> So basically the ruleset should be simple:
> ipfw -f flush
> # allow lo0 stuff
> # block some spoofs/attacks
> # if you are hosting gameservers from or whatever,
> # you should (manually) open server ports, in other words, add
> # routes to to specific server ports
> ipfw add divert natd all from any to any via $outside_interface
> allow all from any to any
> # block some more spoofs/attacks :)
> # define services (like you did with http)
Sorry, this didn't work.

