-TODO/bugs In SILC Client Library
-================================
+TODO/bugs in Irssi SILC client
+==============================
+
+ o Add local command to switch the channel's private key when channel has
+ several private keys. Currently sending channel messages with many
+ keys is not possible because changing the key is not possible by the
+ user.
+
+ o JOINing to +a (requires passphrase to JOIN) does not work on autojoin.
+ Seems the passwords in the .silc/config has no effect.
- o Client library crashes if for example server timeouts protocol
- execution and disconnects the client. The client, on the other hand
- may still assume that the connection is active, even after receiving
- the EOF. Reason for this is that the clien library does not handle
- the SilcSocketConnection reference counter at all. This must be
- fixed.
+ o Add local commands to list the current server and client public keys
+ that the user has. And a local command to dump the contents of the
+ public key to the screen. Something like LISTKEYS, SHOWKEY...
- o When receiving client's public key with GETKEY or in key agreement
- protoocl it probably should be saved using the nickname and the real
- name of the client instead of the host name of the client.
+ o The JOIN command's HELP is generated from Irssi IRCs JOIN help and
+ the syntax is not same in SILC. This must be fixed. Most likely
+ we must forget the Irssi's JOIN command and mimic it to get our
+ required syntax for it too.
- o Add client library parameters or options that handle what kind of
- messages the library should print out (using `say' client operation,
- for example) and what is left for the application to print. The
- appliation could for example set that it handles all command printing
- but all error printing should be handled by the library, etc...
- This is not a showstopper.
+ o We should get rid of the clientconfig.[ch] in Irssi SILC and move the
+ cipher, hash, hmac and pkcs configuration to the Irssi SILC's config
+ file.
- o Input line on UI is buggy. Cursor movement etc bugs. Too lazy to
- fix it.
+ o Add PERL scripting support from Irssi CVS.
+
+ o Extend the /HELP command to support sub commands or something. So
+ that user can say /help set mutual_authentication they would get
+ help of the mutual_authentication setting.
+
+ o Set different kind of settings, like, /set mutual_authentication,
+ /set key_exchange_timeout, /set conn_auth_timeout etc etc.
+
+
+TODO/bugs In SILC Client Library
+================================
+
+ o JOIN command's argument handling is buggy. See the XXX in the code.
TODO/bugs In SILC Server
========================
- o When server quits and all clients of that server are removed from all
- channels the channel keys are re-generated for all clients. This is
- a bug and should be done only once per channel after all clients of
- the server has been removed.
+ o Implement the <founder auth> and founder privileges gaining to
+ the JOIN command. This will bypass invite-only mode as well for
+ the client who got the founder mode during JOIN.
- o Acceptance of incoming connections (client and server connections)
- should be checked before key exchange protocol. Currently it is
- checked at the authentication phase after KE, that is ok, but it should
- be checked before starting KE, as well. This should be done so that
- is first checks denied connections, then client connections and then
- server connections. There is no use to execute the SKE if the connection
- will not be allowed.
+ o Optimize the WHOIS and IDENTIFY commands to check if the request
+ includes an ID or multiple IDs, then they are checked from local cache
+ first, and not sent directly to router. This is because if they
+ are found in the local cache there's no need to send them to the
+ router. Only if some ID is not found, or an found entry is
+ incomplete it can be queried from the router. This way these
+ commands become faster, and for example JOIN command becomes a lot
+ faster since the server ends up resolving the same information only
+ once, as opposed to resolve it everytime JOIN command is issued, like
+ it does now.
- o DNS/IP lookup blocks the server. This must be fixed. Check the
- resolver stuff (resolver(3), resolver(5)). Either we have to do the
- own resolver stuff (through scheduler, if possible without writing
- too much own stuff) or use threads.
+ The same thing can be done with WHOWAS command as well.
- o The backup router support described in the protocol specification
- should be done at some point.
+ It is important to send these requests to router only if they can be
+ expanded to many results (as when doing WHOIS for nickname). If
+ they are explicit (like requesting by ID) the local cache MUST be
+ searched before sending it to router.
- o Server says that it is able to listen on multiple ports but currently
- that is bogus. It can, but internals are for single server.
+ o Announcements are incomplete: channel topics are not announced,
+ user modes (UMODE) are not announced.
- o Protocol execution timeouts are hard coded, should be configurable.
