<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Secure remote auditing/logging in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429015#M759482</link>
    <description>Hello,&lt;BR /&gt;Which would be the best way/procedure to remotely audit (in a secure way) a Trusted system on HP-UX 11?  I'm aware one may remotely run SAM, and thus remotely audit a computer.  However, this kind of connection would not be secured (not encrypted). Maybe the use of ssh (secure shell) would be an alternative. Another question in the same direction: is it possible with a Trusted system to have encrypted remote logging? The syslogd daemon can be configured to store logs in a remote machine (loghost), but it uses a plain udp connection, which is also not secure enough.  Any comments would be greatly appreciated! Thanks,&lt;BR /&gt;Asdrubal</description>
    <pubDate>Wed, 05 Jul 2000 06:32:09 GMT</pubDate>
    <dc:creator>Asdrubal Pichardo</dc:creator>
    <dc:date>2000-07-05T06:32:09Z</dc:date>
    <item>
      <title>Secure remote auditing/logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429015#M759482</link>
      <description>Hello,&lt;BR /&gt;Which would be the best way/procedure to remotely audit (in a secure way) a Trusted system on HP-UX 11?  I'm aware one may remotely run SAM, and thus remotely audit a computer.  However, this kind of connection would not be secured (not encrypted). Maybe the use of ssh (secure shell) would be an alternative. Another question in the same direction: is it possible with a Trusted system to have encrypted remote logging? The syslogd daemon can be configured to store logs in a remote machine (loghost), but it uses a plain udp connection, which is also not secure enough.  Any comments would be greatly appreciated! Thanks,&lt;BR /&gt;Asdrubal</description>
      <pubDate>Wed, 05 Jul 2000 06:32:09 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429015#M759482</guid>
      <dc:creator>Asdrubal Pichardo</dc:creator>
      <dc:date>2000-07-05T06:32:09Z</dc:date>
    </item>
    <item>
      <title>Re: Secure remote auditing/logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429016#M759483</link>
      <description>I would suggest the following:&lt;BR /&gt;&lt;BR /&gt;- run SAM from an ssh logged-in terminal; if you need the X gui version, you would have to enable X-tunneling in your sshd (and ssh client) for it to work.&lt;BR /&gt;&lt;BR /&gt;-I would suggest that you write yourself a little utility that monitors the a syslog file and sftp's it to your target server.  (or your target server could pool the server with sftp).&lt;BR /&gt;&lt;BR /&gt;Good luck.</description>
      <pubDate>Wed, 05 Jul 2000 17:07:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429016#M759483</guid>
      <dc:creator>Kofi ARTHIABAH</dc:creator>
      <dc:date>2000-07-05T17:07:31Z</dc:date>
    </item>
    <item>
      <title>Re: Secure remote auditing/logging</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429017#M759484</link>
      <description>Hello,&lt;BR /&gt;I have a HP-UX 11.0 trusted system and I run audit remotely using ssh. Telnet, rlogin, ftp and so on are disable. Audit is turn on and monitor from a remote system that has ssh installed as well. If you do not want to use sam, you can use audit commands from command line (see man for audsys, audisp, setevent and so on).&lt;BR /&gt;Yes, you can have secured remote login via ssh (ssh ?l username remotemachine). You need to have ssh installed and configured on both machine. If you allowed root to login just from the console, after a regular user get in via ssh, he/she can su to root.&lt;BR /&gt;Hope that helps.&lt;BR /&gt;</description>
      <pubDate>Wed, 05 Jul 2000 17:43:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/secure-remote-auditing-logging/m-p/2429017#M759484</guid>
      <dc:creator>Antoanetta Naghiu</dc:creator>
      <dc:date>2000-07-05T17:43:05Z</dc:date>
    </item>
  </channel>
</rss>

