> When you want to open a port from a client, you run 'knockknock', which sends a single SYN packet to the server. The packet's IP and TCP headers are encoded to represent an IND-CCA secure encrypted request to open a specified port from the source IP address.
This link: wget http://www.thoughtcrime.org/software/knockknock/knockknock-0...
Yes I suppose one of the forks is better nowadays
edit: That specific scheme looks naive and susceptible to replay attacks.
If the argument is that a steganographic layer that involves cryptography does a better job at concealing than a similar layer that doesn't I'm also not convinced. Cryptography helps against MITM scenarios, but at that point the existence of the service is already revealed.