When connecting to a syslog-ng server using an encrypted connection, the syslog-ng agent verifies the certificate of the server. The connection is established only if the Certificate Authority (CA) that issued the certificate of the server is available in the Certificate Store (MMC > Certificates > Computer Account > Local Computer > Trusted Root Certificates) of the Windows-based host.
![]() |
Note |
|---|---|
This certificate (sometimes also called the CACert of the server) is not the certificate of the server: it is the certificate of the CA that signed the certificate of the server. (For details on how certificate-based authentication works, see Section 2.7, “Secure logging using TLS”) |
To enable SSL-encrypted connections to the server, complete the following steps:
Procedure 5.4.1. Enabling encrypted connections
Start the configuration interface of the syslog-ng Agent for Windows application.
Select , and double-click on .
Select the server that accepts encrypted connections and click .
Select the option.
![]() |
Warning |
|---|---|
The connection can be established only if the Certificate Authority (CA) that issued the certificate of the server is available in the Certificate Store (MMC > Certificates > Computer Account > Local Computer > Trusted Root Certificates) of the Windows-based host. See Section 5.4.3, “Importing certificates with the Microsoft Management Console” for details on importing certificates. |
Select , then . To activate the changes, restart the syslog-ng Agent service.
© 2007-2010 BalaBit IT Security
Please send your comments or documentation bugs to: documentation@balabit.com