On a stand-alone box you cannot use the ftp-proxy from pf. This proxy needs two physical interfaces, an external NIC and an internal one.
ftp-proxy listens on the internal NIC to intercept ftp traffic from the internal LAN.
__________________
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
|