On Thu, Jul 5, 2018 at 11:38 PM, Gregory Schultz <[email protected]> wrote: > I’m looking for a way to use OSSEC to do everything that OSSEC does except > block IP addresses. If I ran the installation and when to: "Do you want to > enable the firewall-drop response? (y/n) [y]:” should I set it to no and > that’s all? I’m using fail2ban and don’t want OSSEC to override fail2ban > settings. >
Correct. Do not enable active response and it will only monitor. > Thanks > > -- > > --- > You received this message because you are subscribed to the Google Groups > "ossec-list" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > For more options, visit https://groups.google.com/d/optout. -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
