summaryrefslogtreecommitdiff
path: root/rsyslog.d/local-gtls-receive.conf
diff options
context:
space:
mode:
Diffstat (limited to 'rsyslog.d/local-gtls-receive.conf')
-rw-r--r--rsyslog.d/local-gtls-receive.conf20
1 files changed, 18 insertions, 2 deletions
diff --git a/rsyslog.d/local-gtls-receive.conf b/rsyslog.d/local-gtls-receive.conf
index b17d55a..1427da1 100644
--- a/rsyslog.d/local-gtls-receive.conf
+++ b/rsyslog.d/local-gtls-receive.conf
@@ -1,5 +1,21 @@
-# enable gtls reception
-$InputTCPServerRun 514
+# server reception
+
+# load support for tcp-based network reception
+$ModLoad imtcp
+
+# run driver in TLS-only mode
+$InputTCPServerStreamDriverMode 1
+
+# enable only one of below authentication schemes
+
+# client is NOT authenticated
+#$InputTCPServerStreamDriverAuthMode anon
# restrict access based on client certificate
+# (adjust and add Peer lines as needed)
+$InputTCPServerStreamDriverAuthMode x509/name
#$InputTCPServerStreamDriverPermittedPeer *.example.net
+#$InputTCPServerStreamDriverPermittedPeer foo.example.org
+
+# enable gtls reception
+$InputTCPServerRun 10514