logging app level http data in PF firewall?

Without installing a full blown proxy such as squid, is there anything in ports that will (at a minimum) log urls of sessions through a PF firewall? I thought about using various components of dsniff, or some creative ngrepping, but that seems kinda cheesy (as well as a security slip).


