Honeypots mailing list archives

Re: Dmz single IP


From: mike () honeynet org
Date: Mon, 3 Mar 2003 20:27:32 -0500 (EST)

Well,  if you will be sshing to your real box from certain IP's,  tell the
firewall to forward any ssh connections from valid IP's to your ssh
server, and tell the firewall to send everything else to the honeypot.

If you never know what IP you will be coming in from, change it to a high
level port, and tell the firewall to forward that point to your ssh
server, and the rest to the honeypot.

Hope that helps,

Mike

On Mon, 3 Mar 2003, Jermaine wrote:

I'm using a Linux box as my router/firewall.




Current thread: