mirror of
				https://github.com/telekom-security/tpotce.git
				synced 2025-10-31 04:22:52 +00:00 
			
		
		
		
	
		
			
				
	
	
		
			323 lines
		
	
	
	
		
			7.8 KiB
		
	
	
	
		
			JSON
		
	
	
	
	
	
			
		
		
	
	
			323 lines
		
	
	
	
		
			7.8 KiB
		
	
	
	
		
			JSON
		
	
	
	
	
	
| {
 | |
|    "logs":"file,terminal,json,tpot",
 | |
|    "logs_location":"/var/log/honeypots/",
 | |
|    "syslog_address":"",
 | |
|    "syslog_facility":0,
 | |
|    "postgres":"",
 | |
|    "db_options":[],
 | |
|    "filter":"",
 | |
|    "interface":"",
 | |
|    "honeypots":{
 | |
|       "dhcp":{
 | |
|          "port":67,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"administrator",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"dhcp.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10
 | |
|       },
 | |
|       "dns":{
 | |
|          "port":53,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"administrator",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"dns.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10
 | |
|       },
 | |
|       "ftp":{
 | |
|          "port":21,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"ftp",
 | |
|          "password":"anonymous",
 | |
|          "log_file_name":"ftp.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       },
 | |
|       "httpproxy":{
 | |
|          "port":8080,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"admin",
 | |
|          "password":"admin",
 | |
|          "log_file_name":"httpproxy.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       },
 | |
|       "http":{
 | |
|          "port":80,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"admin",
 | |
|          "password":"admin",
 | |
|          "log_file_name":"http.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands","fix_get_client_ip"]
 | |
|       },
 | |
|       "https":{
 | |
|          "port":443,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"admin",
 | |
|          "password":"admin",
 | |
|          "log_file_name":"https.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands","fix_get_client_ip"]
 | |
|       },
 | |
|       "imap":{
 | |
|          "port":143,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"imap.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "mysql":{
 | |
|          "port":3306,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"mysql.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "pop3":{
 | |
|          "port":110,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"pop3.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "postgres":{
 | |
|          "port":5432,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"postgres",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"postgres.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "redis":{
 | |
|          "port":6379,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"",
 | |
|          "log_file_name":"redis.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "smb":{
 | |
|          "port":445,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"administrator",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"smb.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "smtp":{
 | |
|          "port":25,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"smtp.log",
 | |
|          "max_bytes":10000,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "socks5":{
 | |
|          "port":1080,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"admin",
 | |
|          "password":"admin",
 | |
|          "log_file_name":"socks5.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "ssh":{
 | |
|          "port":22,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"ssh.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands", "interactive"]
 | |
|       },
 | |
|       "telnet":{
 | |
|          "port":23,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"root",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"telnet.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "vnc":{
 | |
|          "port":5900,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"administrator",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"vnc.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "elastic":{
 | |
|          "port":9200,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"elastic",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"elastic.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "mssql":{
 | |
|          "port":1433,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"sa",
 | |
|          "password":"",
 | |
|          "log_file_name":"mssql.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "ldap":{
 | |
|          "port":389,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"administrator",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"ldap.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "ntp":{
 | |
|          "port":123,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"administrator",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"ntp.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "memcache":{
 | |
|          "port":11211,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"admin",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"memcache.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "oracle":{
 | |
|          "port":1521,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"bi",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"oracle.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "snmp":{
 | |
|          "port":161,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"privUser",
 | |
|          "password":"123456",
 | |
|          "log_file_name":"snmp.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
| 		 "options":["capture_commands"]
 | |
|       },
 | |
|       "sip":{
 | |
|          "port":5060,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"",
 | |
|          "password":"",
 | |
|          "log_file_name":"sip.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       },
 | |
|       "irc":{
 | |
|          "port":6667,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"",
 | |
|          "password":"",
 | |
|          "log_file_name":"irc.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       },
 | |
|       "pjl":{
 | |
|          "port":9100,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"",
 | |
|          "password":"",
 | |
|          "log_file_name":"pjl.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       },
 | |
|       "ipp":{
 | |
|          "port":631,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"",
 | |
|          "password":"",
 | |
|          "log_file_name":"ipp.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       },
 | |
|       "rdp":{
 | |
|          "port":3389,
 | |
|          "ip":"0.0.0.0",
 | |
|          "username":"",
 | |
|          "password":"",
 | |
|          "log_file_name":"rdp.log",
 | |
|          "max_bytes":0,
 | |
|          "backup_count":10,
 | |
|          "options":["capture_commands"]
 | |
|       }
 | |
|    },   
 | |
|    "custom_filter":{
 | |
|       "honeypots":{
 | |
|          "change":{
 | |
|             "server":"protocol"
 | |
|          },
 | |
|          "contains":[
 | |
|             "protocol",
 | |
|             "action",
 | |
|             "src_ip",
 | |
|             "src_port",
 | |
|             "dest_ip",
 | |
|             "dest_port"
 | |
|          ],
 | |
|          "remove":[
 | |
|             
 | |
|          ],
 | |
|          "options":[
 | |
|             "remove_errors",
 | |
|             "remove_init",
 | |
|             "remove_word_server"
 | |
|          ]
 | |
|       }
 | |
|    }
 | |
| }
 | 
