diff options
author | darrenr <darrenr@FreeBSD.org> | 1997-05-25 15:45:04 +0000 |
---|---|---|
committer | darrenr <darrenr@FreeBSD.org> | 1997-05-25 15:45:04 +0000 |
commit | e0610b5498ab54082ddadbfebd47280245e3e0f8 (patch) | |
tree | f9876809ef0dd75bd4671d4afb7d3488f1972a5f /contrib/ipfilter/todo | |
parent | d25503500842fdd0550710a7afb953d1b8f20f00 (diff) | |
download | FreeBSD-src-e0610b5498ab54082ddadbfebd47280245e3e0f8.zip FreeBSD-src-e0610b5498ab54082ddadbfebd47280245e3e0f8.tar.gz |
Import version 3.2alpha7
Diffstat (limited to 'contrib/ipfilter/todo')
-rw-r--r-- | contrib/ipfilter/todo | 19 |
1 files changed, 9 insertions, 10 deletions
diff --git a/contrib/ipfilter/todo b/contrib/ipfilter/todo index 3914bef..d90d75d 100644 --- a/contrib/ipfilter/todo +++ b/contrib/ipfilter/todo @@ -1,12 +1,5 @@ -* automatically use the interface's IP# for NAT rather than any specific IP# - - Done. Use "0/32" as destination address/mask. Uses first interface IP# - set for an interface. - * use fr_tcpstate() with NAT code for increased NAT usage security or even - fr_checkstate() - -* use minor devices for controlling access to alternate parts of IP Filter - such as filtering, accounting, state, NAT, etc. + fr_checkstate() - suspect this is not possible. * see if the Solaris2 and dynamic plumb/unplumb problem is solvable @@ -17,11 +10,17 @@ time permitting: * record buffering for TCP/UDP * modular application proxying +on the way * invesitgate making logging better +done ? * add reverse nat (similar to rdr) to map addresses going in both directions - -* add 'tail' switch to ipmon (this might just be some changes to rdr). In 1:1 relationships maybe make it an option. + +* keep fragment information for NAT/state entries automatically. +done + +* support traceroute through the firewall + |