We have a number of DMZs and routers that are defined on the insecure side of our network. We also have Cisco LMS. We would like our RME (on our inside network) to get syslogs from these switches and routers. What is the Cisco or industry recommended way to implement this? Can we send syslogs securely to RME? (This is above the standard procedures of allowing these devices to only send to one syslog server (RME) and locking it down with a number of access-lists)
Can the syslog messages be sent on a secure connection like SSL or SSH?