Hi, One problem existing yet Part of ossec.log is below: 2006/06/15 10:35:48 ossec-logcollector(1950): Analyzing file: '/var/log/squid/access.log'. 2006/06/15 10:35:48 ossec-logcollector: Started (pid: 2372). 2006/06/15 18:27:36 incorrect message: 'Authorization: Negotiate YIIQegYGKwYBBQUCoIIQbjCCEG 2006/06/15 18:27:37 incorrect message: 'mod_security-message: Access denied with code 406. 2006/06/15 18:27:37 incorrect message: '' 2006/06/15 18:27:37 incorrect message: 'Content-Length: 328' 2006/06/15 18:27:37 incorrect message: 'Content-Type: text/html; charset=iso-8859-1' 2006/06/15 18:27:37 incorrect message: '' 2006/06/16 04:02:49 incorrect message: 'dflo-66-243-230-163.gtcom.net - - [16/Jun/2006:04:0 2006/06/16 04:02:49 incorrect message: 'dflo-66-243-230-163.gtcom.net - - [16/Jun/2006:04:0 2006/06/16 06:22:24 incorrect message: '[Fri Jun 16 06:22:24 2006] [error] [client 58.69.89 2006/06/16 12:01:00 incorrect message: 'lj2022.inktomisearch.com - - [16/Jun/2006:12:01:00 2006/06/16 12:32:43 incorrect message: 'Authorization: Negotiate YIIQegYGKwYBBQUCoIIQbjCCEG 2006/06/16 12:32:43 incorrect message: 'mod_security-message: Access denied with code 406. 2006/06/16 12:32:43 incorrect message: '' 2006/06/16 12:32:43 incorrect message: 'Content-Length: 328' 2006/06/16 12:32:43 incorrect message: 'Content-Type: text/html; charset=iso-8859-1' 2006/06/16 12:32:43 incorrect message: '' 2006/06/16 13:24:37 incorrect message: 'lj2390.inktomisearch.com - - [16/Jun/2006:13:24:37 2006/06/16 18:05:29 incorrect message: 'dsl54007d20.pool.t-online.hu - - [16/Jun/2006:18:05 2006/06/16 23:30:03 incorrect message: 'Authorization: Negotiate YIIQegYGKwYBBQUCoIIQbjCCEG 2006/06/16 23:30:03 incorrect message: 'mod_security-message: Access denied with code 406. 2006/06/16 23:30:03 incorrect message: '' 2006/06/16 23:30:03 incorrect message: 'Content-Length: 328' 2006/06/16 23:30:03 incorrect message: 'Content-Type: text/html; charset=iso-8859-1' 2006/06/16 23:30:03 incorrect message: '' 2006/06/17 14:17:00 ossec-maild(1501): Invalid SMTP Server: ns1.cbn-cis.net. 2006/06/17 14:17:00 ossec-maild(1202): Configuration problem. Exiting. 2006/06/17 14:17:00 ossec-maild(1202): Configuration problem. Exiting. 2006/06/19 14:29:34 ossec-maild: Started (pid: 6824). 2006/06/19 14:29:34 ossec-execd: Started (pid: 6829). 2006/06/19 14:29:34 ossec-analysisd: Reading rules file: 'rules_config.xml' 2006/06/19 14:29:34 ossec-analysisd: Reading rules file: 'pam_rules.xml' Best regards, Aleksander.
--~--~---------~--~----~------------~-------~--~----~ -~----------~----~----~----~------~----~------~--~---
