REQUIREMENTS
Data Control
This defines the specific requirements for data control.
Must have both automated and manual data control. In other words, data control can be implemented via an automated response or manual intervention.
At least two layers of data control to protect against failure.
Be able to maintain state of all inbound and outbound connections.
Be able to control any unauthorized activity. Unauthorized activity is defined by the policy of the Honeynet administrator. This implies some type of control to ensure non-Honeynet systems are not harmed.
Data control enforcement must be configurable by the administrator at any time.
Control connections in a manner as difficult as possible to be detected by attackers.
At least two methods of alerting ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access