I have problem to make the connection from agent to server :

I keep getting this message, and do not know what to do to fix it: 

2009/07/20 13:20:19 ossec-logcollector: WARN: Process locked. Waiting for 
permission...

Any one can give me some hint?

Thanks,

LogĀ  messages from ossec.logĀ  

2009/07/20 13:19:55 ossec-execd(1350): INFO: Active response disabled. Exiting.
2009/07/20 13:19:55 ossec-syscheckd(1702): INFO: No directory provided for 
syscheck to monitor.
2009/07/20 13:19:55 ossec-syscheckd: WARN: Syscheck disabled.
2009/07/20 13:19:59 ossec-syscheckd: INFO: Started (pid: 8132).
2009/07/20 13:19:59 ossec-rootcheck: INFO: Started (pid: 8132).
2009/07/20 13:20:01 ossec-logcollector(1950): INFO: Analyzing file: 
'/var/log/messages'.
2009/07/20 13:20:01 ossec-logcollector(1950): INFO: Analyzing file: 
'/var/log/secure'.
2009/07/20 13:20:01 ossec-logcollector(1950): INFO: Analyzing file: 
'/var/log/maillog'.
2009/07/20 13:20:01 ossec-logcollector: INFO: Started (pid: 8127).
2009/07/20 13:20:19 ossec-logcollector: WARN: Process locked. Waiting for 
permission...
2009/07/20 13:20:31 ossec-syscheckd: No directories to check.


--- On Mon, 7/20/09, Daniel Cid <[email protected]> wrote:

From: Daniel Cid <[email protected]>
Subject: [ossec-list] Re: Central Config agent.conf permissions
To: [email protected]
Date: Monday, July 20, 2009, 10:47 AM


Hi Michael,

The only requirement is that the file should be readable by the group
ossec. My recommendation is:

#chmod 440 /var/ossec/etc/shared/agent.conf
#chgrp ossec /var/ossec/etc/shared/agent.conf

It should be like that by default (following the directory ownership),
that's why I didn't specify anything in the
manual.

Thanks,

--
Daniel B. Cid
dcid ( at ) ossec.net


On Fri, Jul 10, 2009 at 11:57 AM, Michael Altfield<[email protected]> wrote:
>
> Hello,
>
> In regards to the new centralized config feature of OSSEC v2.1, what
> should be the permissions to the file: /var/ossec/etc/shared/
> agent.conf ?
>
> Can someone add this information to the manual @
> http://www.ossec.net/main/manual/centralized-config/ ?
>
>
> Cheers,
> Michael
>



      

Reply via email to