If you're looking for advice on configuring a firewall script, Oskar Andreasson's tutorial is excellent - go there first.

The rc.firewall.gateway.generic is a good starting point for a gateway/router box.

The rc.firewall.desktop.generic is a good starting point for a box directly connected to the internet.

The sshattacks file shows some example lines (and explanation) for using the recent match to help protect against the common brute force ssh attacks.

