Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Virtual IPs that respond to Pings/etc. Basically Decoys

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 4 Posters 930 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • U
      user7352
      last edited by

      Hi.  I am new to pfSense and am learning about virtual IPs and mapping them via NAT to my internal IPs for server that I want to be accessible from inside my network.

      However, I thought it may be useful to create some Virtual IPs that were not NAT'ed to any real host, but have the firewall reply to pings etc. to give the illusion that it was a real host to confuse or frustrate would be attackers trying to perform enumeration from out side my firewall.

      Is this possible with pfSense?

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        Yes, as long as you have a rule on WAN that allows ICMP.  Honestly, I wouldn't bother with it.  Most scans and attacks are automated and you're not going to fool or frustrate anyone.  It's kind of like painting false doors on your house, hoping to confuse a burglar.

        1 Reply Last reply Reply Quote 0
        • C
          cmb
          last edited by

          @KOM:

          Honestly, I wouldn't bother with it.  Most scans and attacks are automated and you're not going to fool or frustrate anyone.  It's kind of like painting false doors on your house, hoping to confuse a burglar.

          Indeed. I like that analogy. :D

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            Do you even have these IPs on the public side… Seems pointless to waste a valid pubic IP as a decoy.. That not going to fool anyone anyway.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.