-TODO/bugs In SILC Client Library
-================================
+TODO/bugs in Irssi SILC client
+==============================
+
+ o Add local command to switch the channel's private key when channel has
+ several private keys. Currently sending channel messages with many
+ keys is not possible because changing the key is not possible by the
+ user.
+
+ o JOINing to +a (requires passphrase to JOIN) does not work on autojoin.
+ Seems the passwords in the .silc/config has no effect.
+
+ o Add local commands to list the current server and client public keys
+ that the user has. And a local command to dump the contents of the
+ public key to the screen. Something like LISTKEYS, SHOWKEY...
+
+ o The QUIT command should wait for server's disconnection (at least for
+ a while) before exiting the application.
+
+ o The JOIN command's HELP is generated from Irssi IRCs JOIN help and
+ the syntax is not same in SILC. This must be fixed. Most likely
+ we must forget the Irssi's JOIN command and mimic it to get our
+ required syntax for it too.
- o Client library crashes if for example server timeouts protocol
- execution and disconnects the client. The client, on the other hand
- may still assume that the connection is active, even after receiving
- the EOF. Reason for this is that the clien library does not handle
- the SilcSocketConnection reference counter at all. This must be
- fixed.
+ o We should get rid of the clientconfig.[ch] in Irssi SILC and move the
+ cipher, hash, hmac and pkcs configuration to the Irssi SILC's config
+ file.
- o When receiving client's public key with GETKEY or in key agreement
- protoocl it probably should be saved using the nickname and the real
- name of the client instead of the host name of the client.
+ o Add PERL scripting support from Irssi CVS.
- o Add client library parameters or options that handle what kind of
- messages the library should print out (using `say' client operation,
- for example) and what is left for the application to print. The
- appliation could for example set that it handles all command printing
- but all error printing should be handled by the library, etc...
- This is not a showstopper.
+ o Extend the /HELP command to support sub commands or something. So
+ that user can say /help set mutual_authentication they would get
+ help of the mutual_authentication setting.
- o Input line on UI is buggy. Cursor movement etc bugs. Too lazy to
- fix it.
+ o Set different kind of settings, like, /set mutual_authentication,
+ /set key_exchange_timeout, /set conn_auth_timeout etc etc.
+
+
+TODO/bugs In SILC Client Library
+================================
+
+ o JOIN command's argument handling is buggy. See the XXX in the code.
TODO/bugs In SILC Server
========================
- o When server quits and all clients of that server are removed from all
- channels the channel keys are re-generated for all clients. This is
- a bug and should be done only once per channel after all clients of
- the server has been removed.
-
- o Acceptance of incoming connections (client and server connections)
- should be checked before key exchange protocol. Currently it is
- checked at the authentication phase after KE, that is ok, but it should
- be checked before starting KE, as well. This should be done so that
- is first checks denied connections, then client connections and then
- server connections. There is no use to execute the SKE if the connection
- will not be allowed.
+ o Add perhaps /var/run/silcd.pid for PID information for the server.
- o DNS/IP lookup blocks the server. This must be fixed. Check the
- resolver stuff (resolver(3), resolver(5)). Either we have to do the
- own resolver stuff (through scheduler, if possible without writing
- too much own stuff) or use threads.
+ o Add a timeout to handling incmoing JOIN commands. It should be
+ enforced that JOIN command is executed only once in a second or two
+ seconds. Now it is possible to accept n incoming JOIN commands
+ and process them without any timeouts. THis must be employed because
+ each JOIN command will create and distribute the new channel key
+ to everybody on the channel.
o The backup router support described in the protocol specification
should be done at some point.
- o Server says that it is able to listen on multiple ports but currently
- that is bogus. It can, but internals are for single server.
+ o Incomplete IPv6 support:
- o Protocol execution timeouts are hard coded, should be configurable.
+ o silcd/serverid.c and its routines supports only IPv4.
- o IP address fields in configuration file should accept mask format
- as well, IP/MASK, and not just plain IP.
