允许环回
ipfw -q add 00020 allow all from any to any via lo0
允许ping
ipfw -q add 00030 allow icmp from any to any
允许 tcp 22 80 443 8443 进出
ipfw -q add 00100 allow tcp from any to any 22 setup keep-state
ipfw -q add 00110 allow tcp from any to any 80 setup keep-state
ipfw -q add 00120 allow tcp from any to any 443 setup keep-state
ipfw -q add 00130 allow tcp from any to any 8443 setup keep-state
允许DNS 53解析
ipfw -q add 00200 allow tcp from any to any 53 setup keep-state
ipfw -q add 00210 allow udp from any to any 53 keep-state
允许UDP 4000 5000端口
ipfw -q add 00300 allow udp from any to any 4000 keep-state
ipfw -q add 00310 allow udp from any to any 5000 keep-state