openssh concerns

Mike Oliver mwoliver at gmail.com
Tue Oct 6 18:41:18 UTC 2009


On Mon, Oct 5, 2009 at 14:16, Mark Boolootian <booloo at ucsc.edu> wrote:
>
> There's always fwknop:  http://www.cipherdyne.org/fwknop/

Back when I ran ipfw I had a Bourne script that would change the
outside port (translated to 22 on the inside by natd) to something
between 10000 and 65500 every so often, maybe hourly.  The script
would rewrite the natd.conf, bounce natd, do some other stuff I can't
remember, and finish by sending me the new outside port number via
SMS.  I did that for a few years and never had a single problem with
it.  That was a fun project.

-- 
Mike Oliver, KT2T
+1-863-738-2334
kt2t at arrl.net -or- mwoliver at gmail.com


More information about the freebsd-security mailing list