LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Linux - Newbie (https://www.linuxquestions.org/questions/linux-newbie-8/)
-   -   agent based honeynet.. (https://www.linuxquestions.org/questions/linux-newbie-8/agent-based-honeynet-4175488075/)

ajphoneynet 12-15-2013 11:13 PM

agent based honeynet..
 
we are doing a project based on agent based honeynet ..we would like to know whether any particular hardware is needed? and also like to know more about the topic...

unSpawn 12-16-2013 01:15 AM

Quote:

Originally Posted by ajphoneynet (Post 5081326)
we are doing a project based on agent based honeynet ..we would like to know whether any particular hardware is needed?

Fast ethernet cards, SSDs, whatever else will be your bottleneck depends on the analysis you run during simulations. Saying "agent-based" asserts there'll be multiple sensors or slaves feeding the master with nfo. If agents are "dumb" and only register events then you'll need centralized storage and (preferably) a separate workstation or server to perform network analysis on. Then again it's a project so you have the opportunity to start small (few VMs could do) and scale up when necessary.


Quote:

Originally Posted by ajphoneynet (Post 5081326)
and also like to know more about the topic...

That question is too broad: try to ask specific questions. And if you haven't visited projecthoneypot.org and honeynet.org then you should do that first. Esp. the latter holds a list of most current and old honeypot SW like Glastopf, Dionea, Honeyd, Kippo, Nephentes, Sebek, etc, etc.


All times are GMT -5. The time now is 03:45 PM.