Linux ns8.secondary29.go.th 2.6.32-754.28.1.el6.x86_64 #1 SMP Wed Mar 11 18:38:45 UTC 2020 x86_64
Apache/2.2.15 (CentOS)
: 122.154.134.11 | : 122.154.134.9
Cant Read [ /etc/named.conf ]
5.6.40
apache
www.github.com/MadExploits
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
UNLOCK SHELL
HASH IDENTIFIER
CPANEL RESET
CREATE WP USER
README
+ Create Folder
+ Create File
/
usr /
share /
doc /
rsyslog-5.8.10 /
[ HOME SHELL ]
Name
Size
Permission
Action
AUTHORS
501
B
-rw-r--r--
COPYING
34.32
KB
-rw-r--r--
COPYING.ASL20
8.92
KB
-rw-r--r--
COPYING.LESSER
7.46
KB
-rw-r--r--
ChangeLog
339.47
KB
-rw-r--r--
NEWS
63
B
-rw-r--r--
README
249
B
-rw-r--r--
bugs.html
1.45
KB
-rw-r--r--
build_from_repo.html
4.35
KB
-rw-r--r--
contributors.html
2.44
KB
-rw-r--r--
debug.html
9.41
KB
-rw-r--r--
dev_queue.html
17.27
KB
-rw-r--r--
droppriv.html
2.9
KB
-rw-r--r--
expression.html
1.15
KB
-rw-r--r--
features.html
8.64
KB
-rw-r--r--
generic_design.html
8.8
KB
-rw-r--r--
gssapi.html
3.55
KB
-rw-r--r--
history.html
8.75
KB
-rw-r--r--
how2help.html
2.43
KB
-rw-r--r--
im3195.html
2.08
KB
-rw-r--r--
imfile.html
7.62
KB
-rw-r--r--
imgssapi.html
2.26
KB
-rw-r--r--
imklog.html
4.36
KB
-rw-r--r--
impstats.html
2.91
KB
-rw-r--r--
imptcp.html
4.14
KB
-rw-r--r--
imrelp.html
2.52
KB
-rw-r--r--
imsolaris.html
1.9
KB
-rw-r--r--
imtcp.html
6.15
KB
-rw-r--r--
imuxsock.html
9.45
KB
-rw-r--r--
index.html
1.62
KB
-rw-r--r--
install.html
10.97
KB
-rw-r--r--
ipv6.html
2.94
KB
-rw-r--r--
licensing.html
3.69
KB
-rw-r--r--
log_rotation_fix_size.html
2.74
KB
-rw-r--r--
manual.html
7.48
KB
-rw-r--r--
mmsnmptrapd.html
4.89
KB
-rw-r--r--
modules.html
5.98
KB
-rw-r--r--
multi_ruleset.html
13.65
KB
-rw-r--r--
netstream.html
1.36
KB
-rw-r--r--
ns_gtls.html
2.78
KB
-rw-r--r--
ns_ptcp.html
911
B
-rw-r--r--
omlibdbi.html
6.57
KB
-rw-r--r--
ommail.html
7.78
KB
-rw-r--r--
ommysql.html
3.95
KB
-rw-r--r--
omoracle.html
6.04
KB
-rw-r--r--
omrelp.html
2.37
KB
-rw-r--r--
omruleset.html
6.93
KB
-rw-r--r--
omsnmp.html
6.97
KB
-rw-r--r--
omstdout.html
1.9
KB
-rw-r--r--
omudpspoof.html
4.23
KB
-rw-r--r--
omuxsock.html
1.88
KB
-rw-r--r--
pmlastmsg.html
3.05
KB
-rw-r--r--
property_replacer.html
17.83
KB
-rw-r--r--
queues.html
27.85
KB
-rw-r--r--
queues_analogy.html
20.11
KB
-rw-r--r--
rainerscript.html
4.19
KB
-rw-r--r--
rsconf1_actionexeconlywhenprev...
2.54
KB
-rw-r--r--
rsconf1_actionresumeinterval.h...
1.47
KB
-rw-r--r--
rsconf1_allowedsender.html
3.6
KB
-rw-r--r--
rsconf1_controlcharacterescape...
1.37
KB
-rw-r--r--
rsconf1_debugprintcfsyslinehan...
989
B
-rw-r--r--
rsconf1_debugprintmodulelist.h...
950
B
-rw-r--r--
rsconf1_debugprinttemplatelist...
956
B
-rw-r--r--
rsconf1_dircreatemode.html
1.04
KB
-rw-r--r--
rsconf1_dirgroup.html
1.06
KB
-rw-r--r--
rsconf1_dirowner.html
1.05
KB
-rw-r--r--
rsconf1_dropmsgswithmaliciousd...
1.31
KB
-rw-r--r--
rsconf1_droptrailinglfonrecept...
