[syslog-ng] DNS-based port knocking demo

Clayton Dukes cdukes at gmail.com
Wed Aug 15 22:33:04 CEST 2012


Wow, that's slick!
______________________________________________________________

Clayton Dukes
______________________________________________________________


On Wed, Aug 15, 2012 at 12:41 PM, Peter Gyongyosi <gyp at balabit.hu> wrote:

> On 08/14/2012 10:58 PM, Gergely Nagy wrote:
> > Endre Szabo <syslog-ng at end.re> writes:
> >
> >> Here's a proof of concept of DNS based port knocking. Firewall opens
> >> up port of SSHd for 10 seconds after nameserver answering to a
> >> predefined DNS query. It uses pattern db and netfilter only.
> >>
> >> http://vimeo.com/endreszabo/dns-portknocking
> > This is seriously wicked.
>
>
> Agreed. Would you care to write a bit more about it and/or share your
> patterndb/scripts?
>
> thanks,
> Peter
>
>
> ______________________________________________________________________________
> Member info: https://lists.balabit.hu/mailman/listinfo/syslog-ng
> Documentation:
> http://www.balabit.com/support/documentation/?product=syslog-ng
> FAQ: http://www.balabit.com/wiki/syslog-ng-faq
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.balabit.hu/pipermail/syslog-ng/attachments/20120815/31aecac5/attachment.htm 


More information about the syslog-ng mailing list