freebsd-skq/contrib/ipfilter/todo
1997-05-25 15:45:04 +00:00

27 lines
653 B
Plaintext

* use fr_tcpstate() with NAT code for increased NAT usage security or even
fr_checkstate() - suspect this is not possible.
* see if the Solaris2 and dynamic plumb/unplumb problem is solvable
time permitting:
* load balancing across interfaces
* record buffering for TCP/UDP
* modular application proxying
on the way
* invesitgate making logging better
done ?
* add reverse nat (similar to rdr) to map addresses going in both directions
(this might just be some changes to rdr). In 1:1 relationships maybe make
it an option.
* keep fragment information for NAT/state entries automatically.
done
* support traceroute through the firewall