Improved Port Knocking with Strong Authentication

  • Authors:
  • Rennie deGraaf;John Aycock;Michael Jr. Jacobson

  • Affiliations:
  • University of Calgary;University of Calgary;University of Calgary

  • Venue:
  • ACSAC '05 Proceedings of the 21st Annual Computer Security Applications Conference
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

It is sometimes desirable to allow access to open ports on a firerewall only to authorized external users and present closed ports to all others. We examine ways to construct an authentication service to achieve this goal, and then examine one such method, "port" knocking,and its existing implementations, in detail. We improve upon these existing implementations by presenting a novel port knocking architecture that provides strong authentication while addressing the weaknesses of existing port knocking systems.