| With the development of cloud computing, public cloud has been used widely, andmany enterprises benefit from public cloud. However, the development of private cloudis limited by technology and costs, The emergence of open source project OpenStackprovides a opportunity to solve this problem. OpenStack didn t provide perfect securityfor private cloud, so it can only be used by some companies who have powerfultechnique. The honeypot system can t be widely used because of interdependent factorswhich are security, performance and fidelity, it can only be used for researching byresearchers currently. A hybrid honeypot scheme based on OpenStack is put forward inthis situation, it not only provides higher security for private cloud, but also solves theproblem caused by interdependent factors in building honeypot system, so the honeypotsystem has higher practical value.In the paper, we did some creative jobs:1. We bring up a new hybrid honeypot scheme, and deploy it on the private cloudcombined with OpenStack. New hybrid honeypot system is realized through the way tocombining the low-interaction honeypot system with the high-interaction honeypotsystem. If we deploy the system on the traditional IT infrastructure, we can only ensurethe safety and fidelity through giving up the performance. When deploying the systemon the private cloud based on OpenStack, we ensure that the users of private cloud canuse the computing and storage resources as required to save the performance. At thesame time, the new system provides a security solution for the private cloud.2. Through simulating the new system and configuring some parameters for thenew system, we scraped various attacks effectively and analyzed the result. Analysisshows that the new hybrid system can collect some unknown attack on the network. |