Hi Jorge, Did you configured the authentication keys for the agent? You need to import the keys from the server using "manage_agents" before you start the agent. If you did this already, can you show all your logs? Looks like that the ossec-agent daemon didn't start and because of that rootcheck and syscheckd couldn't connect to it.
Thanks, -- Daniel B. Cid dcid ( at ) ossec.net On 7/14/06, Jorge Augusto Senger <[EMAIL PROTECTED]> wrote: > > -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA1 > > Hy! > > I have ossec installed as "local" in my machines. This is the first time > that I try to install a "server" with "agents". > I'm getting this error when I run ossec on the "agent" machine: > > [EMAIL PROTECTED] ossec-hids-0.8-2]# service ossec start > Starting OSSEC: 2006/07/14 08:37:55 ossec-syscheckd(1210): Queue > '/var/ossec/queue/ossec/queue' not accessible. > 2006/07/14 08:37:55 ossec-rootcheck(1210): Queue > '/var/ossec/queue/ossec/queue' not accessible. > 2006/07/14 08:38:03 ossec-syscheckd(1210): Queue > '/var/ossec/queue/ossec/queue' not accessible. > 2006/07/14 08:38:03 ossec-rootcheck(1210): Queue > '/var/ossec/queue/ossec/queue' not accessible. > 2006/07/14 08:38:16 ossec-syscheckd(1210): Queue > '/var/ossec/queue/ossec/queue' not accessible. > 2006/07/14 08:38:16 ossec-rootcheck(1211): Unable to access queue: > '/var/ossec/queue/ossec/queue'. Giving up.. > [FALHOU] > The /var/ossec/queue/ossec/queue exists: > > [EMAIL PROTECTED] ossec-hids-0.8-2]# l /var/ossec/queue/ossec/ > total 8 > drwxrwx--- 2 ossec ossec 4096 Jul 14 08:41 ./ > dr-xr-x--- 8 root ossec 4096 Jul 14 08:34 ../ > srw-rw---- 1 ossec ossec 0 Jul 14 08:41 queue= > > > Thanks! > Jorge > -----BEGIN PGP SIGNATURE----- > Version: GnuPG v1.4.2.2 (GNU/Linux) > Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org > > iD8DBQFEt4ML+4ZieRTShIMRAlxHAKCY2wuM/6I5g6LnFQfiw9Nk2stW1QCdHzjA > J+plG3QZG53MStBzaPY+/EI= > =9iei > -----END PGP SIGNATURE----- > > > > --~--~---------~--~----~------------~-------~--~----~ -~----------~----~----~----~------~----~------~--~---
