Exploring the Mac OS X Firewall
Subject:   Hostname in rules?
Date:   2005-03-17 01:22:33
From:   peterhickman
While you can have rules like

allow tcp from to any 22 in

I'm not sure that you could use a * instead of the fred. You would probably have to iterate all possible values for *. The only way to find out is to try it.

Do you have the netmask for *, you could use that.

allow tcp from to any 22 in

Is there another way of approaching this, could you just only allow the various private address ranges in and exclude the rest. Assuming that the * are all private.