Hi,
We are sending syslog message to a unix server running Syslog_ng. We are using
Ossec to monitor the file created by syslog_ng.
One of my server is also running Oracle 10. We are sending oracle 10 log to
the local syslog server that forward the log to my syslog_ng server.
Ossec see the message in report in ossec.log that:
ERROR: Invalid hostname in syslog message:
Can we tell Ossec to not report this type of error in the ossec.log file? I
know, the best way to do it would be to remove Oracle log to the syslog_ng but
I need to collect those log.
Any idea?
Thanks in advance
__________________________________________________________________
Looking for the perfect gift? Give the gift of Flickr!
http://www.flickr.com/gift/