<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic TLS Syslog cert import in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/tls-syslog-cert-import/m-p/30089#M21987</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Certificates, can anybody help?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a cert &lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;syslog-ng.cert that ArcSight logger auto-generated and I want to import this on to the firewall as a "Certificate for Secure SYSLOG"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;It imports OK as &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;Base64 encoded PEM &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;f&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt; line-height: 1.5em; color: #222222; font-family: arial, sans-serif;"&gt;ormat, with the &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;option to import a private key disabled (if I &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;choose this I need to give a Key File or a Passphrase...which I don't have).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;But once the valid cert is loaded I do not have the option to make it a &lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;"Certificate for Secure SYSLOG".&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;Something must be missing from &lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;syslog-ng.cert, Logger has openssl installed so if I could figure out the syntax to produce a key that the firewall will be happy to use for SYSLOG.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;Thanks for looking.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Best regards&lt;/P&gt;&lt;P&gt;Richard&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 15 Jul 2014 07:11:48 GMT</pubDate>
    <dc:creator>RichardThornton</dc:creator>
    <dc:date>2014-07-15T07:11:48Z</dc:date>
    <item>
      <title>TLS Syslog cert import</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tls-syslog-cert-import/m-p/30089#M21987</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Certificates, can anybody help?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a cert &lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;syslog-ng.cert that ArcSight logger auto-generated and I want to import this on to the firewall as a "Certificate for Secure SYSLOG"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;It imports OK as &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;Base64 encoded PEM &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;f&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt; line-height: 1.5em; color: #222222; font-family: arial, sans-serif;"&gt;ormat, with the &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;option to import a private key disabled (if I &lt;/SPAN&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;choose this I need to give a Key File or a Passphrase...which I don't have).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;But once the valid cert is loaded I do not have the option to make it a &lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;"Certificate for Secure SYSLOG".&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;Something must be missing from &lt;SPAN style="color: #222222; font-family: arial, sans-serif;"&gt;syslog-ng.cert, Logger has openssl installed so if I could figure out the syntax to produce a key that the firewall will be happy to use for SYSLOG.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;Thanks for looking.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #222222; font-family: arial, sans-serif; font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Best regards&lt;/P&gt;&lt;P&gt;Richard&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2014 07:11:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tls-syslog-cert-import/m-p/30089#M21987</guid>
      <dc:creator>RichardThornton</dc:creator>
      <dc:date>2014-07-15T07:11:48Z</dc:date>
    </item>
    <item>
      <title>Re: TLS Syslog cert import</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tls-syslog-cert-import/m-p/30090#M21988</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; line-height: 1.5em;"&gt;Hello,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="Bold" style="font-weight: bold; color: #000000; font-family: 'Microsoft Sans Serif';"&gt;Certificate for Secure &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;Syslog&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="color: #000000; font-family: 'Microsoft Sans Serif';"&gt;—This certificate enables secure forwarding of &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;syslogs&lt;/SPAN&gt; to an external &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;syslog&lt;/SPAN&gt; server. &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;( &lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;it&lt;/SPAN&gt; should not be a CA)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; font-family: 'Microsoft Sans Serif';"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; font-family: 'Microsoft Sans Serif';"&gt; &lt;IMG alt="certificate.JPG" class="image-0 jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/14446_certificate.JPG" style="height: 251px; width: 620px;" /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;Syslogng&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt; must access end entity and CA certificates in order to negotiate SSL connections. All default, user imported or generated CA &lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark" style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt;certs&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt; must be loaded into Syslogng’s CA directory.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: inherit; font-size: 10pt; font-style: inherit; font-weight: inherit; line-height: 1.5em;"&gt;Thanks&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Jul 2014 07:33:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tls-syslog-cert-import/m-p/30090#M21988</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-07-15T07:33:02Z</dc:date>
    </item>
  </channel>
</rss>

