pf2.ok revision 1.7
1@0 block out log on tun0 all 2@1 block in log on tun0 all 3@2 block return-rst out log on tun0 proto tcp all 4@3 block return-rst in log on tun0 proto tcp all 5@4 block return-icmp out log on tun0 proto udp all 6@5 block return-icmp in log on tun0 proto udp all 7@6 block out log quick on tun0 inet from ! 157.161.48.183/32 to any 8@7 block in quick on tun0 inet from any to 255.255.255.255/32 9@8 block in log quick on tun0 inet from 10.0.0.0/8 to any 10@9 block in log quick on tun0 inet from 172.16.0.0/12 to any 11@10 block in log quick on tun0 inet from 192.168.0.0/16 to any 12@11 block in log quick on tun0 inet from 255.255.255.255/32 to any 13@12 block in log quick from no-route to any 14@13 pass out on tun0 inet proto icmp all icmp-type echoreq code 0 keep state 15@14 pass in on tun0 inet proto icmp all icmp-type echoreq code 0 keep state 16@15 pass out on tun0 proto udp all keep state 17@16 pass in on tun0 proto udp from any to any port = domain keep state 18@17 pass out on tun0 proto tcp all keep state 19@18 pass in on tun0 proto tcp from any to any port = ssh keep state 20@19 pass in on tun0 proto tcp from any to any port = smtp keep state 21@20 pass in on tun0 proto tcp from any to any port = domain keep state 22@21 pass in on tun0 proto tcp from any to any port = auth keep state 23