aboutsummaryrefslogtreecommitdiff
path: root/security/knock/pkg-descr
diff options
context:
space:
mode:
authorShaun Amott <shaun@FreeBSD.org>2006-07-12 18:03:24 +0000
committerShaun Amott <shaun@FreeBSD.org>2006-07-12 18:03:24 +0000
commita2aab3122c558df8c1a16521982ed982ab1b2353 (patch)
treebd0dd7ddd8212e70735bde5983d3ddd5e31c2ac5 /security/knock/pkg-descr
parent4d3242041bec7bf2c011e622c05e6b4ca7db9eb0 (diff)
downloadports-a2aab3122c558df8c1a16521982ed982ab1b2353.tar.gz
ports-a2aab3122c558df8c1a16521982ed982ab1b2353.zip
Notes
Diffstat (limited to 'security/knock/pkg-descr')
-rw-r--r--security/knock/pkg-descr11
1 files changed, 11 insertions, 0 deletions
diff --git a/security/knock/pkg-descr b/security/knock/pkg-descr
new file mode 100644
index 000000000000..b5d0765e7211
--- /dev/null
+++ b/security/knock/pkg-descr
@@ -0,0 +1,11 @@
+knockd is a port-knock server. It listens to all traffic on an ethernet
+(or PPP) interface, looking for special "knock" sequences of port-hits.
+
+A client makes these port-hits by sending a TCP (or UDP) packet to a
+port on the server. This port need not be open -- since knockd listens
+at the link-layer level, it sees all traffic even if it's destined for
+a closed port. When the server detects a specific sequence of port-hits
+port-hits, it runs a command defined in its configuration file. This
+can be used to open up holes in a firewall for quick access.
+
+WWW: http://www.zeroflux.org/cgi-bin/cvstrac/knock/wiki/