Hi Abdulvehhab. It has sense, it falls into a infinite recursivity, But it's a bit difficult to store some messages and send them to the server since the protocol consists on one datagram per message. Even if the agent stores some messages and sends all of them at a time, the firewall would detect one delivery per message.
Out of curiosity, what is the EventLog configuration? Maybe it's possible to ignore connections towards the OSSEC server. Best regards. -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+unsubscr...@googlegroups.com. For more options, visit https://groups.google.com/d/optout.