I have a ciscoworks windows server which captures logs from all network devices. Now the concern I have is the syslog file on this server is 15gb. If I include this file in the ossec agent rules I fear it will grind to a halt. Has anyone got experience of this?
-- Sent from my mobile device
