Honeypots mailing list archives

RE: Moving forward with defintion of honeypots


From: SRH-Lists <giermo () 333tech com>
Date: Tue, 20 May 2003 09:42:02 -0500

Thoughts?

OPTION A
--------
  "A honeypot is an information system resource who's
   value lies in being probed, attacked, or compromised"


OPTION B
--------
  "A honeypot is an information system resource who's
   value lies in monitoring unauthorized or illicit use of
   that resource"

A honeypot is an information system resource whose value lies in being
probed, attacked, or compromised, and may contribute to the 
monitoring of
unauthorized or illicit use of that resource.

I like the way you combined the options her, but I think both this and
Lance's options miss one important subtlety.

Honey{pots,nets,tokens} have no production purpose, so, by definition,
any activity related to it is unauthorized and/or illicit.  This
distinction needs to be in the definition.  

-steve


Current thread: