On Thu, Sep 16, 2004 at 02:59:25AM +0200, Alexander Dalloz wrote: > > > > To prevent to let the script kids ... ... > > Security by obscurity.. :-) > > moment this is enough to stop the scripts. When they begin to really > scan for the ports with SSH behind I will activate portknocking. Not > because I have insecure passwords in use or do not keep both eyes on > necessary security updates, but because I do not like to have to go each > day to hundreds of log file lines caused by wannabee intruders. This sounds like a valid use of port knocking. In and of itself port knocking should be understood. This is an interesting critique of it. http://software.newsforge.com/software/04/08/02/1954253.shtml -- T o m M i t c h e l l In the USA, vote informed, second Tuesday Nov 2004.