Re: Deploying firewalls with obsd

2005-11-07 Thread James Mackinnon
I have tried the syslog option, because it is udp it just sends off the data and doesn't care if it makes it.. that sucks if you really want to make sure you have everything. Put in mind, what I explain here is not real time, I pull mine down every hour from the 34 server(s) What I did was this

Re: Deploying firewalls with obsd

2005-11-07 Thread Stuart Henderson
b) Firewall logs: I don not need a graphical frontend at this moment. With tcpdump is sufficient. But, how can I upload logs in secure manner to managemnet server and how can I administer this logs (i need to do some searchs, etc)?. Is syslog my unique option?? There are good articles at

Deploying firewalls with obsd

2005-11-07 Thread [EMAIL PROTECTED]
Hi all, I would like to use a central management server for a couple of obsd firewalls. At this point I need to resolve two important questions for me: a) Rules repository: which can be the best form? - putting rules via ssh on obsd firewalls from management ( or viceversa). - use a c