Hello.Is it possible for ossec to monitor the logs of a directory without writing a rule explicitly for every file ?
For example i have
DirA
DirB DirC DirD
100Logs 200 Logs N logs
Instead of writing
<localfile>
<log_format>syslog</log_format>
<location>/DirA/DirB/messages</location>
</localfile>
is it possible to write
<localDir>
<log_format>syslog</log_format>
<location>/DirA/</location>
</localDir>
?
Regards, Fotis
--
telnet towel.blinkenlights.nl
