Re: port knocking - use closed ports for authentication

From: Fondula di Carceri (fondula.di.carceri_at_gmx.net)
Date: 05/15/03


Date: Thu, 15 May 2003 07:55:39 GMT


> port knocking is a novel method of using closed ports for user
> authentication
> http://mkweb.bcgsc.bc.ca/portknocking/
> the method allows remote users, in possession of a secret, to manipulate
> firewall rules to open ports thereby allowing connections into a
completely
> isolated networked host; the method can be extended to transfer arbitrary
> information across closed ports
> this approach to securing networked hosts is described in the current
issue
> of Sys Admin Magazine
> http://www.samag.com/current/

I've been doing this for over a year now for ssh and ftp... can't believe
this is something new..
you only need some creativity, a flexible packet filter and an homebrewed
ids :)

Sincerely,
Fondula di Carceri
[ fondula dot di dot carceri at gmx dot net . gpg or pgp on request ]



Relevant Pages

  • Re: port knocking - use closed ports for authentication
    ... > port knocking is a novel method of using closed ports for user ... > the method allows remote users, in possession of a secret, to manipulate ... [fondula dot di dot carceri at gmx dot net. ...
    (alt.computer.security)
  • port knocking - use closed ports for authentication
    ... port knocking is a novel method of using closed ports for user ... the method allows remote users, in possession of a secret, to manipulate ... isolated networked host; the method can be extended to transfer arbitrary ... Martin Krzywinski ...
    (alt.computer.security)
  • port knocking - use closed ports for authentication
    ... port knocking is a novel method of using closed ports for user ... the method allows remote users, in possession of a secret, to manipulate ... isolated networked host; the method can be extended to transfer arbitrary ... Martin Krzywinski ...
    (comp.security.firewalls)

Quantcast