On Wed, 26 Feb 2014, Muhammad Asif wrote:

Greetings!

Dear geeks,

Which is good approach. Create network layer vpn using  openvpn (because in
this case all application level packets will be encrypted) or rsyslog tls
configuration.
1- I have created openvpn but on receiving end packets are transparent not
encryptes.I am capturing packets using tcpdump.

It depends on what threats you are defending against.

If you are just defending against people on the Internet, openvpn site to site is just fine. If you are also defending against other people on your network (either rouge employees or attackers who have cracked one box), then TLS is a better choice.

If you are in an audit situation where you need to have evidence that the logs really came from the remote host and were not forged by someone else, TLS is going to be needed.


2- Is rsyslog v8 available in debian6 and 7.

not as part of the debian repositories, I believe there are packages available on rsyslog.com

David Lang
_______________________________________________
rsyslog mailing list
http://lists.adiscon.net/mailman/listinfo/rsyslog
http://www.rsyslog.com/professional-services/
What's up with rsyslog? Follow https://twitter.com/rgerhards
NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of 
sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE 
THAT.

Reply via email to