Thanks for your help,
I sholuld have been more specific.
Let me explain. I originally had used the private server and gateway config which stealthed ports like 113 for IDENT port 80 port 443 and I was able to still have these services. The only port I needed open was port 25 for gateway email interception before it transfered to my exchange server.
I will try to work ot the kinks but I wish the template files were as easyu as just editing the ipchains file in /etc/sysconfig/ipchains
I am just confused with the template file to re stealth those ports