Hello sir! Today, I would like to ask you the problem between configuration Ossec and Cisco devices.
In cisco router and switch I config: logging on logging host IP_OF_MY_OSSEC_SERVER logging trap alerts logging facility local7 In the Ossec manager: in the file ossec.conf, I add <ossec_config> <remote> <connection>syslog</connection> <allowed-ips>IP_OF_CISCO_DEVICE</allowed-ips> </remote> <global> <logall>yes</logall> </global> </ossec_config> Then I restart the Ossec services but in the file /var/ossec/logs/archives/archives.log I didn't see anything. So help me please Thank with best regard -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+unsubscr...@googlegroups.com. For more options, visit https://groups.google.com/d/optout.