On Wed, Jan 29, 2014 at 12:50 PM, AMMS <[email protected]> wrote: > Hi All > > I need a dropbox of logs. The only messages that appear to me in the > ossec-wui is the ones that match's specific rules. > > > My intention is to have all messages forward by syslog/rsyslog clients > available in the search part of the alerts in the ossec-wui. > > > I need to configure a rule to accept all logs with no exception in a > specific level, lets say level2, so them I can see the logs at the search > part in the ossec-wui > > How can I do something like this !? > > > Anyone can point me the right direction ?. >
I think you'd be better off using a tool made for this type of thing. Maybe splunk, logstash, or elsa? > > Thanks in advance. Regards > > -- > > --- > You received this message because you are subscribed to the Google Groups > "ossec-list" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > For more options, visit https://groups.google.com/groups/opt_out. -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/groups/opt_out.
