I also posted this question in Reddit When we run a CIS policy scan on a Linux server running Ossec, it complains that the three users ossec, ossecm, ossecr all share the home directory /var/ossec.
Does anyone have a recommendation on the importance of this finding, whether it is OK to ignore, or possible to remediate? I realize you may need more context to make a recommendation, but if not, please do. thanks -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+unsubscr...@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/ossec-list/88d549e7-1e60-40be-ad66-df6ab78e7cefn%40googlegroups.com.