Hello guys?
I have configured OSSec server(running in UBuntu) and with two agents(1
centos,1 windows).Almost working well. But i have a few question.
1.when i changed file in linux age rule triggered alert almost 4
minute (i've configured frequency 60 both in server and agent ) . what's
wrong with it?
2.What is the difference between agent and server frequency ? How they
work?
3.Where is stored log from agent in server ? How they know file
changed ? where is store previous hash ??
thanks
--
---
You received this message because you are subscribed to the Google Groups
"ossec-list" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
For more options, visit https://groups.google.com/d/optout.