Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ Encrypting local syslog traffic?

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š Encrypting local syslog traffic?


๐Ÿ’ก Newskategorie: Linux Tipps
๐Ÿ”— Quelle: reddit.com

Security audit team is citing us for not encrypting logs for our local traffic, which resides behind a Firewall sitting in an isolated network behind another firewall. We are using Graylog and they are saying we need to set it up to use TCP+TLS which is obviously doable but i'm trying to figure out why. To me this is a non-issue and they are just citing AU-09 of NIST800-53 as a reason:

" AU-09: The information system protects audit information and audit tools from unauthorized access, modification, and deletion"

I've always read that control as referring to data at rest on the system, since it references tools as well. But they said that MP-2 is for that. Does anyone actively do this in their corp environments and can provide a justifiable reason? It's silly and cumbersome to me if the logs are not going out of network, and if someone is actively sniffing all the logs they have popped the log server or a system on it's VLAN and we have WAAAAAAY bigger issues then them sniffing out a few logs.

submitted by /u/bfrown
[link] [comments] ...



๐Ÿ“Œ Encrypting local syslog traffic?


๐Ÿ“ˆ 51.67 Punkte

๐Ÿ“Œ [local] SolarWinds Kiwi Syslog Server 8.3.52 - 'Kiwi Syslog Server' Unquoted Service Path


๐Ÿ“ˆ 42.72 Punkte

๐Ÿ“Œ #0daytoday #SolarWinds Kiwi Syslog Server 8.3.52 - (Kiwi Syslog Server) Unquoted Service Path Vulne [#0day #Exploit]


๐Ÿ“ˆ 36.68 Punkte

๐Ÿ“Œ What program is great for encrypting individual files on Windows instead of encrypting entire volumes like with VeraCrypt?


๐Ÿ“ˆ 35.22 Punkte

๐Ÿ“Œ Using only 1 secure way of encrypting traffic vs more than 1


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ Stream Cipher for Encrypting Network Traffic?


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ 80% of all Android apps are encrypting traffic by default


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ Unpatched iOS Bug Blocks VPNs From Encrypting All Traffic


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ Security In 5: Episode 608 - Interesting Story About Police Encrypting Radio Traffic


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ Unpatched iOS Bug Blocks VPNs From Encrypting All Traffic


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ Researchers Find Bug Existing Since iOS 13.3.1 Which Interferes With VPNs Encrypting Traffic


๐Ÿ“ˆ 27.29 Punkte

๐Ÿ“Œ [local] - SolarWinds Kiwi Syslog Server 9.5.1 - Unquoted Service Path Privilege Escalation


๐Ÿ“ˆ 24.38 Punkte

๐Ÿ“Œ [local] - SolarWinds Kiwi Syslog Server 9.5.1 - Unquoted Service Path Privilege Escalation


๐Ÿ“ˆ 24.38 Punkte

๐Ÿ“Œ Vuln: Kiwi Syslog Server and Kiwi CatTools Local Privilege Escalation Vulnerability


๐Ÿ“ˆ 24.38 Punkte

๐Ÿ“Œ Vuln: Kiwi Syslog Server and Kiwi CatTools Local Privilege Escalation Vulnerability


๐Ÿ“ˆ 24.38 Punkte

๐Ÿ“Œ Vuln: Self-Encrypting Drives CVE-2018-12038 Local Security Bypass Vulnerability


๐Ÿ“ˆ 23.65 Punkte

๐Ÿ“Œ Vuln: Self-Encrypting Drives CVE-2018-12037 Local Security Bypass Vulnerability


๐Ÿ“ˆ 23.65 Punkte

๐Ÿ“Œ Web-Traffic-Generator - A Quick And Dirty HTTP/S "Organic" Traffic Generator


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Website Traffic Generator - Babylon Traffic


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Apache Traffic Control Traffic Router TCP Connection Slowloris denial of service


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ NSA 'Traffic Shaping' Can Divert US Internet Traffic For Easier Monitoring


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Bad bot traffic increases, comprising almost one quarter of all website traffic


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ NeDi 1.9C Nodes Traffic /Nodes-Traffic.php md/ag os command injection


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ FB-Traffic (frรผher: Fritz!Box Traffic) 1.1.7314.41 Englisch


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Become a Traffic Wizard: A Beginner's Guide to Routing Traffic with Apache AGE


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Artificial Inflation of Traffic: So schadet SMS Traffic Pumping


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ The Traffic Police ๐Ÿšจ - Controlling outgoing traffic with mirrord


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Apache Traffic Control Traffic Router TCP Connection Slowloris Denial of Service


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Ntopng - Web-based Traffic And Security Network Traffic Monitoring


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Ntopng - Web-based Traffic And Security Network Traffic Monitoring


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ Modifying Network Traffic in Linux: 4 cases when you might need to modify network traffic


๐Ÿ“ˆ 19.37 Punkte

๐Ÿ“Œ API7 Enterprise's Canary Traffic Shifting Strategy for Precise Traffic Control


๐Ÿ“ˆ 19.37 Punkte











matomo