martes, 24 de julio de 2007

OpenBSD 4.1 Syslogd SSLified

Recently I, and my Echothrust partner Panagiotis Efstratiou, were up to some administrative tasks for a Greek university. The term 'university' often implies a complex infrastructure, 'complex infrastructure' means a lot of boxes and eventually a lot of boxes produce a lot of logs. So we decided to develop one central log server for auditing all our servers but then again we faced some problems. The OpenBSD syslog daemon is fast, stable and secure, but what about UDP? How can we setup a secure central server? What are the available solutions? In order to answer these questions we have to travel back to the 80s...

