Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | first implementation of TLS server client authentication check | Rainer Gerhards | 2008-05-19 | 1 | -15/+35 |
| | | | | | | | The TLS server now checks the client fingerprint. This works, but is highly experimental. Needs to be refined for practice. Also: - implemented permittedPeers helper construct to store names - changed omfwd implementation to use new permittedPeers | ||||
* | regained netstream driver genericity; improved drivers | Rainer Gerhards | 2008-05-17 | 1 | -3/+9 |
| | | | | | | | | | - made action logic pass optional auth params only if they are actually configured - added new authMode and Fingerprint methods to ptcp netstream driver (keeping them once again generic) - added diagnostics messages when invalid auth modes were configured | ||||
* | added first rough ability to authenticate the server against its certificate | Rainer Gerhards | 2008-05-16 | 1 | -18/+51 |
| | | | | | | | | | | This is very experimental and needs some more work. It probably even segfaults - but the base code is there and running. The rest is refinement. While working on this, I did these two bugfixes: - bugfix: small mem leak in omfwd on exit (strmdriver name was not freed) - bugfix: $ActionSendStreamDriver had no effect | ||||
* | added fromhost-ip properties and some bugfixes | Rainer Gerhards | 2008-05-16 | 1 | -6/+19 |
| | | | | | | | | | | - bugfix: TCP input modules did incorrectly set fromhost property (always blank) - bugfix: imklog did not set fromhost property - added "fromhost-ip" property - added "RSYSLOG_DebugFormat" canned template - bugfix: hostname and fromhost were swapped when a persisted message (in queued mode) was read in | ||||
* | added a bit of doc (at least something...) | Rainer Gerhards | 2008-05-08 | 2 | -0/+7 |
| | |||||
* | added tool to show fingerprints | Rainer Gerhards | 2008-05-08 | 1 | -0/+2 |
| | | | | | this is required for IETF I-D syslog-transport-tls-12. This is a very rough first prototype | ||||
* | added simple shell script to support creating self-signed certs | Rainer Gerhards | 2008-05-08 | 1 | -0/+3 |
| | | | | this is necessary to comply to IETF I-D -syslog-transport-tls-12 | ||||
* | fixed problem with man pages thanks to Michael Biebl's help | Rainer Gerhards | 2008-05-06 | 1 | -2/+2 |
| | |||||
* | file dirty.h was missing - thanks to darix for pointing this out | Rainer Gerhards | 2008-05-06 | 1 | -0/+2 |
| | |||||
* | some cleanup (gotten rid of some more plain chars) | Rainer Gerhards | 2008-05-06 | 1 | -12/+12 |
| | |||||
* | Merge branch 'tls' | Rainer Gerhards | 2008-05-06 | 2 | -16/+29 |
|\ | |||||
| * | invalid strdup when no driver name was set caused segfault | Rainer Gerhards | 2008-05-05 | 1 | -1/+2 |
| | | |||||
| * | support for different forwarding stream drivers added | Rainer Gerhards | 2008-05-05 | 2 | -4/+16 |
| | | | | | | | | they can now be set on an action-by-action basis | ||||
| * | added $InputTCPServerStreamDriverMode config directive | Rainer Gerhards | 2008-04-30 | 1 | -1/+1 |
| | | |||||
| * | fixed problem with module unload sequence | Rainer Gerhards | 2008-04-29 | 1 | -12/+6 |
| | | |||||
| * | added $ActionSendStreamDriverMode config directive | Rainer Gerhards | 2008-04-28 | 1 | -0/+6 |
| | | |||||
* | | Merge branch 'klogd-bug' | Rainer Gerhards | 2008-04-28 | 3 | -310/+329 |
|\ \ | |||||
