Honeypots mailing list archives
Re: Planning question
From: "Garrett Sinfield" <garrettsinfield () hotmail com>
Date: Tue, 03 Jun 2003 14:47:00 +0000
I would suggest putting your honeynets in a DMZ zone, and not in the internal network, where damage could be done. I think ACLs on router, and firewall would both be recommended. Perhaps if you had an extra box, you could make a syslogging server, or you could use a recieving only UDP cable to connect directly to the box that's a honeypot.
http://www.geocities.com/samngms/sniffing_cable/ Thats a tutorial that explains how to make it. Best of luck. -Garrett Sinfield _________________________________________________________________The new MSN 8: smart spam protection and 2 months FREE* http://join.msn.com/?page=features/junkmail
Current thread:
- Planning question Piotr.Linke (Jun 03)
- Re: Planning question Rodney Green (Jun 03)
- Re: Planning question Richard Stevens (Jun 03)
- Re: Planning question Davide Del Vecchio (Jun 03)
- <Possible follow-ups>
- Re: Planning question Garrett Sinfield (Jun 03)