UFW features for Lucid

Registered by Jamie Strandboge

UFW features for Lucid.

Blueprint information

Status:
Complete
Approver:
Robbie Williamson
Priority:
High
Drafter:
Jamie Strandboge
Direction:
Approved
Assignee:
Jamie Strandboge
Definition:
Approved
Series goal:
Accepted for lucid
Implementation:
Implemented
Milestone target:
None
Started by
Jamie Strandboge
Completed by
Jamie Strandboge

Related branches

Sprints

Whiteboard

Work items:
parser improvements (make easier to add commands): DONE
adjust testsuite and packaging for easy backporting: DONE
boot optimizations: DONE
upstart adjustments (ensure start before networking): DONE
fix various logging bugs: DONE
fix 'resource temporarily unavailable' bug: DONE

Work items (lucid-alpha-3):
investigate invalid combinations of TCP flags (LP: #323950): DONE
add some reports: DONE
rsyslog support: DONE
delete by rule number (LP: #367571): DONE
ufw reset (LP: #436608): DONE
force option to not prompt for ssh: DONE

== TBD items ==
Here is a list of items to be decided upon, grouped loosely in order of popularity.

=== high ===
 * manage FORWARD (NAT, port redirections, masquerading): popular request
 * network-manager integration and simple gui (separate from gufw)

=== medium ===
 * D-Bus/policykit integration (required for NM)
 * configurable limit parameters
 * IPv6 and 6to4 tunnels

=== low ===
 * QoS
 * tables support (eg, for blacklisting based on file)
 * use hashlimits for 'limit' command (for ipv6)
 * mac address filtering

=== deferred ===
 * enable ufw by default
 * dynamically detect outbound connections and somehow prompt

(?)

Work Items

This blueprint contains Public information 
Everyone can see this information.