<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: How to Use Port Knocking To Secure SSH Service in Linux	</title>
	<atom:link href="https://www.tecmint.com/port-knocking-to-secure-ssh/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.tecmint.com/port-knocking-to-secure-ssh/</link>
	<description>Tecmint - Linux Howtos, Tutorials, Guides, News, Tips and Tricks.</description>
	<lastBuildDate>Thu, 19 Oct 2023 21:44:32 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	
	<item>
		<title>
		By: Mau		</title>
		<link>https://www.tecmint.com/port-knocking-to-secure-ssh/comment-page-1/#comment-2092362</link>

		<dc:creator><![CDATA[Mau]]></dc:creator>
		<pubDate>Thu, 19 Oct 2023 21:44:32 +0000</pubDate>
		<guid isPermaLink="false">https://www.tecmint.com/?p=42919#comment-2092362</guid>

					<description><![CDATA[Hello, I&#039;ve followed all the instructions but it seems like I cannot connect from my client server even if the sequence were accepted. 

Do I need to install iptables even if I already have ufw set up? When I ran &lt;code&gt;iptables -L&lt;/code&gt;, it returned a lot of results while checking the systemctl status don&#039;t. It just says service not found. But ufw is active.]]></description>
			<content:encoded><![CDATA[<p>Hello, I&#8217;ve followed all the instructions but it seems like I cannot connect from my client server even if the sequence were accepted. </p>
<p>Do I need to install iptables even if I already have ufw set up? When I ran <code>iptables -L</code>, it returned a lot of results while checking the systemctl status don&#8217;t. It just says service not found. But ufw is active.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: STUART		</title>
		<link>https://www.tecmint.com/port-knocking-to-secure-ssh/comment-page-1/#comment-1528603</link>

		<dc:creator><![CDATA[STUART]]></dc:creator>
		<pubDate>Fri, 25 Jun 2021 02:21:15 +0000</pubDate>
		<guid isPermaLink="false">https://www.tecmint.com/?p=42919#comment-1528603</guid>

					<description><![CDATA[While this is security through obscurity, this is still a good enough approach if other security practices are still followed (no root, specific ip, complex password, preferably keys, etc.)

I would love it if the closing sequence is time-triggered rather than depending on users to knock to close. E.g. closes after 30 mins of opening.]]></description>
			<content:encoded><![CDATA[<p>While this is security through obscurity, this is still a good enough approach if other security practices are still followed (no root, specific ip, complex password, preferably keys, etc.)</p>
<p>I would love it if the closing sequence is time-triggered rather than depending on users to knock to close. E.g. closes after 30 mins of opening.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Domonkos Lezsák		</title>
		<link>https://www.tecmint.com/port-knocking-to-secure-ssh/comment-page-1/#comment-1528006</link>

		<dc:creator><![CDATA[Domonkos Lezsák]]></dc:creator>
		<pubDate>Thu, 24 Jun 2021 07:49:23 +0000</pubDate>
		<guid isPermaLink="false">https://www.tecmint.com/?p=42919#comment-1528006</guid>

					<description><![CDATA[In reply to &lt;a href=&quot;https://www.tecmint.com/port-knocking-to-secure-ssh/comment-page-1/#comment-1526983&quot;&gt;Dave McKay&lt;/a&gt;.

I&#039;d rather say &quot;don&#039;t *rely*&quot; on this. Even if you configure port knocking don&#039;t forget to also disable passwords and use secure RSA keys, etc. If you have strong security you are free to add port knocking as another &quot;security measure&quot; in case you have messed up something.]]></description>
			<content:encoded><![CDATA[<p>In reply to <a target="_blank" href="https://www.tecmint.com/port-knocking-to-secure-ssh/comment-page-1/#comment-1526983">Dave McKay</a>.</p>
<p>I&#8217;d rather say &#8220;don&#8217;t *rely*&#8221; on this. Even if you configure port knocking don&#8217;t forget to also disable passwords and use secure RSA keys, etc. If you have strong security you are free to add port knocking as another &#8220;security measure&#8221; in case you have messed up something.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Dave McKay		</title>
		<link>https://www.tecmint.com/port-knocking-to-secure-ssh/comment-page-1/#comment-1526983</link>

		<dc:creator><![CDATA[Dave McKay]]></dc:creator>
		<pubDate>Wed, 23 Jun 2021 11:05:19 +0000</pubDate>
		<guid isPermaLink="false">https://www.tecmint.com/?p=42919#comment-1526983</guid>

					<description><![CDATA[Don&#039;t do this in real life. This is security by obscurity which is another way of saying no security. It is regarded as a novelty, not a viable security technique.  

https://en.wikipedia.org/wiki/Security_through_obscurity]]></description>
			<content:encoded><![CDATA[<p>Don&#8217;t do this in real life. This is security by obscurity which is another way of saying no security. It is regarded as a novelty, not a viable security technique.  </p>
<p><a target="_blank" href="https://en.wikipedia.org/wiki/Security_through_obscurity" rel="nofollow ugc">https://en.wikipedia.org/wiki/Security_through_obscurity</a></p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>
