summaryrefslogtreecommitdiff
path: root/templates/server
diff options
context:
space:
mode:
authorMathieu Bornoz <mathieu.bornoz@camptocamp.com>2013-05-01 10:10:35 +0200
committerRaphaƫl Pinson <raphael.pinson@camptocamp.com>2013-12-03 09:35:38 +0100
commitfb924446a69b9ce07ea898d5d301ccca8de72b2f (patch)
tree8a31bba5306311dd81ec90bf443c501304c24320 /templates/server
parentf8a05e0e6dd7a40fe53329a20ff81227b23bb398 (diff)
SSL support
Diffstat (limited to 'templates/server')
-rw-r--r--templates/server/_default-header.conf.erb13
1 files changed, 13 insertions, 0 deletions
diff --git a/templates/server/_default-header.conf.erb b/templates/server/_default-header.conf.erb
index 19eb173..95391ce 100644
--- a/templates/server/_default-header.conf.erb
+++ b/templates/server/_default-header.conf.erb
@@ -16,5 +16,18 @@ $ModLoad imtcp
$ActionFileDefaultTemplate RSYSLOG_TraditionalFileFormat
<% end -%>
+<% if scope.lookupvar('rsyslog::server::ssl') -%>
+# Server side SSL.
+$DefaultNetstreamDriver gtls
+
+# Cert files.
+$DefaultNetstreamDriverCAFile <%= scope.lookupvar('rsyslog::server::ssl_ca') %>
+$DefaultNetstreamDriverCertFile <%= scope.lookupvar('rsyslog::server::ssl_cert') %>
+$DefaultNetstreamDriverKeyFile <%= scope.lookupvar('rsyslog::server::ssl_key') %>
+
+$InputTCPServerStreamDriverMode 1
+$InputTCPServerStreamDriverAuthMode anon
+<% end -%>
+
# Switch to remote ruleset
$RuleSet remote