External Syslog server overview

The information available in this section is a representative configuration example of the many types of Syslog servers available. This section is useful for configuring a remote Syslog server and is not applicable for NetIron configuration.

Note

Note

This is optional and for informational use only, not mandated by common criteria.

Though there are many types of Syslog servers available, the following setup procedure describes how to set up an encrypted Syslog server running on Ubuntu 10.4. The setup procedure for an encrypted Syslog server on other Linux operating systems such as Red Hat or Centos is simiilar except for the differences in commands.

You must set up stunnel as a server and a client on your server. As a server, stunnel listens on port 60516 to connections from its client peers, and all connections are forwarded to the locally-running rsyslog listening at port 61514. As a client, rsyslog forwards messages to the stunnel local portal at port 61514, and stunnel local port forwards data by way of the network to port 60514 to its remote peer.