@bmeeks:
Same thought processes apply for any list. Do you want to selectively allow some packets based on their source IP, and let the default block handle everything else; or do you want to have an "allow from any source IP" on the WAN rule and let the firewall check each packet IP against a bunch of IPs on a bunch of lists to see if it should in reality block the traffic.
I, and some others on here, recommend the former approach. Use smaller "allow" lists in conjunction with the default block.
However, I'm not trying to change your mind. You seem to have formed an opinion for how you want to do it, so do it that way and don't fret over it.
Bill
No, I'm using the package as recommended in the documentation and common sites that offer instructions. I asked, in the initial post, for comments from people who knew what I did and covered the same territory. The info on the lists was vague. The country blocking is really in your face in the package and appears to be recommended. Thus my questions for actual package users, as opposed to people who have opinions but no direct experience.
Thanks, though, for the alias info, I intend to study it closely.