Thanks a lot for all your replies.
This auditing is for common criteria certification. The OS we use is Red-hat
Linux.
As you know common criteria requires these handshake failures need to be
redirected to a syslog server.
Any attempt via the tcp-dump/wireshark is not acceptable by the certific
Thomas,
On 7/7/22 13:36, Thomas Hoffmann (Speed4Trade GmbH) wrote:
-Ursprüngliche Nachricht-
Von: Thomas Hoffmann (Speed4Trade GmbH)
Gesendet: Donnerstag, 7. Juli 2022 19:23
An: Tomcat Users List
Betreff: AW: SSL handshake failure logs required for auditing purpose
Hello Raghav,
Tre's Bueno!
Dream * Excel * Explore * Inspire
Jon McAlexander
Senior Infrastructure Engineer
Asst. Vice President
He/His
Middleware Product Engineering
Enterprise CIO | EAS | Middleware | Infrastructure Solutions
8080 Cobblestone Rd | Urbandale, IA 50322
MAC: F4469-010
Tel 515-988-2508 | Cell 5
The next release (9.0.65) will have a dedicated logger for TLS handshake
failures. You will be able to configure it like any other logger -
including directing it to a dedicated file.
Mark
On 07/07/2022 17:11, Ragavendhiran Bhiman (rabhiman) wrote:
Hi All,
I require your kind help in loggin
> -Ursprüngliche Nachricht-
> Von: Thomas Hoffmann (Speed4Trade GmbH)
>
> Gesendet: Donnerstag, 7. Juli 2022 19:23
> An: Tomcat Users List
> Betreff: AW: SSL handshake failure logs required for auditing purpose
>
> Hello Raghav,
>
> > -Ursprüngliche Nachricht-
> > Von: Ragave
Hello Raghav,
> -Ursprüngliche Nachricht-
> Von: Ragavendhiran Bhiman (rabhiman)
> Gesendet: Donnerstag, 7. Juli 2022 18:13
> An: Tomcat Users List
> Betreff: Re: SSL handshake failure logs required for auditing purpose
>
> Version of tomcat used 9.0.x.
> Kindly help on the ssl logging
Version of tomcat used 9.0.x.
Kindly help on the ssl logging for auditing purpose other than -D javax.net
option.
From: Ragavendhiran Bhiman (rabhiman)
Date: Thursday, 7 July 2022 at 9:41 PM
To: users@tomcat.apache.org
Subject: SSL handshake failure logs required for auditing purpose
Hi All,
I
Hi All,
I require your kind help in logging the SSl connection failure logs including
iP in the tomcat, Is there any best way to do It without performance impact
other than -Djava.net debugs in jdk, is there any direct way from tomcat? Or
any way we can derive any class from JSSE extension clas
Hi Christopher,
I'm agreeing with you about long transaction for a general JEE
application design. But that's probably the one case over a million.
Tomcat is used as the middle tiers server for a jdbc type 3 driver, with
an IDEs as a front-end. In this situation we know transaction can be
lo