background image

2

 

 

 

 

 

www.fidelissecurity.com

 

Copyright © 2022 Fidelis Cybersecurity

®

, Inc. All rights reserved

 

1. System Overview 

Fidelis Deception Decoy Server appliance runs emulated and Real OS decoys. It is connected to Trunk 
port and/or multiple flat networks, and it communicates with assets on your networks. 

 

Figure 1: Fidelis Deception – Decoy Server Appliance – Rev-K 

The Decoy Server reports deception alerts when attackers access the decoy. The Decoy Server reports 
the deception alerts to your on-premises Fidelis CommandPost or to the remote Fidelis Network Cloud. 
Your configuration depends on which environment you are using. 

Decoy Server Setup Checklist 

 

Fidelis Decoy Server – Appliance Requirements 

 

Appropriate rack space, power, and cooling (

Appendix B

 

 

Rack tools, rails, and connectors 

 

Keyboard and video monitor / KVM switch for temporary appliance setup 

 

Power cables – two per appliance, appropriate power source and region 

 

Ethernet cables (cat5e and optical) for Admin, Monitor, and iLO ports (

Section 3

 

 

Network switches with enough physical ports (

Section 4

 

 

Optical transceivers for switches 

 

Logical network information: IP addresses, hostnames (

Section 5

Appendix A

 

 

Summary of Contents for Deception Decoy Server FDH-1000-C

Page 1: ...e attackable surface areas automate exposure prevention threat detection and incident response and provide the context accuracy speed and portability security professionals need to find and neutralize...

Page 2: ...your on premises Fidelis CommandPost or to the remote Fidelis Network Cloud Your configuration depends on which environment you are using Decoy Server Setup Checklist Fidelis Decoy Server Appliance R...

Page 3: ...nt Default Password Appliance Console fidelis fidelispass CommandPost user interface admin system iLO administrator printed on label top of server Technical Support For all technical support related t...

Page 4: ...e appliance Decoy Server Appliances with Copper Ports Port Label Physical Connection Type default Cable Type minimum Admin eth0 GbE Copper RJ45 copper Cat 5e patch cable Decoys eth1 GbE Copper RJ45 co...

Page 5: ...atch cable Decoys eth2 GbE Copper RJ45 copper Cat 5e patch cable Decoys eth3 GbE Copper RJ45 copper Cat 5e patch cable Decoys eth4 Duplex LC Connector Multimode Fiber 850nM OM2 Decoys eth5 Duplex LC C...

Page 6: ...Type Qty Decoy Server GbE Copper RJ45 port 1 Decoy eth1 Decoy eth2 Decoy eth3 Ports to connect the Decoy server appliance to subnets through network switch directly certain subnets and or use trunk p...

Page 7: ...Server 10 5 6 7 DNS Servers 8 8 4 4 8 8 8 8 NTP Servers 0 pool1 ntp org Time Zone UTC 0 6 Appliance Installation Rack Installation Install each appliance in an enclosure location that has necessary po...

Page 8: ...to the component CLI using one of the following methods Via KVM Console Via Console or iLO Via KVM Console Connect a keyboard and monitor to the appliance For Fidelis Decoy Server version 9 4 or later...

Page 9: ...above to confirm the installation The software will be applied and the appliance rebooted Continue with step 3 Via Console or iLO Login to the system through the console or iLO 3 Use the following cr...

Page 10: ...security Inc All rights reserved 4 With Setup select Configure network 5 Skip the DHCP configuration by selecting No Note It is recommended that you use a static IP address for the interface so that t...

Page 11: ...ght 2022 Fidelis Cybersecurity Inc All rights reserved 6 Configure the network parameters for the system management interface 7 When complete select Apply and wait for confirmation to exit Setup 8 To...

Page 12: ...scription Optionally specify a description for example a location business unit etc IP Address Specify the IP address of the Admin interface of the Decoy server appliance 4 Click Add Component 5 To re...

Page 13: ...22 Fidelis Cybersecurity Inc All rights reserved Appendix A Network Configuration Worksheet Network Setting Assignments Interface Admin iLO Hostname FQDN Static IP Address Subnet Mask Gateway Proxy Se...

Page 14: ...l multi mode 1G 10G 4x 1GbE F DH 3000 F 2x 10GbE FDH 3000 F 2x SFP Optical multi mode 1G 10G Out of Band Management Integrated Lights Out Management iLO Integrated Lights Out Management iLO Power Supp...

Page 15: ...ures help minimize attackable surface areas automate exposure prevention threat detection and incident response and provide the context accuracy speed and portability security professionals need to fi...

Reviews: