GssMode

Chooses whether omgssapi requests integrity-only or encrypted message protection for GSSAPI sessions.

This parameter applies to GSSAPI module support in rsyslog v3.

Name:

GssMode

Scope:

module

Type:

string

Default:

encryption

Required?:

no

Introduced:

1.21.2

Description

Specifies the GSS-API protection level used by the client. The available modes are:

  • integrity — only authenticates clients and verifies message integrity.

  • encryption — provides the same guarantees as integrity and encrypts messages when both peers support it.

Legacy configurations set this directive with statements such as $GssMode encryption.

Module usage

module(load="omgssapi" gssMode="encryption")
action(type="omgssapi" target="receiver.mydomain.com")

Legacy names (for reference)

Historic names/directives for compatibility. Do not use in new configs.

  • $GssMode — maps to GssMode (status: legacy)

See also

See also GSSAPI module support in rsyslog v3.


Support: rsyslog Assistant | GitHub Discussions | GitHub Issues: rsyslog source project

Contributing: Source & docs: rsyslog source project

© 2008–2025 Rainer Gerhards and others. Licensed under the Apache License 2.0.