Skip to main content
pchee
Staff
Staff
March 3, 2025

Technical Tip: How to deploy Honeydoc to maximize the deception surface

  • March 3, 2025
  • 0 replies
  • 591 views
Description This article describes how to deploy Honeydoc to maximize the deception surface.
Scope FortiDeceptor all models.
Solution
  1. Navigate under Deception -> Deception Token -> Token Campaign.
  2. Select the '+Campaign' button.
  3. Provide a Campaign Name and select the mode: Online or Offline.

 

1.jpg

 

  1. Specify the Lur type as HoneyDoc and provide a HoneyDoc Installation Path.

 

2.jpg

 

  1. On the lure-targeted PC/ server device, access the FortiDeceptor web UI and navigate under the Deception -> Deception Token -> Token Campaign again to download the package by selecting the circled icon.

 

3.jpg

 

  1. Install the downloaded package.
  2. Lure files will be injected into the targeted device from the FortiDeceptor server.

 

lure.jpg

 

  1. Check the deployment status under the Token Deployment status and make sure it is showing success.

 

deploy.jpg

 

  1. When an attacker accesses to Honeydoc folder and tries to read/change/modify it will be recorded under the Incident -> Analysis.

 

read.jpg