Hi,

One problem existing yet
Part of ossec.log is below:
2006/06/15 10:35:48 ossec-logcollector(1950): Analyzing file:
'/var/log/squid/access.log'.
2006/06/15 10:35:48 ossec-logcollector: Started (pid: 2372).
2006/06/15 18:27:36 incorrect message: 'Authorization: Negotiate
YIIQegYGKwYBBQUCoIIQbjCCEG
2006/06/15 18:27:37 incorrect message: 'mod_security-message: Access denied
with code 406.
2006/06/15 18:27:37 incorrect message: ''
2006/06/15 18:27:37 incorrect message: 'Content-Length: 328'
2006/06/15 18:27:37 incorrect message: 'Content-Type: text/html;
charset=iso-8859-1'
2006/06/15 18:27:37 incorrect message: ''
2006/06/16 04:02:49 incorrect message: 'dflo-66-243-230-163.gtcom.net - -
[16/Jun/2006:04:0
2006/06/16 04:02:49 incorrect message: 'dflo-66-243-230-163.gtcom.net - -
[16/Jun/2006:04:0
2006/06/16 06:22:24 incorrect message: '[Fri Jun 16 06:22:24 2006] [error]
[client 58.69.89
2006/06/16 12:01:00 incorrect message: 'lj2022.inktomisearch.com - -
[16/Jun/2006:12:01:00
2006/06/16 12:32:43 incorrect message: 'Authorization: Negotiate
YIIQegYGKwYBBQUCoIIQbjCCEG
2006/06/16 12:32:43 incorrect message: 'mod_security-message: Access denied
with code 406.
2006/06/16 12:32:43 incorrect message: ''
2006/06/16 12:32:43 incorrect message: 'Content-Length: 328'
2006/06/16 12:32:43 incorrect message: 'Content-Type: text/html;
charset=iso-8859-1'
2006/06/16 12:32:43 incorrect message: ''
2006/06/16 13:24:37 incorrect message: 'lj2390.inktomisearch.com - -
[16/Jun/2006:13:24:37
2006/06/16 18:05:29 incorrect message: 'dsl54007d20.pool.t-online.hu - -
[16/Jun/2006:18:05
2006/06/16 23:30:03 incorrect message: 'Authorization: Negotiate
YIIQegYGKwYBBQUCoIIQbjCCEG
2006/06/16 23:30:03 incorrect message: 'mod_security-message: Access denied
with code 406.
2006/06/16 23:30:03 incorrect message: ''
2006/06/16 23:30:03 incorrect message: 'Content-Length: 328'
2006/06/16 23:30:03 incorrect message: 'Content-Type: text/html;
charset=iso-8859-1'
2006/06/16 23:30:03 incorrect message: ''
2006/06/17 14:17:00 ossec-maild(1501): Invalid SMTP Server: ns1.cbn-cis.net.
2006/06/17 14:17:00 ossec-maild(1202): Configuration problem. Exiting.
2006/06/17 14:17:00 ossec-maild(1202): Configuration problem. Exiting.
2006/06/19 14:29:34 ossec-maild: Started (pid: 6824).
2006/06/19 14:29:34 ossec-execd: Started (pid: 6829).
2006/06/19 14:29:34 ossec-analysisd: Reading rules file: 'rules_config.xml'
2006/06/19 14:29:34 ossec-analysisd: Reading rules file: 'pam_rules.xml'
Best regards,
Aleksander.


--~--~---------~--~----~------------~-------~--~----~
-~----------~----~----~----~------~----~------~--~---

Reply via email to