I started one a while ago, but i don't if it's still working and how well remote connections and active response are supported. Also i am unaware of where the rpm package install ossec. Feel free to take a look.
2016-11-17 22:27 GMT+01:00 Christina Plummer <[email protected]>: > >> Is there a SELinux policy for ossec? > > I don't think there is. I'd be potentially interested in helping if someone > were to start working on one, though. Currently I run unconfined and then > set up a few file context rules to allow logrotate to work. > > > -- > > --- > You received this message because you are subscribed to the Google Groups > "ossec-list" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > For more options, visit https://groups.google.com/d/optout. -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
ossec.fc
Description: Binary data
ossec.if
Description: Binary data
ossec.te
Description: Binary data
