Authors:
Wenjun Fan
;
David Fernández
and
Víctor A. Villagrá
Affiliation:
Universidad Politécnica de Madrid and ETSI Telecomunicación, Spain
Keyword(s):
Honeynet Description Language, Honeynet Configuration, Honeynet Management, Network Security.
Related
Ontology
Subjects/Areas/Topics:
Languages, Tools and Architectures
;
Methodologies, Processes and Platforms
;
Model-Driven Architecture
;
Model-Driven Software Development
;
Software Engineering
;
Syntax and Semantics of Modeling Languages
;
Systems Engineering
Abstract:
Several languages have been proposed for the task of describing networks of systems, either to help on
managing, simulate or deploy testbeds for testing purposes. However, there is no one specifically designed
to describe the honeynets, covering the specific characteristics in terms of applications and tools included in
the honeypot systems that make the honeynet. In this paper, the requirements of honeynet description are
studied and a survey of existing description languages is presented, concluding that a CIM (Common
Information Model) match the basic requirements. Thus, a CIM like technology independent honeynet
description language (TIHDL) is proposed. The language is defined being independent of the platform
where the honeynet will be deployed later, and it can be translated, either using model-driven techniques or
other translation mechanisms, into the description languages of honeynet deployment platforms and tools.
This approach gives flexibility to allow the use of a combin
ation of heterogeneous deployment platforms.
Besides, a flexible virtual honeynet generation tool (HoneyGen) based on the approach and description
language proposed and capable of deploying honeynets over VNX (Virtual Networks over LinuX) and
Honeyd platforms is presented for validation purposes.
(More)