summaryrefslogtreecommitdiffstats
path: root/contrib/ipfilter/todo
diff options
context:
space:
mode:
authordarrenr <darrenr@FreeBSD.org>1997-05-25 15:45:04 +0000
committerdarrenr <darrenr@FreeBSD.org>1997-05-25 15:45:04 +0000
commite0610b5498ab54082ddadbfebd47280245e3e0f8 (patch)
treef9876809ef0dd75bd4671d4afb7d3488f1972a5f /contrib/ipfilter/todo
parentd25503500842fdd0550710a7afb953d1b8f20f00 (diff)
downloadFreeBSD-src-e0610b5498ab54082ddadbfebd47280245e3e0f8.zip
FreeBSD-src-e0610b5498ab54082ddadbfebd47280245e3e0f8.tar.gz
Import version 3.2alpha7
Diffstat (limited to 'contrib/ipfilter/todo')
-rw-r--r--contrib/ipfilter/todo19
1 files changed, 9 insertions, 10 deletions
diff --git a/contrib/ipfilter/todo b/contrib/ipfilter/todo
index 3914bef..d90d75d 100644
--- a/contrib/ipfilter/todo
+++ b/contrib/ipfilter/todo
@@ -1,12 +1,5 @@
-* automatically use the interface's IP# for NAT rather than any specific IP#
- - Done. Use "0/32" as destination address/mask. Uses first interface IP#
- set for an interface.
-
* use fr_tcpstate() with NAT code for increased NAT usage security or even
- fr_checkstate()
-
-* use minor devices for controlling access to alternate parts of IP Filter
- such as filtering, accounting, state, NAT, etc.
+ fr_checkstate() - suspect this is not possible.
* see if the Solaris2 and dynamic plumb/unplumb problem is solvable
@@ -17,11 +10,17 @@ time permitting:
* record buffering for TCP/UDP
* modular application proxying
+on the way
* invesitgate making logging better
+done ?
* add reverse nat (similar to rdr) to map addresses going in both directions
-
-* add 'tail' switch to ipmon
(this might just be some changes to rdr). In 1:1 relationships maybe make
it an option.
+
+* keep fragment information for NAT/state entries automatically.
+done
+
+* support traceroute through the firewall
+
OpenPOWER on IntegriCloud