If you're also looking for a simple and relaxing way to set these rules up; (as opposed to doing it the "hard and manly" way :)
then I suggest that you install webmin and just click your way through the 'network -> linux firewall'-section.
And then, if you feel you should tighten it up even...