1.24
KB
-rw-r--r--
rsconf1_dynafilecachesize.html
2.1
KB
-rw-r--r--
rsconf1_escape8bitcharsonrecei...
2.1
KB
-rw-r--r--
rsconf1_escapecontrolcharacter...
1.92
KB
-rw-r--r--
rsconf1_failonchownfailure.htm...
1.25
KB
-rw-r--r--
rsconf1_filecreatemode.html
2.03
KB
-rw-r--r--
rsconf1_filegroup.html
1.05
KB
-rw-r--r--
rsconf1_fileowner.html
1.05
KB
-rw-r--r--
rsconf1_generateconfiggraph.ht...
7.92
KB
-rw-r--r--
rsconf1_gssforwardservicename....
1.04
KB
-rw-r--r--
rsconf1_gsslistenservicename.h...
905
B
-rw-r--r--
rsconf1_gssmode.html
1.04
KB
-rw-r--r--
rsconf1_includeconfig.html
3.06
KB
-rw-r--r--
rsconf1_mainmsgqueuesize.html
2.15
KB
-rw-r--r--
rsconf1_markmessageperiod.html
1.33
KB
-rw-r--r--
rsconf1_moddir.html
1.2
KB
-rw-r--r--
rsconf1_modload.html
1.49
KB
-rw-r--r--
rsconf1_repeatedmsgreduction.h...
1.3
KB
-rw-r--r--
rsconf1_resetconfigvariables.h...
1.05
KB
-rw-r--r--
rsconf1_rulesetcreatemainqueue...
3.7
KB
-rw-r--r--
rsconf1_rulesetparser.html
5.77
KB
-rw-r--r--
rsconf1_umask.html
1.16
KB
-rw-r--r--
rscript_abnf.html
6.69
KB
-rw-r--r--
rsyslog_conf.html
4.19
KB
-rw-r--r--
rsyslog_conf_actions.html
18
KB
-rw-r--r--
rsyslog_conf_examples.html
7.7
KB
-rw-r--r--
rsyslog_conf_filter.html
14.08
KB
-rw-r--r--
rsyslog_conf_global.html
21.93
KB
-rw-r--r--
rsyslog_conf_modules.html
10.26
KB
-rw-r--r--
rsyslog_conf_nomatch.html
2.69
KB
-rw-r--r--
rsyslog_conf_output.html
4.06
KB
-rw-r--r--
rsyslog_conf_templates.html
10.99
KB
-rw-r--r--
rsyslog_high_database_rate.htm...
8.62
KB
-rw-r--r--
rsyslog_mysql.html
16.02
KB
-rw-r--r--
rsyslog_ng_comparison.html
16.53
KB
-rw-r--r--
rsyslog_packages.html
2.76
KB
-rw-r--r--
rsyslog_pgsql.html
19.75
KB
-rw-r--r--
rsyslog_php_syslog_ng.html
8.54
KB
-rw-r--r--
rsyslog_recording_pri.html
8.19
KB
-rw-r--r--
rsyslog_reliable_forwarding.ht...
8.46
KB
-rw-r--r--
rsyslog_secure_tls.html
7.33
KB
-rw-r--r--
rsyslog_stunnel.html
15.39
KB
-rw-r--r--
rsyslog_tls.html
15.52
KB
-rw-r--r--
syslog_parsing.html
14.03
KB
-rw-r--r--
syslog_protocol.html
12.64
KB
-rw-r--r--
tls_cert_ca.html
7.67
KB
-rw-r--r--
tls_cert_client.html
4.5
KB
-rw-r--r--
tls_cert_errmsgs.html
5.67
KB
-rw-r--r--
tls_cert_machine.html
8.61
KB
-rw-r--r--
tls_cert_scenario.html
3.03
KB
-rw-r--r--
tls_cert_server.html
6.61
KB
-rw-r--r--
tls_cert_summary.html
3.26
KB
-rw-r--r--
tls_cert_udp_relay.html
5.11
KB
-rw-r--r--
troubleshoot.html
11.08
KB
-rw-r--r--
v3compatibility.html
11.19
KB
-rw-r--r--
v4compatibility.html
6.2
KB
-rw-r--r--
v5compatibility.html
2.19
KB
-rw-r--r--
version_naming.html
8.71
KB
-rw-r--r--
Delete
Unzip
Zip
${this.title}
Close
Code Editor : tls_cert_errmsgs.html
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html><head><title>TLS-protected syslog: error messages</title> </head> <body> <h1>Encrypting Syslog Traffic with TLS (SSL)</h1> <p><small><i>Written by <a href="http://www.adiscon.com/en/people/rainer-gerhards.php">Rainer Gerhards</a> (2008-06-17)</i></small></p> <ul> <li><a href="rsyslog_secure_tls.html">Overview</a> <li><a href="tls_cert_scenario.html">Sample Scenario</a> <li><a href="tls_cert_ca.html">Setting up the CA</a> <li><a href="tls_cert_machine.html">Generating Machine Certificates</a> <li><a href="tls_cert_server.html">Setting up the Central Server</a> <li><a href="tls_cert_client.html">Setting up syslog Clients</a> <li><a href="tls_cert_udp_relay.html">Setting up the UDP syslog relay</a> <li><a href="tls_cert_summary.html">Wrapping it all up</a> <li><a href="tls_cert_errmsgs.html">Frequently seen Error Messages</a> </ul> <h3>Error Messages</h3> <p>This page covers error message you may see when setting up <span style="float: left"> <script type="text/javascript"><!