[ossec-list] Re: Watchguard Firebox logs

2015-10-27 Thread Tero Onttonen
Hi, I would be interested in to find a solution regarding Watchguard logs. I did not find a solution after some searching. Did this go any further? Br, Tero On Wednesday, March 11, 2009 at 2:11:44 PM UTC+2, rob.but...@gmail.com wrote: > > Thanks. I'm also working AQTRONIX WebKnight logs

Re: [ossec-list] Re: Watchguard Firebox logs

2015-10-27 Thread Eero Volotinen
Did you checked out watchguard dimension appliance? Eero 27.10.2015 10.49 ap. "Tero Onttonen" kirjoitti: > Hi, > > I would be interested in to find a solution regarding Watchguard logs. I > did not find a solution after some searching. > > Did this go any further? > >

Re: [ossec-list] Re: Watchguard Firebox logs

2015-10-27 Thread dan (ddp)
On Oct 27, 2015 4:49 AM, "Tero Onttonen" wrote: > > Hi, > > I would be interested in to find a solution regarding Watchguard logs. I did not find a solution after some searching. > > Did this go any further? > Are the logs the same as they were in 2009? > Br, > Tero > >

Re: [ossec-list] Merge EventChannel fix into 2.8?

2015-10-27 Thread DefensiveDepth
And the continued blood & sweat! On Tuesday, October 27, 2015 at 8:20:20 AM UTC-4, DefensiveDepth wrote: > > Thanks for the update Dan. > > On Monday, October 26, 2015 at 1:48:25 PM UTC-4, dan (ddpbsd) wrote: >> >> There is some headway being made on a release. Too many things going on >> at

Re: [ossec-list] Merge EventChannel fix into 2.8?

2015-10-27 Thread DefensiveDepth
Thanks for the update Dan. On Monday, October 26, 2015 at 1:48:25 PM UTC-4, dan (ddpbsd) wrote: > > There is some headway being made on a release. Too many things going on at > once, as always. > On Oct 20, 2015 9:39 AM, "DefensiveDepth" > wrote: > >> This all looks good

[ossec-list] Hybrid mode automated install

2015-10-27 Thread Daniel Townend
We are wanting to deploy ossec with active response but also to send logs to OSSIM. I can't see an option for hybrid mode on the automated install config file, is there any way to automate this installation? -- --- You received this message because you are subscribed to the Google Groups

Re: [ossec-list] Hybrid mode automated install

2015-10-27 Thread Santiago Bassett
Hi Daniel, I havent' tested it but maybe you can set USER_INSTALL_TYPE to "hybrid" in the preloaded-vars.conf file. Find it here: https://github.com/ossec/ossec-hids/blob/master/etc/preloaded-vars.conf.example What OSSEC version are you trying to build? Also remember that OSSIM plugin needs to

[ossec-list] ossec and mysql database fails to run

2015-10-27 Thread pgaltieri
I compiled the latest ossec-hids code with mysql database support: cd src make TARGET=server DATABASE=mysql After running the install.sh script I enable the database and start ossec. /usr/local/etc/ossec/bin/ossec-control enable database /usr/local/etc/ossec/bin/ossec-control start The start

Re: [ossec-list] ossec and mysql database fails to run

2015-10-27 Thread dan (ddp)
On Oct 27, 2015 6:34 PM, "pgaltieri" wrote: > > I compiled the latest ossec-hids code with mysql database support: > > cd src > make TARGET=server DATABASE=mysql > > After running the install.sh script I enable the database and start ossec. > >