3 Things which might need doing:
5 - default private dbclient keys
7 - Make options.h generated from configure perhaps?
9 - handle /etc/environment in AIX
11 - check that there aren't timing issues with valid/invalid user authentication
14 - Binding to different interfaces
17 - SSH_MSG_IGNORE sending to improve CBC security
18 - DH Group Exchange possibly, or just add group14 (whatever it's called today)
22 - Be able to use OpenSSH keys for the client? or at least have some form of
25 - Client agent forwarding
27 - Handle restrictions in ~/.ssh/authorized_keys ?