Honeypots mailing list archives

Re: Possible Honeypot Setup


From: Valdis.Kletnieks () vt edu
Date: Mon, 23 Dec 2002 11:41:13 -0500

On Sun, 22 Dec 2002 20:54:23 EST, Theduece51183 () aol com  said:

Hello. I am fairly new to the concepts of a Honeypot/net. My possible network
 
setup is below:

CM -> eth0-ENGARDEBOX-eth1 -> switch -> internal server, switch -> other 
machines

First off, is this a good way to setup my network?

Good setup for a firewall/IDS.  Probably bad for a honeypot, since if it gets
compromised, all your internal boxes are sitting ducks.

Would help for you to explain why you're running a honeypot, rather than
a firewall or IDS (which would make sense where you have it).
-- 
                                Valdis Kletnieks
                                Computer Systems Senior Engineer
                                Virginia Tech

Attachment: _bin
Description:


Current thread: