Honeypots mailing list archives

Re: Honeyd and exclusion


From: Niels Provos <provos () citi umich edu>
Date: Tue, 28 Sep 2004 19:01:43 -0400

On Tue, Sep 28, 2004 at 11:40:16AM -0500, Williams Jon wrote:
So far, the best I've been able to manage is to use iptables to drop the
outbound packets, but that prods honeyd to create syslog messages like
"couldn't send packet: Operation not permitted".  Is there a
configuration in honeyd that I can tell it to do everything _except_
certain networks?

You can provide it with a list of networks that it should reply to.  You
basically make the exclusion implicit.

Niels.


Current thread: