summaryrefslogtreecommitdiffstats
path: root/contrib/ipfilter/todo
blob: d90d75db660a3cfc0b768a4791e07805fe3f30f8 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
* use fr_tcpstate() with NAT code for increased NAT usage security or even
  fr_checkstate() - suspect this is not possible.

* see if the Solaris2 and dynamic plumb/unplumb problem is solvable

time permitting:

* load balancing across interfaces

* record buffering for TCP/UDP

* modular application proxying
on the way

* invesitgate making logging better

done ?
* add reverse nat (similar to rdr) to map addresses going in both directions
  (this might just be some changes to rdr).  In 1:1 relationships maybe make
  it an option.

* keep fragment information for NAT/state entries automatically.
done

* support traceroute through the firewall

OpenPOWER on IntegriCloud