On 22 January 2009 c. 16:37:52 Steve Laurie wrote: > Hi all, > > I was wondering if someone could tell me why there's a need to write > a rule to block addresses that come under the private address space if > these addresses aren't routable over the Internet?
- Home Internet provider give you public IP but their internal network is still one of described in RFC 1918; - OpenBSD machine is bridging some traffic; - etc. And when you set up such rule you can control flow of matched packets (tag them, label them, etc); otherwise you cannot. -- WBR, Pereresus ne Vlezaet Buggy