Hello List, I have the following SEC rule:
type=single desc=input facts file ptype=regexp continue=TakeNext pattern=^SEC_STARTUP$|^SEC_RESTART$|^SEC_SOFTRESTART$ action=assign %n /opt/sec/tools/mytool.sh; \ upon starting or reloading the SEC process I receive the following warning message in my sec.log sec.pl[20304]: Rule in /opt/sec/rules/cisco.rule at line 887: Warning - could not find '%%n' I receive the warning message foreach use of the assigned %n. Everything works as expected, but the warning messages appear every time I reload or restart my SEC process. I`m using sec 2.6.1 on debian 6.0 (amd64) with perl 5.10.1. Any ideas? Thank you in advance, Best regards, Tom ---------------------------------------------------------------- This message was sent using IMP, the Internet Messaging Program. ------------------------------------------------------------------------------ All of the data generated in your IT infrastructure is seriously valuable. Why? It contains a definitive record of application performance, security threats, fraudulent activity, and more. Splunk takes this data and makes sense of it. IT sense. And common sense. http://p.sf.net/sfu/splunk-d2dcopy2 _______________________________________________ Simple-evcorr-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/simple-evcorr-users
