ports/security/knock/files/patch-knockd.conf
Sofian Brabez 6ec4ad0ae6 - Add LICENSE
- Add support for tun devices [1]
- Update MASTER_SITES
- Make happy portlint
- Bump PORTEPOCH

PR:		ports/159078 [1]
Submitted by:	Lung-Pin Chang <changlp at cs.nctu.edu.tw>
Approved by:	jadawin@ (mentor)
2011-09-26 08:26:18 +00:00

21 lines
669 B
Text

--- ./knockd.conf.orig 2004-05-07 00:56:03.000000000 +0200
+++ ./knockd.conf 2011-08-17 13:19:00.000000000 +0200
@@ -1,15 +1,16 @@
[options]
logfile = /var/log/knockd.log
+ interface = fxp0
[openSSH]
sequence = 7000,8000,9000
seq_timeout = 5
- command = /usr/sbin/iptables -A INPUT -s %IP% -p tcp --dport 22 -j ACCEPT
+ command = /sbin/ipfw -q add pass proto tcp src-ip %IP% dst-port 22
tcpflags = syn
[closeSSH]
sequence = 9000,8000,7000
seq_timeout = 5
- command = /usr/sbin/iptables -D INPUT -s %IP% -p tcp --dport 22 -j ACCEPT
+ command = /sbin/ipfw -q delete pass proto tcp src-ip %IP% dst-port 22
tcpflags = syn