Summary: 63 instances, 47 unique Text Count // TODO: All these below need to be registered in the same way as above 3 // TODO Validate. 2 // TODO Do we want to do anything on error? 1 // TODO Memory leak; use a single parser buffer to avoid per-entry 1 * TODO: Check if it is safe to do this kind of pointer tricks 1 // TODO Support paths on operating systems other than Unix. 1 // TODO Validate 5 // TODO Always use the port number if the hostname 1 # TODO: Diffs 1 /* TODO: copy_rules return code should be taken into consideration. */ 2 /* TODO: set server_rec, why igonre return value? */ 1 /* TODO: check rc */ 2 // TODO: Why do we ignore return code here? 1 /* TODO: Validate the range here, while we can still tell the user if it's invalid */ 1 // TODO Needs improving (e.g. to support simplified HTTP/0.9 requests 1 * TODO: The current design of handing off modsec execution to a thread is happening too soon. It must 1 * TODO: Is there a way to define true null parameter values instead of 1 // TODO This header is optional, but is not allowed to appear more than once. 2 // TODO Validate 4 // TODO Do not use the port number if the hostname 1 // TODO This header is optional, but it is not allowed to appear more than once. 1 // TODO Make sure this is not an escaped char 1 // TODO If the hostname is not numeric, remove the port 1 // TODO need a good way to remove the element from array, maybe change array by tables or rings 1 # TODO: Verify sig 1 /* TODO: how to use ap_method_number_of ? 1 /* TODO: server_rec per server conf */ 1 char buf[HUGE_STRING_LEN + 1]; // FIXME: 2013-10-29 zimmerle: dynamic? 1 // TODO All these need reviewing 1 * TODO: add as a configuration parameter 1 // TODO: msre_engine_register_default_reqbody_processors(msce->msre); 1 * TODO: How do we free the previously string value stored here? 1 /* TODO Support relative filenames. */ 1 /* TODO: These need to move to flags in 2.6. For now log them 1 // TODO This parser implementation allows for invalid 1 * TODO We might still want to hold onto the original headers 1 apr_size_t salt_len = 16; //FIXME: salt_len should not be hard coded. 1 // TODO: Holding off on this for now (needs more testing) 1 //FIXME: size should not be hardcoded like that. 1 // FIXME: Should we handle more then one server at once? 1 * TODO: make UTF8 validation optional, as it depends on Content-Encoding 1 // TODO This header is required (a check for its appearance is made when 1 // FIXME: size should not be hardcoded. 1 // TODO Only one allowed 4 * TODO: deal more headers. 1 /* TODO check whether the parameter is a valid MIME type of "???" */ 1 // TODO I think the right thing to do is use the port numbers 1