On 2007/03/20 04:41, Lawrence Horvath wrote: > I have the below rule set in my pf.conf, i am having the following > problem, i need to be able to log into the firewall with ssh from > outside, and nothing should be able to hit the firewall from inside, > not even ping
You don't "pass out" anything, either directly or via keep state. Also see the Notes section of bridge(4).

