From owner-freebsd-hackers@FreeBSD.ORG Thu Dec 1 09:01:24 2011 Return-Path: Delivered-To: freebsd-hackers@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id AE725106564A for ; Thu, 1 Dec 2011 09:01:24 +0000 (UTC) (envelope-from lichray@gmail.com) Received: from mail-ey0-f182.google.com (mail-ey0-f182.google.com [209.85.215.182]) by mx1.freebsd.org (Postfix) with ESMTP id 4AE738FC1D for ; Thu, 1 Dec 2011 09:01:23 +0000 (UTC) Received: by eaai12 with SMTP id i12so2619096eaa.13 for ; Thu, 01 Dec 2011 01:01:23 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=mime-version:date:message-id:subject:from:to:content-type; bh=3kFzZRw3bjVwyyd28njhEW4C3NXCdtg7lI8cV7XSyQU=; b=sIMqafScIQ26bXVWckWF6e/VjumIjsMWRt0NxI3laLn/0/ERqTvHJPPo8eEDdpkvHx TFzPtMsUyVrt4lu41yf2ooIsG9Hh33ks1G6mihaX/8PKSML1cMyLhudjiXe3p21ceJf8 3bAecfGpSzkC4UPVxwkjm1Zhr0B2bSK+TeG04= MIME-Version: 1.0 Received: by 10.213.13.68 with SMTP id b4mr378601eba.49.1322730083190; Thu, 01 Dec 2011 01:01:23 -0800 (PST) Received: by 10.14.47.194 with HTTP; Thu, 1 Dec 2011 01:01:23 -0800 (PST) Date: Thu, 1 Dec 2011 03:01:23 -0600 Message-ID: From: Zhihao Yuan To: freebsd-hackers@freebsd.org Content-Type: text/plain; charset=UTF-8 Subject: To implement RFC 5848 (Signed Syslog Messages)? X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 01 Dec 2011 09:01:24 -0000 Hi, hackers: Red Hat's "star" developer, Lennart Poettering, is porting Windows Event Log to GNU/Linux :) https://docs.google.com/document/pub?id=1IC9yOXj7j6cdLLxWEBAGRL6wl97tFxgjLUEHIX3MSTs&pli=1 Regardless of his stupid arguments, let's talk about something trivial. How about to implement RFC 5848 in our syslogd? It adds the encryption to the existing syslog message layer, and increase the security in transferring. http://tools.ietf.org/html/rfc5848 Albert Mietus made a nice presentation in 2002 http://www.slideshare.net/SoftwareBeterMaken.nl/securing-syslog-on-freebsd Not sure whether his code is accessible or not. -- Zhihao Yuan, nickname lichray The best way to predict the future is to invent it. ___________________________________________________ 4BSD -- http://4bsd.biz/