X-Git-Url: http://www.chiark.greenend.org.uk/ucgi/~ian/git?p=secnet.git;a=blobdiff_plain;f=TODO;h=2d5e447edeb162360ff15fbeb94e1a1754d691b3;hp=b2e871bf4693e255dc4f9a8335a20de7d8052a73;hb=0e646750a699f6dac806c7752c81d160c4f78987;hpb=4efd681a66c15bc6f81eefc69396669e165e5e0f diff --git a/TODO b/TODO index b2e871b..2d5e447 100644 --- a/TODO +++ b/TODO @@ -1,27 +1,34 @@ -configure.in: cut down to just the required tests. Support for installation. +dh.c: change format to binary from decimal string (without introducing +endianness problems) -Makefile.in: support for installation. +netlink.c: test the 'allow_route' option properly. +Add fragmentation code. Check that we comply with RFC1812. -conffile.c: deal with line numbers from included conffiles correctly +random.c: test properly -dh.c: change format to binary from decimal string - -netlink.c: done. Test tun-old code. - -random.c: test - -resolver.c: done +resolver.c: ought to return a list of addresses for each address; the +site code ought to remember them and try contacting them in turn. rsa.c: check padding type, change format to binary from decimal string +(without introducing endianness problems) + +site.c: Abandon key exchanges when a bad packet is received. Modify +protocol to include version fields, as described in the NOTES +file. Implement keepalive mode. Make policy about when to initiate key +exchanges more configurable (how many NAKs / bad reverse-transforms +does it take to prompt a key exchange?) -secnet.c: done +slip.c: restart userv-ipif to cope with soft routes? Restart it if it +fails in use? -site.c: the site_incoming() routing could be implemented much more -cleanly using a table. There's still quite a lot of redundancy in this -file. +transform.c: separate the transforms into multiple parts, which can +then be combined in the configuration file. Will allow the user to +plug in different block ciphers, invent an authenticity-only mode, +etc. (similar to udptunnel) -transform.c: done +udp.c: option for path-MTU discovery (once fragmentation support is +implemented in netlink) -udp.c: done -util.c: sort out logging +global: +consider using liboop for the event loop