-- google_ad_client = "pub-3204610807458280"; /* rsyslog doc inline */ google_ad_slot = "5958614527"; google_ad_width = 125; google_ad_height = 125; //--> </script> <script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"> </script> </span> <a href="http://www.rsyslog.com">rsyslog</a> with TLS. Please note that many of the message stem back to the TLS library being used. In those cases, there is not always a good explanation available in rsyslog alone. <p>A single error typically results in two or more message being emitted: (at least) one is the actual error cause, followed by usually one message with additional information (like certificate contents). In a typical system, these message should immediately follow each other in your log. Kepp in mind that they are reported as syslog.err, so you need to capture these to actually see errors (the default rsyslog.conf's shipped by many systems will do that, recording them e.g. in /etc/messages). <h3>certificate invalid</h3> <p>Sample: <code> not permitted to talk to peer, certificate invalid: <font color="red">insecure algorithm</font> </code> <p>This message may occur during connection setup. It indicates that the remote peer's certificate can not be accepted. The reason for this is given in the message part that is shown in red. Please note that this red part directly stems back to the TLS library, so rsyslog does acutally not have any more information about the reason. <p>With GnuTLS, the following reasons have been seen in practice: <h4>insecure algorith</h4> <p>The certificate contains information on which encryption algorithms are to be used. This information is entered when the certificate is created. Some older alogrithms are no longer secure and the TLS library does not accept them. Thus the connection request failed. The cure is to use a certificate with sufficiently secure alogorithms. <p>Please note that noi encryption algorithm is totally secure. It only is secure based on our current knowledge AND on computing power available. As computers get more and more powerful, previously secure algorithms become insecure over time. As such, algorithms considered secure today may not be accepted by the TLS library in the future. <p>So in theory, after a system upgrade, a connection request may fail with the "insecure algorithm" failure without any change in rsyslog configuration or certificates. This could be caused by a new perception of the TLS library of what is secure and what not. <h3>GnuTLS error -64</h3> <p>Sample: <code>unexpected GnuTLS error -64 in nsd_gtls.c:517: Error while reading file.</code> <p>This error points to an encoding error witht the pem file in question. It means "base 64 encoding error". From my experience, it can be caused by a couple of things, some of them not obvious: <ul> <li>You specified a wrong file, which is not actually in .pem format <li>The file was incorrectly generated <li>I think I have also seen this when I accidently swapped private key files and certificate files. So double-check the type of file you are using. <li>It may even be a result of an access (permission) problem. In theory, that should lead to another error, but in practice it sometimes seems to lead to this -64 error. </ul> <h3>info on invalid cert</h3> <p>Sample: <code> info on invalid cert: peer provided 1 certificate(s). Certificate 1 info: certificate valid from Wed Jun 18 11:45:44 2008 to Sat Jun 16 11:45:53 2018; Certificate public key: RSA; DN: C=US,O=Sample Corp,OU=Certs,L=Somehwere,ST=CA,CN=somename; Issuer DN: C=US,O=Sample Corp,OU=Certs,L=Somewhere,ST=CA,CN=somename,EMAIL=xxx@example.com; SAN:DNSname: machine.example.net; </code> <p>This is <b>not</b> an error message in itself. It always follows the actual error message and tells you what is seen in the peer's certificate. This is done to give you a chance to evaluate the certificate and better understand why the initial error message was issued. <p>Please note that you can NOT diagnose problems based on this message alone. It follows in a number of error cases and does not pinpoint any problems by itself. <h2>Copyright</h2> <p>Copyright (c) 2008 <a href="http://www.adiscon.com/en/people/rainer-gerhards.php">Rainer Gerhards</a> and <a href="http://www.adiscon.com/en/">Adiscon</a>.</p> <p> Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License, Version 1.2 or any later version published by the Free Software Foundation; with no Invariant Sections, no Front-Cover Texts, and no Back-Cover Texts. A copy of the license can be viewed at <a href="http://www.gnu.org/copyleft/fdl.html">http://www.gnu.org/copyleft/fdl.html</a>.</p> </body></html>
Close