On 2014-08-01 8:03, James Whittington wrote:
I am trying to get Active Response working on a Windows 2012 server.
I enabled AR in the local Windows 2012 OSSEC config file.
On the agent side OSSEC Log I get some warnings about some linux shell
based active responses not being present (which makes sense)
I copied over a Windows null route script we use on a Windows 2008r2
server.
What happens if you run the script manually?
--
---
You received this message because you are subscribed to the Google Groups "ossec-list" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
For more options, visit https://groups.google.com/d/optout.