Let me say that on the manager side, when I run the ossec-logtest it appears that it's fine with the log format and it decodes it fine:
**Phase 3: Completed filtering (rules).
Rule id: '31205'
Level: '8'
Description: 'Admin authentication failed.'
**Alert to be generated.
So I guess the problem is why the agents don't trigger any alerts to
forward to the manager when something gets logged to my Zeus log.
