Glad to see things are working. It wasn't stupid to overlook splunk, I'm not sure the options for OSSEC are really advertised well.
On Wed, Sep 1, 2010 at 8:41 AM, Aeterna <[email protected]> wrote: > Actually it seems that I've been mistaken and simply looked at the > wrong directory. The log files do actually get moved to that folder > and gzipped accordingly. > > Thanks for your help, I've settled for using a cron to churn out daily > reports and e-mail them. Also I've started looking at Splunk and that > looks like an interesting tool. Apologize for my stupidity at > overlooking something so elementary. >