| * | | preparation for bughunt | Rainer Gerhards | 2008-04-28 | 1 | -6/+5 |
| |/ | | | | | | | including some cleanups | ||||
| * | added forgotten file | Rainer Gerhards | 2008-04-24 | 1 | -0/+42 |
| | | |||||
| * | Merge branch 'sock-abstract' into tls | Rainer Gerhards | 2008-04-24 | 1 | -4/+19 |
| |\ | | | | | | | | | | | | | | | | | | | | | | | | | | | | Conflicts: runtime/Makefile.am runtime/netstrm.c runtime/nsd.h runtime/nsd_ptcp.c runtime/rsyslog.h | ||||
| | * | added new netstrms class | Rainer Gerhards | 2008-04-23 | 1 | -4/+19 |
| | | | | | | | | | | | | netstrms is at the top layer of the socket abstraction | ||||
| * | | Merge branch 'master' into tls | Rainer Gerhards | 2008-04-18 | 1 | -0/+1 |
| |\ \ | | |/ | |/| | |||||
| * | | converted netstrm into generic netstrm and the nsd_pctp driver | Rainer Gerhards | 2008-04-18 | 1 | -0/+2 |
| | | | |||||
| * | | improvements in omfwd and cleanup of omgssapi | Rainer Gerhards | 2008-04-17 | 1 | -4/+30 |
| | | | | | | | | | | | | | | | - some (small) cleanup of omgssapi - optimized omfwed, now loads TCP code only if this is actually necessary | ||||
| * | | modified omfwd to work with netstrm (and also did some cleanup) | Rainer Gerhards | 2008-04-17 | 1 | -303/+238 |
| | | | |||||
* | | | -c option no longer must be the first option | varmojfekoj | 2008-04-24 | 1 | -7/+0 |
| |/ |/| | | | | | | | | | Thanks to varmjofekoj for the patch Signed-off-by: Rainer Gerhards <rgerhards@adiscon.com> | ||||
* | | bugfix: a recent change effectively disabled error messages | Rainer Gerhards | 2008-04-18 | 1 | -0/+1 |
|/ | |||||
* | completed better modularity of runtime | Rainer Gerhards | 2008-04-17 | 2 | -6/+18 |
| | | | | | | | | | | - added the ability to specify an error log function for the runtime - removed dependency of core runtime on dirty.h Note that it is "better" modularity, not perfect. There is still work to do, but I think we can for the time being proceed with other things. | ||||
* | moved "glblModPath" variable inside global data pool | Rainer Gerhards | 2008-04-17 | 1 | -1/+0 |
| | | | | (but still as a variable, not part of glbl object) | ||||
* | moved host/domain-name related variables to global data pool | Rainer Gerhards | 2008-04-17 | 1 | -17/+20 |
| | |||||
* | moved "DisableDNS" variable to global data pool | Rainer Gerhards | 2008-04-17 | 1 | -2/+1 |
| | |||||
* | moved "option_DisallowWarning" variable to global data pool | Rainer Gerhards | 2008-04-17 | 1 | -5/+1 |
| | |||||
* | moved "bDropMalPTRMsgs" variable to global data pool | Rainer Gerhards | 2008-04-17 | 1 | -5/+2 |
| | |||||
* | moved "family" variable to global data pool | Rainer Gerhards | 2008-04-17 | 2 | -5/+8 |
| | |||||
* | modularization work | Rainer Gerhards | 2008-04-17 | 1 | -12/+8 |
| | | | | | cleanup + created an abstract class for global data items and moved glblGetWorkDir to it | ||||
* | prevented segfault during runtime library init phase | Rainer Gerhards | 2008-04-16 | 1 | -3/+3 |
| | |||||
* | removed no longer needed things | Rainer Gerhards | 2008-04-16 | 2 | -54/+1 |
| | | | | | ... and some more cleanup. Also moved a file that I forgot (thanks to Michael Biebl for pointing that out). | ||||
* | some more cleanup | Rainer Gerhards | 2008-04-16 | 18 | -0/+7371 |
reduced dependencies, moved non-runtime files to its own directory except for some whom's status is unclear |