Hi blacklight,
On Fri, May 6, 2011 at 3:48 PM, blacklight wrote:
> Hello Folks,
>
>
> The exported syslog entries from our OSSEC agent hosts have the
> following format
>
> ossecserver ossec: Alert Level: 10; Rule: 5712 - SSHD brute force
> trying to get access to the system.; Location:
> (ossecc
Hello Folks,
The exported syslog entries from our OSSEC agent hosts have the
following format
ossecserver ossec: Alert Level: 10; Rule: 5712 - SSHD brute force
trying to get access to the system.; Location:
(ossecclient.domain.com) 74.143.171.166->/var/log/secure; srcip:
72.55.156.23; Apr 12 22
Hello Folks,
The format of OSSEC's syslog output for OSSEC clients is as typified
in this example:
discosco ossec: Alert Level: 10; Rule: 5712 - SSHD brute force trying
to get access to the system.; Location: (lady-dev.gaga.net)
74.143.171.166->/var/log/secure; srcip: 72.55.156.23; Apr 12 22:35