The firewall module already had the ability to query other modules
to translate a logical name (key1/key2) into either an IP address
(or interface address). This was used by the dialout,redhatppp and
pppdialin modules. This is useful to establish firewall rules when
the exact IP address is not known.
The fwinfo api was changed to accomodate a new module: userfirewall.
Now a module may provide several IP/netmask for one query. The firewall
module will generate one rule for each IP/netmask pair, as needed.
The userfirewall module will be announced shortly.