You might want to re-think this, stateless rulesets are usually
slower. This is interesting:
http://www.undeadly.org/cgi?action=article&sid=20060927091645
Try setting net.inet.ip.ifq.maxlen to 256 (sysctl/sysctl.conf),
if you still see the congestion count increasing then search for
net.inet.ip.ifq.maxlen in the list archives and have a read.