Hi all, We are successfully using Active Responses against both Windows and Linux based hosts. Currently we are using the boxed null-route and firewall-drop responses. Is it possible to configure the ossec server to initiate an active response on all managed agents instead of just the agent that triggers a response? Please advise and thanks.
Aaron
