Re: [ossec-list] Russian cyrillic

2015-06-15 Thread Павел Копцев
Даниил, огромное спасибо за помощь! Решеение действительно очень простое! -- --- You received this message because you are subscribed to the Google Groups ossec-list group. To unsubscribe from this group and stop receiving emails from it, send an email to

[ossec-list] authenticated smtp usage...

2015-06-15 Thread Mark Feferman
I know this topic has been discussed many times, but I'm not sure why it isn't implemented. smtp_usernamesend_from_email_username/smtp_username smtp_passwordemail_password/smtp_password Granted, there are going to be issues sending to smtp servers that require SSL/TLS, etc.., but that's far

Re: [ossec-list] authenticated smtp usage...

2015-06-15 Thread Eero Volotinen
How about using postix on localhost? Much better solution.. On Jun 15, 2015 6:04 PM, Mark Feferman mark.fefer...@gmail.com wrote: I know this topic has been discussed many times, but I'm not sure why it isn't implemented. smtp_usernamesend_from_email_username/smtp_username

[ossec-list] ossec-logtest succeeds but alerts never happen

2015-06-15 Thread Mark Feferman
I created a custom decoder (in local_decoder.xml) to parse a log file from an application that is similar in format to syslog. I also created the corresponding custom rule (in local_rules.xml) to trigger on a particular event. While testing all of this, when I run ossec-logtest, I get success.

[ossec-list] [Call for help] Help shape the future of machine learning research for IDSs

2015-06-15 Thread Antonio Augusto Santos
Dear, (Brazilian Portuguese version bellow – Versão em português abaixo) My name is Antonio Augusto, and I am currently doing a MS in Computer Science in Brazil. My research focus on the use of Machine Learning techniques on IDS (Intrusion Detection Systems) alerts. There has been

[ossec-list] Re: ossec-logtest succeeds but alerts never happen

2015-06-15 Thread Mark Feferman
I ended up getting it working. I think it had to do with the timing of writing test entries to the log file I was processing. Sorry to bother. BTW, this is an absolutely fantastic product! On Monday, June 15, 2015 at 3:45:34 PM UTC-5, Mark Feferman wrote: I created a custom decoder (in