On Fri, 23 Apr 2010, Morty wrote:
> On Sat, Apr 17, 2010 at 10:50:31AM -0500, Frank Knobbe wrote:
>
>> Likewise, if you don't run an FTP server (or CVS, or POP3, or...),
>> setup DNS records for those pointing to your honeypot. Use it to
>> respond in anyway you see fit for defense of your network (blocking
>> the IP, etc).
>
> What happens when one of your legit users says "I wonder if we have an
> FTP server?" and tries ftp.$YOURCOMPANY.com just to see if it answers?
if your server is locked down, nothing (other than an additional failed
login)
if your server is vunerable, people who use nmap or similar will find it
anyway and you will be hacked anyway.
David Lang
lmpx.com only provides a reader for public news (NNTP) servers. It is not
affiliated with the servers or forums shown here and is not responsible for
the content of articles, which is written by their respective authors.