+ o Change the server to connect to another server from low ports (706)
+ and not from high ports. Currently we cannot do incoming connection
+ checking by remote port because the port is not fixed.
- o IP address fields in configuration file should accept mask format
- as well, IP/MASK, and not just plain IP.
+ o Backup router related issues
- o Connection classes should be actually implemented in serverconfig.c.
- They can be defined but they are totally ignored currently. And they
- should be redefined also.
+ o After backup resume protocol the TOPIC_SET was not handled
+ correctly by all (unknown Channel ID).
+ o Channel user mode changes are notified unnecessarely when
+ switching to backup router on router crash.
-TODO/bugs In SILC Libraries
-===========================
+ o If client's public key is saved in the server (and doing public key
+ authentication) then the hostname and the username information could
+ be taken from the public key. Should be a configuration option!
- o Compression routines are missing. The protocol supports packet
- compression thus it must be implemented. SILC Comp API must be
- defined. zlib package is already included into the lib dir (in CVS,
- not in distribution), but it is not used yet, and it requires some
- tweaking on the Makefiles (we want static lib not shared).
+ o Add a timeout to handling incoming JOIN commands. It should be
+ enforced that JOIN command is executed only once in a second or two
+ seconds. Now it is possible to accept n incoming JOIN commands
+ and process them without any timeouts. THis must be employed because
+ each JOIN command will create and distribute the new channel key
+ to everybody on the channel.
+
+ o New configuration file format must be added. The new one will be
+ done using the dotconf config library (lib/dotconf). The following
+ tasks relates closely to this as well and must be done at the same time
+ when adding the new config file format:
+
+ o Server says that it is able to listen on multiple ports but
+ currently that is bogus. It can, but internals are for single
+ server.
- o Random Number Generator needs some tweaking. Reading /dev/random may
- block resulting slow initialization of RNG. Some other things in the
- RNG may block as well. Also, I have some pending changes to the RNG
- that needs to be commited (from Schneier's Yarrow-160 paper). They
- should make the RNG even better.
+ o Protocol execution timeouts are hard coded, should be
+ configurable.
- o IPv6 support for ID's and into the code.
+ o IP address fields in configuration file should accept mask
+ format as well, IP/MASK, and not just plain IP.
- o Some of the ciphers in lib/silccrypt does not implement the SILC
- Crypto API correctly.
+ o Connection classes should be actually implemented in
+ serverconfig.c. They can be defined but they are totally
+ ignored currently. And they should be redefined also.
+
+
+TODO/bugs In SILC Libraries
+===========================
- o SIM support for SILC PKCS API needs to made so that they could be
- used as SIM's. At the same time some work is required on prime
- generation as the way it is done now sucks. Read from code for
- more (silcpkcs.h).
+ o WIN32 silc_net_create_connection_async does not work the same way
+ than on Unix. Do it with threads on WIN32. The function works but
+ is not actually async currently.
TODO After 1.0
==============
- o Pthreads support. A lot of problems are solved with server (and with
- client as well) if we add pthread support. We can forget things such
- as non-blocking connecting etc, and we can do things such as DNS/IP
- lookups async. The server itself also benefits great deal from
- threads, especially from performance point of view.
+ o Compression routines are missing. The protocol supports packet
+ compression thus it must be implemented. SILC Zip API must be
+ defined. zlib package is already included into the lib dir (in CVS,
+ not in distribution), but it is not used yet, and it requires some
+ tweaking on the Makefiles (we want static lib not shared).
- But, this is not a small task and almost entire SILC Library has to
- be made re-entrant. Own API is probably added for the threads support
- to make changes in the future as painless as possible. So the API
- would have things like silc_mutex_lock, silc_mutex_unlock and
- friends...
+ o Add builtin SOCKS and HTTP Proxy support, well the SOCKS at least.
+ SILC currently supports SOCKS4 and SOCKS5 but it needs to be compiled
+ in separately.
o X.509 certificate support. SILC protocol supports certificates and
it would be great to have support for them. This is a big task as
to start writing one myself. Anyhow, the OpenSSL X.509 lib should
be checked.
+ Other package that should be checked is the NSS's X509 library.
+
o SSH2 public keys support. Maybe - not really needed but could be
nice as SSH is widely used all over the place. SILC Protocol
supports SSH2 public keys.
+ o OpenPGP certificate support.
+
o Cipher optimizations (asm, that this) at least for i386 would be nice.