Honeypots mailing list archives

Re: honeyd-SSH validity?


From: Niels Provos <provos () citi umich edu>
Date: Wed, 3 Sep 2003 11:50:19 -0400

On Wed, Sep 03, 2003 at 02:15:06AM -0500, Thomas Jones wrote:
However, the SSHD script does not provide for emulation of a service
response if the client queries the server verbosely during a
connection attempt.
It is not meat to provide any realism.

Any ideas on how to accomplish the emulation of the sshd daemon to look/seem 
valid under a debug scenario?
You could just run OpenSSH in inetd mode restricted to protocol 2.
For example,

  add default tcp port 22 "./scripts/sshd -i -f scripts/ssh/sshd_config"

Niels.


Current thread: