In /etc/rules these lines are not present at all. They appear only in "ipfw list". But before only one line "65535 0 0 deny ip from any to any" appeared
ok thanks. It just felt like the OP was missing context to me.
ipfw is "first match wins" if I recall correctly (pf is last match wins except for quick) so adding rules at the very end in ipfw are "catchall" and these specific rules are roughly "pf default deny" so a good thing.
As to why they got added on the update? I have no idea but can think "change of defaults"
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.