summaryrefslogtreecommitdiffstats
path: root/contrib/ipfilter/todo
blob: f991db4cc2fc1a0d5fb4335b9cd402425abf00a0 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
* use fr_tcpstate() with NAT code for increased NAT usage security or even
  fr_checkstate() - suspect this is not possible.

* see if the Solaris2 and dynamic plumb/unplumb problem is solvable
done ?

time permitting:

* load balancing across interfaces

* record buffering for TCP/UDP

* modular application proxying
on the way

* keep fragment information for state entries automatically.
done for NAT

* support traceroute through the firewall
  (i.e. fix up ICMP errors coming back for NAT)
done

* allow multiple ip addresses in a source route list for ipsend

* complete Linux port to implement all the IP Filter features
OpenPOWER on IntegriCloud