So after being distracted for a bit, I've been playing around with pfSense again. I like it quite a bit better than m0n0wall. FTP works now without poking a gazillion holes and you can access the DMZ ...
I have pfSense 1.2.3 (upgraded from 1.2.2) running in a VM on ESX4. It works great for a few days, with the number of tracked states in the tens or hundreds most of the time. After a while, something ...