Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

How do I redirect all hostile traffic headed towards my production environment towards a honeypot?

0
10 Posted

How do I redirect all hostile traffic headed towards my production environment towards a honeypot?

0
10

Well, Bait and Switch is the answer for it. It works on the principle of redirecting all hostile traffic towards a honeypot that is to an extent mirroring the production systems. The difference is that the honeypots do not have actual sensitive information; but the attacker ends up trying to attack the honeypots. In addition to the fact that your production environment is safe you also get to learn about the attacker. The system is based on snort, linux iproute2, netfilter and custom code.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123