diff options
author | Shaun Amott <shaun@FreeBSD.org> | 2006-07-12 18:03:24 +0000 |
---|---|---|
committer | Shaun Amott <shaun@FreeBSD.org> | 2006-07-12 18:03:24 +0000 |
commit | a2aab3122c558df8c1a16521982ed982ab1b2353 (patch) | |
tree | bd0dd7ddd8212e70735bde5983d3ddd5e31c2ac5 /security/knock/pkg-descr | |
parent | 4d3242041bec7bf2c011e622c05e6b4ca7db9eb0 (diff) | |
download | ports-a2aab3122c558df8c1a16521982ed982ab1b2353.tar.gz ports-a2aab3122c558df8c1a16521982ed982ab1b2353.zip |
Notes
Diffstat (limited to 'security/knock/pkg-descr')
-rw-r--r-- | security/knock/pkg-descr | 11 |
1 files changed, 11 insertions, 0 deletions
diff --git a/security/knock/pkg-descr b/security/knock/pkg-descr new file mode 100644 index 000000000000..b5d0765e7211 --- /dev/null +++ b/security/knock/pkg-descr @@ -0,0 +1,11 @@ +knockd is a port-knock server. It listens to all traffic on an ethernet +(or PPP) interface, looking for special "knock" sequences of port-hits. + +A client makes these port-hits by sending a TCP (or UDP) packet to a +port on the server. This port need not be open -- since knockd listens +at the link-layer level, it sees all traffic even if it's destined for +a closed port. When the server detects a specific sequence of port-hits +port-hits, it runs a command defined in its configuration file. This +can be used to open up holes in a firewall for quick access. + +WWW: http://www.zeroflux.org/cgi-bin/cvstrac/knock/wiki/ |