Author:lev_rusia
HoneyPots
HoneyPots
How to create a small honeypot:-
It will take less than 5 minutes to make a HoneyPot with desired port number
Firstly You need to download pentbox
To download type this in the new kernel:-
To download type this in the new kernel:-
Now Run the PentBox
PentBox:-
NETWORK TOOLS
To select network tools you have to enter number : 2
See the below image for more details -
See the below image for more details -
HONEYPOT
After pressing enter key network tools options will display , now you have to select the Honeypot options .
To select honey , enter number 3 and press enter key
.
See the below image for more details -
To select honey , enter number 3 and press enter key
.
See the below image for more details -
Honeypot Setting
Now select the 2nd option ( Manual Configuration ).
Enter number : 2 and press enter key
Enter number : 2 and press enter key
Insert Port Number
Insert the port number , here in my case i have enter port 23 .
See the below image for more details -
See the below image for more details -
Insert false message
Now insert the false Message , i have entered ( Show in the below image ) .
You can type any message . Which is display on the attacker machine when they try to connect port 23 .
See the below image for more detials -
You can type any message . Which is display on the attacker machine when they try to connect port 23 .
See the below image for more detials -
Save a log
To save all the intrusions in a log file , you have to enter y(yes) option .
Next , it will display the default path of log file , this option will activated if you don’t give any manual path .
Activate Beep sound
If you activated Beep sound , then whenwver a intrusion takes place a beep sound will alert you .
To activate beep sound , insert y (yes) and press enter key .
-
To activate beep sound , insert y (yes) and press enter key .
-
See the below image for more details
Your HoneyPot is Ready..
Now In case a hacker tries to enter your syster (i.e. backtrack), instrusions will be detected
Eg: Below on the Backtrack 5 machine , some intrusion detected from 192.168.232.129.
Now let see the log file-
0 comentários:
Postar um comentário