Hi All, I've deployed two Dionaea <http://dionaea.carnivore.it/> Honeypots and I want to use Roo HoneyWall just for Secureguarding my honeypots. Dionaea honeypot is a low interaction Honeypot and has its own data capture techniques, it stores malware samples and attack information on disk. So I do not require sebek to capture data. I just want to use Roo HoneyWall for data control purpose. I mean Just for Traffic shaping, connection limit and using snort-inline. my Questions are:
1- is it possible to use Roo just for data control of Dionaea honeypot? 2- I want to use honeypots as sensors in my lan, Lan1, so they have IPs in Lan1 range like 192.168.1.x and management host is also in Lan1. is this reasonable to have such configuration from security point of view?
_______________________________________________ Honeywall mailing list Honeywall@public.honeynet.org https://public.honeynet.org/mailman/listinfo/honeywall