But the rsyslog was delivering the logs to *.fbi.gov
And not retaining logs would still be correct. They said nothing about transporting them to the relevant feds.
But the rsyslog was delivering the logs to *.fbi.gov
And not retaining logs would still be correct. They said nothing about transporting them to the relevant feds.
https://nifi.apache.org/docs/nifi-docs/components/org.apache...
Link/proof asserting Apache NiFi is one of the NSA data analytics tools: https://www.forbes.com/sites/adrianbridgwater/2015/07/21/nsa...
If you actually need a VPN, the last thing you want is for the service to create an opportunity, which wouldn't otherwise exist, for a malicious 3rd party to quietly obtain existing records of DNS queries, connections, and other traffic data.
By not storing the data in advance, the risk is reduced. A malicious actor would have to compromise the servers and either use one as a network tap to send the traffic somewhere else, or enable logging or other analytics locally.
Both are more likely to be detected than a one-time access or leak of data that was already stored.