Authenticate macOS senders over TLS with certificates in System Keychain?


We are deploying NXLog Enterprise on a fleet of macOS devices with the goals to collect endpoint events even remotely. Which mean Graylog GELF exposed over Internet, with TLS encryption and certificate authentication requirements.

I see that om_ssl can do the job of TLS communication and even client authentication, but the settings I see are using file path for the Private Key.

AskedAugust 5, 2022 - 11:43am

Usage of TLS protocol in CE

NXLOG version: NXLog CE 3.0.2272

OS version: Windows 2019 server \ Windows 10 for client

Issue: I inspect the communication between NXLog client and server via Wireshark. Client output module is om_ssl and server input module is im_ssl.
I've been expecting to see the usage of TLS protocol, but all I see is TCP and RSH protocols, which are non secure protocols. How can this be explained?

AskedFebruary 15, 2022 - 5:24pm