Hi, Thanks a lot to everybody for coming in this discussion and for sharing their experiences that convinced me to traslate into a production environment with no problems!
Anyway i still have some little doubts on implementing a DMZ containing all the servers, behind NAT. This because i don't know how pfsense's NAT implementation can handle the new internet applications/protocols like AJAX or WEB-SERVICES or others that could make use of mechanisms like dynamic allocation of port. Don't you think pfsense (actually NAT) can suffer this? Again thanks to everybody! Bye Paolo