+ o New configuration file format must be added. The new one will be
+ done using the dotconf config library (lib/dotconf). The following
+ tasks relates closely to this as well and must be done at the same time
+ when adding the new config file format:
- o Connection classes should be actually implemented in serverconfig.c.
- They can be defined but they are totally ignored currently. And they
- should be redefined also.
+ o Server says that it is able to listen on multiple ports but
+ currently that is bogus. It can, but internals are for single
+ server.
+
+ o Protocol execution timeouts are hard coded, should be
+ configurable.
+
+ o IP address fields in configuration file should accept mask
+ format as well, IP/MASK, and not just plain IP.
+
+ o Connection classes should be actually implemented in
+ serverconfig.c. They can be defined but they are totally
+ ignored currently. And they should be redefined also.
TODO/bugs In SILC Libraries
not in distribution), but it is not used yet, and it requires some
tweaking on the Makefiles (we want static lib not shared).
- o Random Number Generator needs some tweaking. Reading /dev/random may
- block resulting slow initialization of RNG. Some other things in the
- RNG may block as well. Also, I have some pending changes to the RNG
- that needs to be commited (from Schneier's Yarrow-160 paper). They
- should make the RNG even better.
+ o All payload parsing (decoding) functions should take unsigned char *
+ and uint32 as data and data length as arguments. Now some of the
+ routines do already that but most of the routines use SilcBuffer.
+ The SilcBuffer ones should be removed since buf->data and buf->len
+ is more convenient to use. However, the silc_buffer_[un]format
+ routines support only SilcBuffer so they would require reallocation
+ of SilcBuffer. Maybe support for raw data (and not just SilcBuffer)
+ should be added silc_buffer_[un]format_? routines. These are currently
+ only cosmetic changes but at some point must be done to make the
+ payload interfaces consistent.
- o IPv6 support for ID's and into the code.
+ o Incomplete IPv6 support:
- o Some of the ciphers in lib/silccrypt does not implement the SILC
- Crypto API correctly.
+ o All network routines in lib/silcutil/silcnet.[ch] does not
+ support IPv6.
+ o silc_id_render supports only IPv4 based ID's in the file
+ lib/silcutil/silcutil.c.
- o SIM support for SILC PKCS API needs to made so that they could be
- used as SIM's. At the same time some work is required on prime
- generation as the way it is done now sucks. Read from code for
- more (silcpkcs.h).
+ o Add builtin SOCKS and HTTP Proxy support, well the SOCKS at least.
+ SILC currently supports SOCKS4 and SOCKS5 but it needs to be compiled
+ in separately.
-TODO After 1.0
-==============
+TODO/Bugs in native WIN32 support (libraries)
+=============================================
+
+ o silc_net_create_connection_async does not work the same way than on
+ Unix. Do it with threads on WIN32. The function works but is not
+ actually async currently.
- o Pthreads support. A lot of problems are solved with server (and with
- client as well) if we add pthread support. We can forget things such
- as non-blocking connecting etc, and we can do things such as DNS/IP
- lookups async. The server itself also benefits great deal from
- threads, especially from performance point of view.
- But, this is not a small task and almost entire SILC Library has to
- be made re-entrant. Own API is probably added for the threads support
- to make changes in the future as painless as possible. So the API
- would have things like silc_mutex_lock, silc_mutex_unlock and
- friends...
+TODO In SILC Protocol
+=====================
+
+ o If channel founder mode is set and the invite mode is set on channel
+ then the founder should be added to the list automatically so that
+ if the founder signoff's it will be able join again to the invite only
+ channel wihtout being invited.
+
+
+TODO After 1.0
+==============
o X.509 certificate support. SILC protocol supports certificates and
it would be great to have support for them. This is a big task as
to start writing one myself. Anyhow, the OpenSSL X.509 lib should
be checked.
+ Other package that should be checked is the NSS's X509 library.
+
o SSH2 public keys support. Maybe - not really needed but could be
nice as SSH is widely used all over the place. SILC Protocol
supports SSH2 public keys.