Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Port knocking is supposed to be a last, self made, no dependency, cheap, cute layer of defense.

Installing external dependencies, even from someone trusted like Moxie, is counterproductive. The more system you have the more vulnerabilities, less is more.

I've actually been fired over this, we were building a product, and I implemented port knocking in python. Lead said it was unsecure and wanted to install an encrypted port knocking protocol.

EDIT: Just read the readme, Moxie is saying the same thing verbatim lol, we cool



> I've actually been fired over this,

Why exactly where you fired? Because you used python?


Didn't follow instructions to the T. E.g: install a port knocker vs implementing a port knocker in python




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: