FWIW, while I believe this discussion is relevant and the security changes proposed are important, I don't see this as a high priority feature. The scripting language/syntax, greater performance, continued stability enhancements, and true RELP support are all far more important. As far as security goes, I would much rather see two-way host authentication than a chroot/unprivilieged framework implemented.
Of course, all of the above would be just fine with me. -HKS _______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com

