发明名称 SYNCHRONIZING A HONEY NETWORK CONFIGURATION TO REFLECT A TARGET NETWORK ENVIRONMENT
摘要 Techniques for synchronizing a honey network configuration to reflect a target network environment are disclosed. In some embodiments, a system for synchronizing a honey network configuration to reflect a target network environment includes a device profile data store that includes a plurality of attributes of each of a plurality of devices in the target network environment; a virtual machine (VM) image library that includes one or more VM images; and a virtual clone manager executed on a processor that instantiates a virtual clone of one or more devices in the target enterprise network using a VM image selected from the VM image library that is customized based on one or more attributes for a target device in the device profile data store.
申请公布号 US2017019425(A1) 申请公布日期 2017.01.19
申请号 US201615277785 申请日期 2016.09.27
申请人 Palo Alto Networks, Inc. 发明人 Ettema Taylor;Xie Huagang
分类号 H04L29/06;G06F9/455 主分类号 H04L29/06
代理机构 代理人
主权项 1. A system comprising: a processor configured to: synchronize a honey network configuration to reflect at least a subset of a target network environment that includes a plurality of devices, wherein synchronize the honey network configuration to reflect at least a subset of the target network environment comprises: instantiate virtual clones for two or more of the plurality of devices in the target network environment using a virtual machine (VM) image selected from a VM image library that is customized based on one or more attributes for a corresponding target device in a device profile data store; andcustomize the VM image that is selected from the VM image library by loading and booting a base image of an instance of the VM image and then dynamically patching the base image of the instance of the VM image selected from the VM image library based one or more attributes for the corresponding target device in the device profile store including one or more of the following: a last reboot time for the corresponding target device, a logged in user name for the corresponding target device, a configured domain controller for the corresponding target device, a configured Domain Name System (DNS) for the corresponding target device, a configured IP address for the corresponding target device, browser proxy settings for the corresponding target device, a configured local time zone for the corresponding target device, an installed Operating System (OS)/application language pack for the corresponding target device, and a network session log for the corresponding target device; and a memory coupled to the processor and configured to provide the processor with instructions.
地址 Santa Clara CA US