Additional base functionality needed Management web interface Features / services to implement later DNSSEC, bind9 / nsd for making sure DNSSEC is used? See system.sh fail2ban