Hi all, I have active response configured in my environment. No what ia am worried abt is that how do I get to knw that an IP address has been blocked by Active response configuration. Do I need to chek the active response.log file at the manager side everytime... Or there is some other way. I was thinking of integrating the same with email alerting in OSsEC
Regards Tanishk Lakhaani Sent from BlackBerry® on Airtel
