Hi, We're using syslog-ng to centralize logs on a server. The way the system is setup is that *all* system logs (for unix, windows, apache, iis, etc) get written to a single file on the syslog server.
Can OSSEC be configured to analyse this type of combined syslog file? Regards, Chris
