Forum Discussion

Stefan_Klotz's avatar
Stefan_Klotz
Icon for Cumulonimbus rankCumulonimbus
Jul 14, 2011

syslog with TLS/SSL

Hi,

 

is there any possibility to encrypt syslog messages to a remote syslog server?

 

 

 

Ciao Stefan :)

 

3 Replies

  • Mike_Kahler_488's avatar
    Mike_Kahler_488
    Historic F5 Account
    There is a section in the 10.x TMOS Management Guide for setting up encrypted logging:

     

     

    https://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/tmos_management_guide_10_1/tmos_logging.html?sr=155090781022653

     

     

    I have not tested this. Hope this helps.
  • Hi Mike,

     

    thank you for the link, although it doesn't seem to be that easy. But maybe I will give it a try anyway.

     

    In the meanwhile I had the idea to point the remote syslog server to a virtual server, which then has a serverside SSL profile assigned and the real syslog server in its pool.

     

    Can anybody confirm if this is theoretical possible?

     

     

    Ciao Stefan :)

     

  • Hi Stefan,

     

     

    The syslog based config might not be easy--but it might be worth the effort.

     

     

    Using a virtual server might be possible--but I think it could result in any messages generated before TMM starts being lost. Also, you'd need your syslog server to support SSL. I'm not sure most do.

     

     

    Aaron