[Novalug] Meeting topic suggestion - openvpn

Xavier Belanger tux at belanger.fr
Wed Sep 28 20:02:39 EDT 2011


Hi,

> There is an existing technique called SPA (Single Packet Authentication)
> that allows you to send an encrypted packet to a host that basically says
> "allow access from the host I just connected from").  Take a look at 'fwknop'
> for an open source implementation.

An other method is "Port knocking" when you trie to connect to some
specifics ports in a specific order:

[ https://secure.wikimedia.org/wikipedia/en/wiki/Port_knocking ]

[ http://www.marksanborn.net/linux/add-port-knocking-to-ssh-for-extra-security/ ]

Bye.
-- 
Xavier Belanger



More information about the Novalug mailing list