We want to make it easy for actors to log into the SSH honeypot, but not too easy. We recently added "wildcard" passwords, but these accept any old password, which could be a tip off. Implement a "chance of success" field for the wildcard passwords, so that the threat actor would typically have to try many (but maybe not too many) passwords before success.