2006-07-12 20:03:24 +02:00
|
|
|
knockd is a port-knock server. It listens to all traffic on an ethernet
|
|
|
|
(or PPP) interface, looking for special "knock" sequences of port-hits.
|
|
|
|
|
|
|
|
A client makes these port-hits by sending a TCP (or UDP) packet to a
|
|
|
|
port on the server. This port need not be open -- since knockd listens
|
|
|
|
at the link-layer level, it sees all traffic even if it's destined for
|
|
|
|
a closed port. When the server detects a specific sequence of port-hits
|
|
|
|
port-hits, it runs a command defined in its configuration file. This
|
2013-01-20 19:28:49 +01:00
|
|
|
can be used to open up holes in a firewall for quick access.
|
2006-07-12 20:03:24 +02:00
|
|
|
|
2009-06-23 14:21:12 +02:00
|
|
|
WWW: http://www.zeroflux.org/projects/knock
|