What do you want to see in the pfSense package system?
-
LAYER 7 INSPECTION!!!
Thereby you can block traffic at packet level, based on packet content instead of header content… :)
Then you do not need port blocking, based on the fact that you do not need source, destination or anything other than content.....:)
Furthermore, you can route specific content to specific hosts on thye internal network. One of the good things with ISA 2006.
You can then have multible webservers among other things on the same inbound port...
-
Its on 2.0 right?
-
Squid 3.1 would be nice.
-
EMail Inspector (IMSpector for email) would be great!
-
New version of IMSpector.
-
inline snort would be the only thing I want
adding a l7 filter if possible, would also be good
-
I would love to see a spam filtering option…
-
-
Support for 3g modems as secondary wan (HSDPA/UMTS/EDGE/GPRS/GSM)
(If anyone knows how please tell me :)) -
Is already in 2.0
(and at least partially working from what i read) -
web Server ;D
-
I would like to see network storage in Pfsense to store music and movies is that possible it would solve problems .
-
A better traffic accounting system. For example bandwidthD does not give any options to look at certain times, or to go back 3 days to check an IPs usage on that day.
eg. I would like to be able to check down to the hour over any IP over all the logs. Possibly use drop down boxes to pick if you want to check its total usage since logs started, or monthly, weekly, daily, hourly. And have drop down boxes that react to these options to give you a way to input which month/week/day/hour/IP you want to check. -
OTP - One Time Password
TFA - Two Factor AuthenticationNow that the whole user and certificate management is in 2.0, some nice OTP and TFA would not harm.
Yubikey is only a few dollars. http://www.yubico.com/products/yubikey/
I wonder how difficult it would be to integrate its radius server.
http://code.google.com/p/yms/source/browse/branches/RADIUS_on_Premise/readme.txt
-respectively now new only these two:
http://code.google.com/p/yubikey-val-server-php/ - which should be easy to implement.
http://code.google.com/p/yubikey-ksm/ - a bit harder. a data base is needed (mysql or postgres)http://code.google.com/p/yubikey-ksm/wiki/Installation will tell more
-
Unbound DNS!
-
A better accounting and reporting solution than Ntop.
Untangle's reporting is quite intuitive:
http://www.untangle.com/Reports/Screenshots
http://www.untangle.com/Video/reports -
http://udpxy.sourceforge.net/
-
UNBOUND DNS !!!
it's BSD license
-
XenTools
-
Hardware monitoring. System temps via RRD and SMART status. Email notifications would be great too. Specially for smart status but for all of the above if possible.