Re: [ossec-list] Integration with MS SCCM

2017-07-08 Thread dan (ddp)
On Fri, Jul 7, 2017 at 8:10 AM, Irshad Rahimbux wrote: > I have did all the configuration in ms-sccm.cfg [existing file in plugin > folder]. > That must be an OSSIM thing. Unrelated to OSSEC. > But still dont see anything in alerts.log. > Turn on the logall option, restart the OSSEC processes o

Re: [ossec-list] Integration with MS SCCM

2017-07-07 Thread Irshad Rahimbux
I have did all the configuration in ms-sccm.cfg [existing file in plugin folder]. But still dont see anything in alerts.log. On Saturday, July 1, 2017 at 1:37:04 AM UTC+4, dan (ddpbsd) wrote: > > On Thu, Jun 29, 2017 at 1:00 AM, Irshad Rahimbux > > wrote: > > Dear Team, > > > > I would like

Re: [ossec-list] Integration with MS SCCM

2017-06-30 Thread dan (ddp)
On Thu, Jun 29, 2017 at 1:00 AM, Irshad Rahimbux wrote: > Dear Team, > > I would like to integrate Microsoft SCCM with OSSIM. > > All configuration has been done in ms-sccm.cfg [which was already > available]. > > Logs are coming to /var/log/alienvault/agent.log but not to > /var/ossec/logs/alerts

[ossec-list] Integration with MS SCCM

2017-06-28 Thread Irshad Rahimbux
Dear Team, I would like to integrate Microsoft SCCM with OSSIM. All configuration has been done in ms-sccm.cfg [which was already available]. Logs are coming to /var/log/alienvault/agent.log but not to /var/ossec/logs/alerts/alerts.log Any idea why and what I am doing wrong? kindly advise.