All: The standard deployment instructions in our group for installation of the OSSEC (2.6) agents on servers is to set ACTIVE RESPONSE as disabled. There is some question/concern by our management that this was not done on all server. Are there any options available for checking each of our 600 servers to determine whether ACTIVE RESPONSE is enabled or disabled (short of parsing conf files on each)?
Thanks Luckie Ford -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
