For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

Skuba_85554's avatar
Skuba_85554
Icon for Nimbostratus rankNimbostratus
Jun 08, 2011

logging question

can someone please explain the difference between 'log' and 'log user.warn'?

 

 

basically, i'm looking at implementing lupo's irule "", but someone has suggested that i replace...

 

 

log "\[VS [IP::local_addr]:[TCP::local_port] client [IP::remote_addr]:[TCP::remote_port]\]:TLS/SSL renegotiation"

 

 

with...

 

 

log user.warn "\[VS [IP::local_addr]:[TCP::local_port] client [IP::remote_addr]:[TCP::remote_port]\]:TLS/SSL renegotiation"

 

 

any advice as to whether or not this is correct would be much appreciated

 

 

thanks

 

11 Replies

  • >we have reproduced renegotiation requests using web sites such as this https://www.ssllabs.com/ssldb/

     

    i used this one. would u mind trying it?

     

     

    Testing for SSL renegotiation

     

    http://blog.ivanristic.com/2009/12/testing-for-ssl-renegotiation.html

     

     

    additionally, please make sure u r using openssl which isn't patched to disable ssl renegotiation.