Security Basics mailing list archives

Re: Centralizing logs throug internet


From: Florian Osses <webmaster () dijeridu net>
Date: Tue, 14 Nov 2006 20:46:16 +0100

Hi Nicolas,

I don't see any possibility to secure a UDP Connection.
Cause the simple UDP Protocol does not support any handshaking or statefull connection. This is why UDP is so much faster than TCP. It does not verify connections.

greets,
Florian Osses

Nicolas Arias wrote:
Hello Guys!

Quick question, i have a few web servers facing internet, that are only
accesible throug that net. I want to point the logs from those boxes to
my syslog server, but i want to have some kind of encryption. The thing
is that in those boxes i have syslogd, and at my central box i have
syslog-ng. Migrating syslogd to syslog-ng is not an option.

So, ssh tunnels are out of order since syslogd only "talks" udp.

Any suggestion???

Cheers!



---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: