Single Packet Authorization (Linux Journal)
[Posted March 5, 2007 by ris]
Linux Journal
looks
at how Single Packet Authorization fills the gaps in port knocking.
"
Vulnerabilities have been discovered in all sorts of security
software from firewalls to implementations of the Secure Shell (SSH)
Protocol. For example, OpenSSH is developed by some of the most
security-conscious developers in the world, and yet it occasionally
contains a remotely exploitable vulnerability. This is an important fact to
note because it seems to indicate that security is hard to achieve and,
therefore, bolsters the case for a defense-in-depth approach. This article
explores the concept of Single Packet Authorization (SPA) as a
next-generation passive authentication technology beyond port
knocking."
(
Log in to post comments)