Hi again,
Did you start the OSSEC Hids service on windows
agent after installation?
(Control Panel->Admin Tools->Services)
Is it running already?
Regards,
Ahmet Ozturk.
Oyesanya, Femi wrote:
msauth_rules.xml rules already ships with the server
-----Original Message-----
From: [email protected] [mailto:[EMAIL PROTECTED]
On Behalf Of Ahmet Ozturk
Sent: Thursday, August 10, 2006 9:23 AM
To: [email protected]
Subject: [ossec-list] Re: Windows Event Log
Hi,
Just install server and windows agent as described in the manual
(http://www.ossec.net/en/manual.html#windows)
Then please be sure that windows_rules.xml file is included
in ossec.conf file.
That's all you need to do to process your windows agent's event
logs on the server.
Regards,
Ahmet Ozturk.
Oyesanya, Femi wrote:
Hello:
Does anyone know what I need to do to have ossec server process
windows
event logs and send alerts ?
Thanks