Dear Mailing List I am facing some problems while configuring the agent on AIX 5.3. Prior to this I have done successful installations & they are working beautifully on windows and linux servers. While agent installtion it picks up the logs to be monitored and configure ossec.conf. During the agent instalation on AIX platform No parameters were taken by the install. I had manually edited the ossec.conf file and put SULOG and AUTHLOG as local file to be monitored (which are working fine). Can any one tell which other logs or files we should monitor for effectiveness on AIX box. Does Ossec is equipped with any parser which can read from the files normally not legible in syslog or normal log format. Rather those files are read by using errpt command on AIX.
In other words how can we read important error logs on AIX box. What should be there configuration parameter in ossec.conf. Anyone who have implemented the same??? Thanks & Regards Gagan Bhatia
