On Wednesday, June 7, 2017 11:22:19 AM EDT Trevor Vaughan wrote:
> Rsyslog requires no additional infrastructure while auditd (direct)
> requires a working Kerberos infrastructure.

TLS support is on the near term audit roadmap. It also is tricky because it 
introduces PKI and/or preshared keys. Which I am hoping is a lighter burden. 
In the meantime there is ssh tunnels and vpn.

-Steve
 
> The former is (sort of) easy to test, the latter is easy to test in theory
> but there are a LOT of assumptions hanging around there.
> 
> Interesting to hear about the split, I'm definitely falling on the rsyslog

_______________________________________________
scap-security-guide mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to