Red Hat Bugzilla – Bug 185279
Security enhancement, suggested
Last modified: 2007-11-30 17:07:23 EST
Description of problem:
When sysklogd started to except logs from remost hosts, it blindly starts
expecting logs from any host and any network interface, it is desirable if that
can be contained to particular interfaces and hosts. An interim solution could
be a listen or interface directive/option.
Version-Release number of selected component (if applicable):
PS: I am not sure if I was my mind was wandering somewhere else while I filed
this bug finally. Sorry for the pain you must have had gone through to
understand the exact enhancement I suggested and thanks for having this assigned.
I'm sorry, but "$man syslog" claims that you have to implement kernel
firewalling to limit which hosts or networks have access to the 514/UDP