From fb924446a69b9ce07ea898d5d301ccca8de72b2f Mon Sep 17 00:00:00 2001 From: Mathieu Bornoz Date: Wed, 1 May 2013 10:10:35 +0200 Subject: SSL support --- templates/server/_default-header.conf.erb | 13 +++++++++++++ 1 file changed, 13 insertions(+) (limited to 'templates/server/_default-header.conf.erb') diff --git a/templates/server/_default-header.conf.erb b/templates/server/_default-header.conf.erb index 19eb173..95391ce 100644 --- a/templates/server/_default-header.conf.erb +++ b/templates/server/_default-header.conf.erb @@ -16,5 +16,18 @@ $ModLoad imtcp $ActionFileDefaultTemplate RSYSLOG_TraditionalFileFormat <% end -%> +<% if scope.lookupvar('rsyslog::server::ssl') -%> +# Server side SSL. +$DefaultNetstreamDriver gtls + +# Cert files. +$DefaultNetstreamDriverCAFile <%= scope.lookupvar('rsyslog::server::ssl_ca') %> +$DefaultNetstreamDriverCertFile <%= scope.lookupvar('rsyslog::server::ssl_cert') %> +$DefaultNetstreamDriverKeyFile <%= scope.lookupvar('rsyslog::server::ssl_key') %> + +$InputTCPServerStreamDriverMode 1 +$InputTCPServerStreamDriverAuthMode anon +<% end -%> + # Switch to remote ruleset $RuleSet remote -- cgit v1.2.3