[syslog-ng] IPv6 TLS source question

Jeff Lange jlange6648 at gmail.com
Wed Jun 26 18:12:09 CEST 2013


I'm attempting to setup a TCP IPv6 source declaration that uses TLS but
syslog-ng is not happy with the configuration file.

The following is what I use for IPv4 and it works fine:

source s_tls
{
  syslog( ip(0.0.0.0) port(6514)
    transport( "tls" )
    tls (
      key_file("/srv/syslog-ng/certs/priv-key.pem")
      cert_file("/srv/syslog-ng/certs/id-cert.pem")
      ca_dir("/srv/syslog-ng/certs")
      cipher_suite("SHA256:!aNULL:!eNULL:!ECDH:!DSS")
    )
   );
};

However the following is not valid:

source s_tls6 {
  syslog( ip("::") port(6515)
    transport( "tls" )
    tls (
      key_file("/srv/syslog-ng/certs/priv-key.pem")
      cert_file("/srv/syslog-ng/certs/id-cert.pem")
      ca_dir("/srv/syslog-ng/certs")
      cipher_suite("SHA256:!aNULL:!eNULL:!ECDH:!DSS")
    )
  );
};

I've tried the ip with and without quotes with no luck. What am I doing
wrong?

Thanks
-Jeff
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.balabit.hu/pipermail/syslog-ng/attachments/20130626/19d49db6/attachment.htm 


More information about the syslog-ng mailing list