From 6bb354d3f07eb7ebe889311d1042d3a48157453b Mon Sep 17 00:00:00 2001 From: Jan Engelhardt Date: Fri, 9 Oct 2009 18:11:49 +0200 Subject: [PATCH] pknock: add Kconfig file --- extensions/pknock/xt_pknock.Kconfig | 13 +++++++++++++ 1 file changed, 13 insertions(+) create mode 100644 extensions/pknock/xt_pknock.Kconfig diff --git a/extensions/pknock/xt_pknock.Kconfig b/extensions/pknock/xt_pknock.Kconfig new file mode 100644 index 0000000..7969c38 --- /dev/null +++ b/extensions/pknock/xt_pknock.Kconfig @@ -0,0 +1,13 @@ +config NETFILTER_XT_MATCH_PKNOCK + tristate "Port knocking match support" + depends on NETFILTER_XTABLES && CONNECTOR + ---help--- + pknock match implements so-called Port Knocking, a stealthy system + for network authentication: client sends packets to selected, closed + ports on target machine in a specific sequence. The target machine + (which has pknock match rule set up) then decides whether to + unblock or block (again) its protected port with listening + service. This can be, for instance, used to avoid brute force attacks + on ssh or ftp services. + + For more informations go to: http://portknocko.berlios.de/