This is a discussion on Re: feature-request: trap-door within the OpenSSH Development forums, part of the Networking and Network Related category; Why would you place this functionality at the application layer, why not use port knocking at the firewall layer? It'...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
Why would you place this functionality at the application layer, why not use
port knocking at the firewall layer? It's a lot simpler to implement (even if you have to set it up manually via the services and inetd.conf files), than to change the code for sshd. A couple of lines in an inetd.conf and services file can make an easy to use port knocking to open an SSHD daemon on a port the knocker specifies. Then after 30 seconds, the listener closes. If there's interest, I can submit an example. _______________________________________________ openssh-unix-dev mailing list openssh-unix-dev@mindrot.org http://www.mindrot.org/mailman/listi...enssh-unix-dev |
![]() |
| Thread Tools | |
| Display Modes | |
|
|