BlackrazorS2 / HACS200-Research

Group 1B's repository for HACS200
3 stars 0 forks source link

Minimizing the amount of data that remains on the honeypot host #16

Open BlackrazorS2 opened 2 years ago

BlackrazorS2 commented 2 years ago

The amount of attackers we are getting means that we have to deal with handling thousands of log files at the time, which can be very cumbersome to move around and will take up a significant amount of space on the honeypot host. We need to figure out a method to pull the logs off the host onto a different device and then delete the logs on the honeypot host.

BlackrazorS2 commented 2 years ago

This would also make automatic data parsing easier

BlackrazorS2 commented 2 years ago

I think it would be better to keep the data backups in a separate repository so that whenever we want to update scripts we don't have to clone all the data logs that we backed up