hi,

First I want that ossec collects all logs.
I have put the logall options and
log alertlevel is even at 0


<global>
        <logall>yes</logall>
  </global>



 <alerts>
    <log_alert_level>0</log_alert_level>
    <email_alert_level>0</email_alert_level>
  </alerts>


stil I don't get all log information, i usually get logs regarding event 3 
(mostly or higher).

what else do I need to do, so OSSEC will log all events?

Second question is about OpenVPN

Can I gather openvpn events to OSSEC?
I tried the rules and decoders but thats just time wasting,
I really don't understand the OSSEC has not standard rules for such a 
widely used program !!
anyway, what I want is that ossec also collects information from openvpn, 
for example, who logged on , which ip adress, failed logon attempts etc.

Thx


-- 

--- 
You received this message because you are subscribed to the Google Groups 
"ossec-list" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to