We're using the OSSEC packages from the atomic repository without ASL.mikeshinn wrote:ASL generates the actual conf files, so you can ignore whatever is in the rpm anyway. Those files are just there in case someone isnt using ASL, but ASL doesnt use them, it will generate its own (if needed, agent.conf isnt used in standardalone configurations)
The /var/ossec/etc/shared/agent.conf file is included all the three packages:
ossec-hids-2.6-16
ossec-hids-client-2.6-16
ossec-hids-server-2.6-16
Since that file is used for centralized server configuration (http://www.ossec.net/doc/manual/agent/a ... ation.html), it should probably be included only in the ossec-hids-server package.
Thanks.