It enables us to control link-local connections by interface like this: ALL : [fe80::%ed0]/10 : allow ALL : [fe80::]/10 : deny
or two, inetd will gain the necessary functionality. At that stage, I'll make wrapping the default for sendmail and portmapper as well.