Re: [ossec-list] Format of OSSEC's syslog output entries is different for OSSEC server (rephrased post)

2011-05-06 Thread dan (ddp)
Hi blacklight, On Fri, May 6, 2011 at 3:48 PM, blacklight wrote: > Hello Folks, > > > The exported syslog entries from our OSSEC agent hosts have the > following format > > ossecserver ossec: Alert Level: 10; Rule: 5712 - SSHD brute force > trying to get access to the system.; Location: > (ossecc

[ossec-list] Format of OSSEC's syslog output entries is different for OSSEC server (rephrased post)

2011-05-06 Thread blacklight
Hello Folks, The exported syslog entries from our OSSEC agent hosts have the following format ossecserver ossec: Alert Level: 10; Rule: 5712 - SSHD brute force trying to get access to the system.; Location: (ossecclient.domain.com) 74.143.171.166->/var/log/secure; srcip: 72.55.156.23; Apr 12 22

[ossec-list] Format of OSSEC's syslog output entries is different for OSSEC server

2011-05-04 Thread blacklight
Hello Folks, The format of OSSEC's syslog output for OSSEC clients is as typified in this example: discosco ossec: Alert Level: 10; Rule: 5712 - SSHD brute force trying to get access to the system.; Location: (lady-dev.gaga.net) 74.143.171.166->/var/log/secure; srcip: 72.55.156.23; Apr 12 22:35