Hi Jerome,
making the systemd unit file read /etc/default/firehol would not change a thing because there is no logic available to act upon the START_FIREHOL variable. My patch in Salsa may not yet be quite functional, but it changes the 'firehol' script itself to read /etc/default/firehol and then exit if this variable is not set to YES. Cheers, Toni