Re: [ossec-list] OSSEC and Logging Infrastructure Design Questions

2015-01-14 Thread BKeep
13, 2015 at 1:12:16 PM UTC-6, Michael Starks wrote: On 2015-01-13 1:07, BKeep wrote: Does it make sense to ship all endpoint logs to the central log repository then use rsyslog to redirect the logs to local files, graylog2, and OSSEC? I have deployed OSSEC in several environments

Re: [ossec-list] OSSEC and Logging Infrastructure Design Questions

2015-01-14 Thread BKeep
-management-with-elasticsearch/ On Tue, Jan 13, 2015 at 9:12 PM, Michael Starks ossec...@michaelstarks.com javascript: wrote: On 2015-01-13 1:07, BKeep wrote: Does it make sense to ship all endpoint logs to the central log repository then use rsyslog to redirect the logs to local files

Re: [ossec-list] OSSEC and Logging Infrastructure Design Questions

2015-01-14 Thread BKeep
it is not. Thanks for your time. Brandon On Tuesday, January 13, 2015 at 12:56:50 PM UTC-6, David Lang wrote: On Mon, 12 Jan 2015, BKeep wrote: Hi, I am just getting started with designing a logging stack and have some questions regarding how OSSEC will fit into the overall scheme

[ossec-list] OSSEC and Logging Infrastructure Design Questions

2015-01-13 Thread BKeep
Hi, I am just getting started with designing a logging stack and have some questions regarding how OSSEC will fit into the overall scheme. Over the last several weeks, I have been setting up different log stacks and think I have a viable solution. However, I have some questions about how

[ossec-list] Is there a first post restriction?

2015-01-13 Thread BKeep
I was curious is there a restriction for new users to post? -- --- You received this message because you are subscribed to the Google Groups ossec-list group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+unsubscr...@googlegroups.com. For more

[ossec-list] Re: Is there a first post restriction?

2015-01-13 Thread BKeep
Ahh okay thanks -- --- You received this message because you are subscribed to the Google Groups ossec-list group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+unsubscr...@googlegroups.com. For more options, visit