HiHat

posted Oct 19, 2009, 7:18 PM by Peter Cheung

According to our 2009 plan, the first round is to setup a honey
We have installed HIHAT - High Interaction Honeypot Analysis Tool

The structure design as follow :


HiHAT network

Remind some tricky steps during the installation :

* insertionfile.txt <------ F in small.

* /etc/my.cfg <--------- changed bind-address=xx.xx.xx.xx

* create a user for remote from specific source.

* use iptables to restrict the remote source

* use hostip.info if don't have the ip2location database.
* details.php <----- change mappingMode if you don't have own ip db.
* IPmapper.php <------- change protected $mode = 2;
* mapping.php <------------ $mappingMode = 2;

* grhpiclibraries <------- believe it is typo.

* check_downloads.php line 39 --- > add quote (defined(’CHECKALL’)

Comments