Slack always run /etc/rc.d/rc.firewall if it presents, and executable.
Running firewall from rc.firewall is preferable than rom rc.local, since rc.firewall is executed after rc.inet1 (network initialisation),
in the begining of rc.inet2 before other network services up.
The philosophy is, close the holes before you open the doors