Personally i'd use iptables through config of this bad boy
http://www.fwbuilder.org/
also look up APF which is the advanced version of iptables really..
it's a mod which protects better against ddos and such attacks which
plague the ipv4 internet as we know it