Things To Do
- Handle NAT of fragments.
- Solve mark clashes.
- More infrastructure for NAT in userspace.
- Port old masquerading per-protocol modules.
- Cool TCP load-sharing failover NAT.
- IPv6 packet filtering.
- Serious profiling on real traffic patterns.
- Actually use nfcache field for caching (combine with route
cache?)
- Gnome packet watcher.
- Port ipfwadm and ipchains as kernel modules.
Next