I'm not sure if you've looked into Ubiquiti or Mikrotik, but they have some hardware that may satisfy your requirements. The hardware is also fairly reasonably priced, in the 80-150 dollar range. 


I think we're talking past each other.  By proxy all I mean is the VPN
endpoint (which seems to be a common use of the term).  I'm not going
to run a VPN to some host that is going to use somethign like squid to
re-transmit my http gets or anything like that.  You could probably
call your gateway a proxy in that sense.

> Sure thing; I'll have to review and see what needs to be scrubbed.. feel
> free to grab me on IRC (root^2 on freenode) to remind me.

Sorry - I was just thanking you in general.  That said, I'm sure there
are many would would be interested in your configs.  I was running
shorewall quite a while ago.

I'll have to look into my options.  Obviously if I go with something
like openwrt I'll have to use the GUIs.  I have no concerns that I'll
be able to get everything working if I just use shorewall or set up my
own netfilter rules/etc.  I was more concerned that if I went the
route of using something like OpenWRT that I would not be able to have
this much control over my routing.

