FortiDeceptor
FortiDeceptor provides Deception-based Breach Protection to deceive, expose and eliminate external and internal threats.
pchee
Staff
Staff
Article Id 379964
Description This article describes how to deploy Honeydoc to maximize the deception surface.
Scope FortiDeceptor.
Solution
  1. Navigate under Deception -> Deception Token -> Token Campaign.
  2. Select the '+Campaign' button.
  3. Provide a Campaign Name and select the mode: Online.

 

1.jpg

 

  1. Specify the lur type as HoneyDoc and provide a HoneyDoc Installation Path.

 

2.jpg

 

  1. On the lure-targeted PC/ server device, access the FortiDeceptor web UI and navigate under the Deception -> Deception Token -> Token Campaign again to download the package by selecting the circled icon.

 

3.jpg

 

  1. Install the downloaded package.
  2. Lure files will be injected into the targeted device from the FortiDeceptor server.

 

lure.jpg

 

  1. Check the deployment status under the Token Deployment status and make sure it is showing success.

 

deploy.jpg

 

  1. When an attacker accesses to Honeydoc folder and tries to read/change/modify it will be recorded under the Incident -> Analysis.

 

read.jpg

Contributors