Firewall Wizards mailing list archives

Re: working on a new syslogd.


From: "Ivan Arce,CORE SDI" <ivan () securenetworks com>
Date: Mon, 20 Jul 1998 14:42:39 -0600 (MDT)

On Sun, 19 Jul 1998, Darren Reed wrote:

In some mail from Aleph One, sie said:

Why not work with the CORE S.A. folks that are working on ssyslog? Works
fine around here expect for a few gotchas, like not being able to rotate
logs without user intervention. I also wonder how broad Schneier's patent
would be. Crypto hash chaining has been around for some time now.

My main problem with encryption of the logs is that one of the design goals
is for the messages logged to be "backward compatible" with the current

Darren,
 i havent seen your syslogd replacement (yet) but ssyslog does
not encrypt the logs, they are still plaintext. 
a chained hash is kept separetly to verify integrity.
-ivan

==============================[ CORE Seguridad de la Informacion S.A. ]=======
Ivan Arce
Gerencia de Tecnologia                          Email     : ivan () core-sdi com
Av. Santa Fe 2861 5to C                         TE        : +54-1-821-1030
CP 1425                                         FAX       : +54-1-821-1030
Buenos Aires, Argentina                         Mensajeria: +54-1-317-4157
==============================================================================



Current thread: