On Tue, Feb 10, 2015 at 8:06 AM, narendra reddy <[email protected]> wrote: > yes when I installed the agent on 10.9 series machines, I am able to import > the key and start the ossec but server ui is not showing them. >
But do the agents actually connect? You can use tcpdump on the manager to see the traffic going back and forth. Also, check the ossec.log on the manager. Maybe the manager is seeing the 10.9 agents as coming from a different IP than what you were expecting. Lastly, check your firewalls. Maybe a firewall is blocking something. > > On Tuesday, 10 February 2015 17:54:15 UTC+5:30, narendra reddy wrote: >> >> >> Hi Team, >> >> I have configured Ossec-hids-2.7 on one of my AWS instance which has 10.5 >> series ip, I am able to add 25+ agents from 10.5 series and tried adding >> 10.9 series agents however I am unable to see them on gui and not even >> getting mails from 10.9 series. >> >> I am able to ping or ssh to 10.9 series from 10.5 and vice versa, all the >> ports are open between 10.9 and 10.5 netblock. >> >> Any possible reason for not able to get details from 10.9 series, please >> help me. >> >> -- >> Thanks and Regards, >> Narendra Reddy .Alla >> 91-9620525522 >> >> >> >> -- >> Thanks and Regards, >> Narendra Reddy .Alla >> 91-9620525522 > > -- > > --- > You received this message because you are subscribed to the Google Groups > "ossec-list" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > For more options, visit https://groups.google.com/d/optout. -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
