| ← Revision 26 as of 2002-01-31 20:23:48  Size: 2897 Comment:  | ← Revision 27 as of 2002-02-07 17:26:14 → Size: 3012 Comment:  | 
| Deletions are marked like this. | Additions are marked like this. | 
| Line 35: | Line 35: | 
| * Custom permissions/bandwidth setting on a per user basis * connect to centralized user/node(gawd?) database | 
NoCatAuth is the CaptivePortal that is being developed by the NoCat group. It is in beta right now, and will support having an open system with configurable restrictions to bandwidth and ports based on if the user is a trusted member or not. --MichaelCodanti
AdamShand and DonPark sat down and made a list of all the things they would like to see added or didn't like about NoCatAuth. (SchuylerErle updated it to reflect the current nightly.)
Done!
- Fix auto-logout code
- Fix defunct process problem (One created for each Permit/Deny)
- Allowed domains exception in initialize.fw (for ptp, easystreet etc)
- Capture requests directly to the gateway's IP (i.e. http://10.11.12.1/) 
Short Term
- Branded splash page (open and captive mode) (NodeSplashPages) 
- Ability to logout.
- Pop up window which allows persistent branding, logout button, node info, trouble reports etc
- Move firewall rules to separate table (so nocat rules can ignore all interfaces but the ones specified in nocat.conf)
- Ability to display AcceptableUseAgreement (via server side include from central server?) 
- Firewall rules to protect local networks (eg. "ghettowall")
- A way to put up a maintenance message (eg. we're working on stuff, come back later)
- Put a link to a CGI script in the popup nav window which updates the maps server with a "last accessed on xxxxx" message.
- Ability to track repeat users (business' may worry about other businesses leaching off them)
- By desing, should not effect traffic on any interfaces but ones listed in nocat.conf. All other options should have a setting to either deny all or allow all.
- Watchdog function - a selftest every 5 mins
- Automatically determing wireless network by looking at the inside interface.
- Make sure that ingress/egress filtering is done so wireless clients can't do "bad things"
Longer Term
- Don't assume NAT
- IPv6 support
- Bandwith limiting/traffic shaping - It already does this to some extent. --MichaelCodanti 
 
- Ability to set bandwidth restrictions based on time of day
- Custom permissions/bandwidth setting on a per user basis
- connect to centralized user/node(gawd?) database
Tested Browsers
- Not Compatible - OmniWeb 4.0.6 on Mac OS X (hopefully to be fixed soon) 
 
- Compatible - Mozilla 5.0: 0.9.7+ on Windows 98
- Lynx 2.8.3 on Windows 98
- Opera 6.0 Build 1010 on Windows 98
- UBvision 6.0 on Windows 98
- IE 5.5 on Windows 98
- IE 6.0 on Windows XP
- IE on PocketPC 2000
- IE on PocketPC 2002
- Links 0.84 on Debian Linux
- Galeon 1.0.2 on Debian Linux
- Konqueror 2.2.2 on Debian Linux
- Mozilla 0.9.7 on Debian Linux
- Opera 5.0 Build 024 - [5] on Debian Linux
- Opera 6.0 TP3 on Debian Linux
- IE on Mac OS 9
- IE on Mac OS X
- Opera on Mac OS 9
- Opera on Mac OS X
- iCab on Mac OS 9
- iCab on Mac OS X
 

