Hi everyone, I have the following problem: I have 1 server and 6 agents, 3 centos and 3 Windows 2008. Active response is correctly operating for all agents and the repeated_offenders option is also configured in each agent.
The problem I'm facing is that while the linux servers are actually triggering the repeated_offenders option, the windows machines keep sending the delete command after the default timeout of 600 seconds. Is this happening to someone else? -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
