Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> I'm going to find whatever port your running ssh on if your running it.

Not if you have to port knock before the ssh port is open to new connections.



Why not? I'll run my automated port knocker


Huh? How would that work? You have no idea what my port knocking scheme is.

For all you know you have to knock ports 22, 46, 1776, and 8998 to the timing of "shave and a haircut" switching between udp and icmp along the way... Good luck, the entropy you have to overcome is astronomical.


I would thing that blocking IP's of insessant knockers would be easy to implement.


They use proxies! So many proxies.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: