Yes I know this is technically true. One could use iptables, but it is easier for people (users) to do this instead of getting iptables / pf or whatever configured. It is one size fits all.