On Dec 12, 2012 5:49 AM, "Sendil" <[email protected]> wrote: > > > Has Anybody has tried using the multi line command in ossec, If yes please let me know the systax used. i have followed the Wiki but could not get the result instead the ossec-hids failed to start. I am using ossec version 2.6. My requirement is to grep 50 lines in the logs after the error is found. currently only i am getting mails of the errors but i have to get the stack trace for that error. > > Thanks in advance.
I don't think there is a wiki, what examples were you using? What have you tried? Commands are generally pretty easy, I've contributed a few examples to the list in the past.
