Yeah, we have been discussing a port knocking module quite recently. We want to make a module that both acts as the client and server for port knocking. I'll take a look at fwknop, and see if we can implement the way they do it, but I prefer to use a SYN to a specified port within 30 seconds of the client connecting to the real port. Its really easy to implement in iptables. There are some changes we are making for the next version of fireBwall that will make the server side of a port knocking module much easier to implement, but we could probably make the client part of the module before 0.3.12.0
Thanks for the input! Your english is great.
I'm schizo/bwall/Brian, take your pick. I'm the head architect, lead developer, head honcho. Also...I'm white and nerdy