DShield Docker Logo

DShield Docker

0
Free
Visit Website

This Docker container starts a SSH honeypot (based on Cowrie) and enables the DShield output module to report statistics to the SANS ISC DShield project. Building the image: # git clone https://github.com/xme/dshield-docker # cd dshield-docker # docker build -t dshield/honeypot . Running the image: First, create a configuration file which will contain your DShield account details: # cat env.txt DSHIELD_UID=xxxxxxxxxx DSHIELD_APIKEY=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx DSHIELD_EMAIL=xxxxxxxxxxxxxxxxxxx Your credentials will be validated and the honeyport properly configured. Don't forget to register[1] if you don't already have an account. [1] https://www.dshield.org/register.html Boot the container: # docker run -d -p 2222:2222 --env-file=env.txt --restart=always --name dshield dshield/honeypot b56e526b6f7c9b6cb419245757b0586f73d7e99089fa93409f3626122990505a # docker logs dshield Validating provided credentials... API key verification succeeded! Starting cowrie... The honeypot is listening to port

FEATURES

ALTERNATIVES

Tcpreplay is a network traffic editing and replay tool used for testing network devices and applications.

A tool for domain flyovers

A KDE Plasma 4 widget that displays real-time traffic information for active network connections on Linux computers.

Set up your own IPsec VPN server in just a few minutes with IPsec/L2TP, Cisco IPsec, and IKEv2.

A honeypot that emulates a Belkin N300 Home Wireless router with default setup to observe traffic

Simple perl script for making Modbus transactions from the command line.

A TCP-based traceroute implementation that bypasses firewall filters to trace the path to a destination.

PINNED