Things To Do
-  Local packet NAT.
-  Handle NAT of fragments.
-  Solve mark clashes.
-  More infrastructure for NAT in userspace.
-  Port old masquerading per-protocol modules.
-  Cool TCP load-sharing failover NAT.
-  IPv6 packet filtering.
-  Serious profiling on real traffic patterns.
-  Actually use nfcache field for caching (combine with route
     cache?)
-  Gnome packet watcher.
-  Documentation.
-  Port ipfwadm and ipchains as kernel modules.
Next