7bit X-Authenticated-Sender: david.vincent@confort-it.com X-MDRemoteIP: 195.70.2.231 X-Return-Path: dvincent1@free.fr X-MDaemon-Deliver-To: freebsd-pf@freebsd.org X-Spam-Checker-Version: SpamAssassin 3.0.4 (2005-06-05) X-Spam-Report: X-Spam-Status: No, score=0.0 required=5.0 tests=none autolearn=disabled version=3.0.4 X-Spam-Level: X-Spam-Processed: email.siw.ch, Wed, 15 Mar 2006 13:31:43 +0100 X-MDAV-Processed: email.siw.ch, Wed, 15 Mar 2006 13:31:43 +0100 Subject: PF conf X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: dvincent1@free.fr List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 15 Mar 2006 12:30:09 -0000 I want to setup a firewall using freebsd 5.4 with 3 zones: EXTERNAL INTERNAL DMZ I have a reverse proxy and mail/dns servers in the DMZ. The reverse proxy forward requests to servers in the internal zone. I'm a newbie in PF configuration and I need some help in order to right configure PF. Many thanks in advance, David.