SYSTEM WARNING: 'date_default_timezone_get(): It is not safe to rely on the system's timezone settings. You are *required* to use the date.timezone setting or the date_default_timezone_set() function. In case you used any of those methods and you are still getting this warning, you most likely misspelled the timezone identifier. We selected the timezone 'UTC' for now, but please set date.timezone to select your timezone.' in '/usr/share/mantis/www/core.php' line 264

0000542: Any chance of port knocking? - MantisBT
MantisBT - Endian Firewall
View Issue Details
0000542Endian FirewallSecuritypublic2008-02-03 09:342008-04-11 12:41
0000542: Any chance of port knocking?
Endian is awesome, although the beta is a bit rocky...

Any chance of including port knocking like doorman, knock, or fwknop? [^] [^] [^]

No tags attached.
? knock-0.5-0endian0.i586.rpm (6,993) 2008-04-11 07:37
? knock-extras-0.5-0endian0.i586.rpm (16,379) 2008-04-11 07:37
? knock-server-0.5-0endian0.i586.rpm (18,774) 2008-04-11 07:37
Issue History
2008-02-03 09:34josh123New Issue
2008-04-11 02:12jaebirdNote Added: 0000983
2008-04-11 07:35ra-endianNote Added: 0000984
2008-04-11 07:37ra-endianFile Added: knock-0.5-0endian0.i586.rpm
2008-04-11 07:37ra-endianFile Added: knock-extras-0.5-0endian0.i586.rpm
2008-04-11 07:37ra-endianFile Added: knock-server-0.5-0endian0.i586.rpm
2008-04-11 12:41jaebirdNote Added: 0000985

2008-04-11 02:12   
I second this request, port knocking is the "new" state-of-art for obscuring internal services.
2008-04-11 07:35   
you can restrict access to services by IP. security through obscurity is a controversial principle in security engineering...

i have created a rpm(knockd) for you and attached to this message.
For configuring the demaen you should read the documentation and edit /etc/knockd.conf
2008-04-11 12:41   
cool, thanks. I'll try it out.

As far as "controversy", I use a combination lock on my locker at the gym, but I don't keep anything valuable in it. I think of port knocking as the mote around my castle...just one more layer.