The embodiment of the invention provides a
honeypot system, a flow
processing method and device, a storage medium and a program product. In the embodiment of the invention, the target service is provided by using the
IP address and the port of the service node for providing the normal application service in the VPC network to simulate the attacked object, a
honeypot node does not need to be independently deployed in each VPC network, that is, the independent
IP address and port do not need to be allocated to the
honeypot node, so that the
resource consumption of the honeypot
system across the VPC network can be reduced, and the
resource utilization rate of the honeypot
system is improved. The network resources comprise IP addresses, ports and the like. In addition, the target service for
cheating the attacker and the application service are on the same service node and are not independently deployed on one service node any more, and the computing
resource consumption of the honeypot service can also be reduced. And on the other hand, through the
client capability and the traffic forwarding capability of the host
security service, the
attack traffic is drained to the honeypot
service system, the isolation limitation of the VPC network is broken through, and honeypot drainage across the VPC network scene is realized.