Please explain your network. Natted, routed, ect, if you use private ip space. And in human terms what you are trying to accomplish.
ie. Stop people on your network from using anything but http, sip, and mail.
or Allowing your network internet access while keeping hackers out.