Creating a new Decoy
Choose Navigation Menu > Decoys > Add Decoy.
Note: You need to know the network topology of the host machine in order to configure network settings manually.
|Name*||Hostname designation for the decoy environment.
WARNING: The hostname may be exposed to attackers! It would be wise not to use words like ‘decoy’, ‘illuria’ or ‘profilerx’.
|Host*||Host on which to run the decoy (for clustered environments).|
|DHCP†||Enable for automatic network configuration.|
|IPv4 Address**||Allocate an IPv4 address for the decoy environment.|
|Gateway**†||Specify a gateway for network access.|
|DNS**†||Specify a DNS resolver for the decoy environment.|
|Netmask**†||Specify a subnet mask for the decoy environment.|
** Required for manual network configuration
† Always disabled in cloud environments
Note for Azure users:
Before setting the IPv4 Address, please add a private IP address to the virtual machine. The IPv4 address can be dynamic or static based on your needs, but it has to be configured in Azure.
Services can be added to Decoys when creating them, or afterward by doing the following:
- Choose Navigation Menu > Decoys
- Select Details from the Actions submenu of the Decoy
- Select the Services/Lures submenu
- Click the ‘+’ in the submenu
|File Transfer||FTP, SMB|
|Remote Login||SSH, RDP|