Hello sir!

Today, I would like to ask you the problem between configuration Ossec and 
Cisco devices.

In cisco router and switch I config:

logging on
logging host IP_OF_MY_OSSEC_SERVER
logging trap alerts
logging facility local7 

In the Ossec manager:

in the file ossec.conf, I add

<ossec_config>
<remote> 
  <connection>syslog</connection> 
  <allowed-ips>IP_OF_CISCO_DEVICE</allowed-ips> 
</remote>
 <global>
  <logall>yes</logall>
</global>

</ossec_config>

Then I restart the Ossec services but in the 
file /var/ossec/logs/archives/archives.log
I didn't see anything. So help me please


Thank with best regard

-- 

--- 
You received this message because you are subscribed to the Google Groups 
"ossec-list" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to ossec-list+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to