On Wed, 26 Feb 2014, Muhammad Asif wrote:
Greetings!
Dear geeks,
Which is good approach. Create network layer vpn using openvpn (because in
this case all application level packets will be encrypted) or rsyslog tls
configuration.
1- I have created openvpn but on receiving end packets are transparent not
encryptes.I am capturing packets using tcpdump.
It depends on what threats you are defending against.
If you are just defending against people on the Internet, openvpn site to site
is just fine. If you are also defending against other people on your network
(either rouge employees or attackers who have cracked one box), then TLS is a
better choice.
If you are in an audit situation where you need to have evidence that the logs
really came from the remote host and were not forged by someone else, TLS is
going to be needed.
2- Is rsyslog v8 available in debian6 and 7.
not as part of the debian repositories, I believe there are packages available
on rsyslog.com
David Lang
_______________________________________________
rsyslog mailing list
http://lists.adiscon.net/mailman/listinfo/rsyslog
http://www.rsyslog.com/professional-services/
What's up with rsyslog? Follow https://twitter.com/rgerhards
NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of
sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE
THAT.