re: Security?
Authored by: nicksay on Oct 24, '04 04:51:23AM

in reply to editing the file...

As far as I can tell, that is a file that is generated/updated by the Sharing Preference Pane when you make changes. Then, I think, the Pane calls the "firewalltool" program, located in "/System/Library/PrivateFrameworks/NetworkConfig.framework/Versions/A/Resources/". This tool, I think, flushes the ipfw rules, adds a default restrictive set of rules, then adds "allow" rules for each port listed in the file.

I deduced this from the "NetworkExtensions" StartupItem, located in "/System/Library/StartupItems/NetworkExtensions/".

So, to summarize, changing the port in that plist file will only change the firewall entry, not the VPN server.

