Hello List,

I have the following SEC rule:

type=single
desc=input facts file
ptype=regexp
continue=TakeNext
pattern=^SEC_STARTUP$|^SEC_RESTART$|^SEC_SOFTRESTART$
action=assign %n /opt/sec/tools/mytool.sh; \


upon starting or reloading the SEC process I receive the following  
warning message in my sec.log

  sec.pl[20304]: Rule in /opt/sec/rules/cisco.rule at line 887:  
Warning - could not find '%%n'

I receive the warning message foreach use of the assigned %n.

Everything works as expected, but the warning messages appear every  
time I reload or restart my SEC process.

I`m using sec 2.6.1 on debian 6.0 (amd64) with perl 5.10.1.

Any ideas?

Thank you in advance,

Best regards,

Tom





----------------------------------------------------------------
This message was sent using IMP, the Internet Messaging Program.



------------------------------------------------------------------------------
All of the data generated in your IT infrastructure is seriously valuable.
Why? It contains a definitive record of application performance, security
threats, fraudulent activity, and more. Splunk takes this data and makes
sense of it. IT sense. And common sense.
http://p.sf.net/sfu/splunk-d2dcopy2
_______________________________________________
Simple-evcorr-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/simple-evcorr-users

Reply via email to