Skip to content

Issues receiving RELP rsyslog messages via TLS #5

@Nabilliban14

Description

@Nabilliban14

Hello! I have been trying to debug an issue with sending over RELP rsyslog logs via TLS to a Fluent collector. However, using TLS has brought up some issues. Below is the config I used (with some info censored out):

`
@type relp
port 26514
tag tls
bind xxx.xxx.xxx.xxx
#if you want to use TLS encryption specify this
<ssl_cert>
cert /etc/xxx/xxx/my_cert.crt
key /etc/xxx/xxx/my_key.key
<extra_cert>
cert /etc/xxx/xxx/extra_cert.chain.crt
</extra_cert>
</ssl_cert>
ssl_ca_file /etc/xxx/xxx/ca-bundle.crt

`

I received these messages in the td-agent.log file when running td-agent:

2020-07-14 18:52:41 +0000 [warn]: section <ssl_cert> is not used in <source> of relp plugin
2020-07-01 15:44:09.900673954 +0000 fluent.error: {"message":"Problem with reading RELP frame"}

I believe a possible reason could be because the plugin isn't using TLS but rather trying to use SSL. I tried to specify TLS by adding in the section but we received error logs that look like the following:

2020-07-14 19:38:01 +0000 [warn]: section <transport> is not used in <source> of relp plugin

I can confirm on the sender end that messages are being sent over in TLS format. Any help would be much appreciated.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions