OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Andrew Lamb (alamblucidic.net)
Date: Fri Jan 18 2002 - 17:20:40 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    You'll have to bear with me here, I'm still very new to linux in general, and I have a few questions about a potential honeynet project I have in mind. I own a 266mhz machine, 320mb of ram, and I would like to test the idea of virtual honeynets via vmware.

    Unfortunately I hear that vmware cannot be run on OpenBSD (host), an operating system I feel safer with, which leads me to choosing Trustix or Slackware as the host operating system. I only plan to run one or two virtual machines inside the host OS.

    In essence, I am asking for suggestions from the honeypotters here on what I should do. I need to really lock down the host operating system and hopefully do all the auditing of the virtual machines from it. Can I place the virtual machines on a different subnet than the host OS? What security measures should I take to lockdown the host (i.e. LIDS, tripwire, etc.) And finally, if anyone can take the time out of there schedules, to help me go over these ideas a bit further. Thanks in advance.

    __________________________________________________
    D O T E A S Y - "Join the web hosting revolution!"
                 http://www.doteasy.com

    ---------------------------------------------------------------------
    To unsubscribe, e-mail: honeypots-unsubscribesecurityfocus.com
    For additional commands, e-mail: honeypots-helpsecurityfocus.com
    ---------------------------------------------------------------------
    This list is provided by the SecurityFocus Security Intelligence Alert
    (SIA) Service. For more information on SecurityFocus' SIA service
    which automatically alerts you to the latest security vulnerabilities.
    Please, see: https://alerts.securityfocus.com/