1# pfctl -o duplicate rules 2 3pass in on lo1000000 from any to 10.0.0.1 4pass in on lo1000000 inet from any to 10.0.0.1 5 6pass 7pass out 8pass out 9pass out quick 10 11pass on lo1000001 to 10.0.0.1 12pass on lo1000000 from any to 10.0.0.1 13 14pass to 10.0.0.2 modulate state 15pass to 10.0.0.2 keep state 16block from 10.0.0.3 to 10.0.0.2 17pass to 10.0.0.2 modulate state 18block from 10.0.0.3 to 10.0.0.2 19pass to 10.0.0.2 synproxy state 20 21 22pass out proto tcp from 10.0.0.4 to 10.0.0.5 keep state 23pass out proto tcp from 10.0.0.4 to 10.0.0.5 port 80 keep state 24 25pass out 26pass in 27 28pass in on lo1000001 from any to any 29pass in on lo1000001 from any to any keep state 30pass in on lo1000001 from any to any 31 32block 33