Honeypots mailing list archives

Re: Planning question


From: "Garrett Sinfield" <garrettsinfield () hotmail com>
Date: Tue, 03 Jun 2003 14:47:00 +0000






I would suggest putting your honeynets in a DMZ zone, and not in the internal network, where damage could be done. I think ACLs on router, and firewall would both be recommended. Perhaps if you had an extra box, you could make a syslogging server, or you could use a recieving only UDP cable to connect directly to the box that's a honeypot.

http://www.geocities.com/samngms/sniffing_cable/

Thats a tutorial that explains how to make it.

Best of luck.

-Garrett Sinfield

_________________________________________________________________
The new MSN 8: smart spam protection and 2 months FREE* http://join.msn.com/?page=features/junkmail


Current thread: