X-Git-Url: http://ftp.carnet.hr/carnet-debian/scm?p=ossec-hids.git;a=blobdiff_plain;f=etc%2Frules%2Fsyslog_rules.xml;h=80a00ee7d1a09de7d2c85ef184477ad3968278ad;hp=b536e438c59be8d6cf43230e51df8c0dcd56b0dd;hb=6ef2f786c6c8ead94841b5f93baf9f43421f08c8;hpb=301048b51990573e58a30dc4a5bb4ec285cad554 diff --git a/etc/rules/syslog_rules.xml b/etc/rules/syslog_rules.xml index b536e43..80a00ee 100755 --- a/etc/rules/syslog_rules.xml +++ b/etc/rules/syslog_rules.xml @@ -1,4 +1,4 @@ - @@ -154,6 +161,26 @@ ^Authentication passed Pop3 Authentication passed. + + + openldap + OpenLDAP group. + + + + 2507 + ACCEPT from + OpenLDAP connection open. + + + + 2507 + 2508 + + RESULT tag=97 err=49 + OpenLDAP authentication failed. + + @@ -288,7 +315,7 @@ 5100 - ipw2200: Firmware error detected. + ipw2200: Firmware error detected.| ACPI Error Kernel device error. @@ -403,6 +430,14 @@ alert_by_email First time (su) is executed by user. + + + 5300 + unknown class + OpenBSD uses login classes, and an inappropriate login class was used. + A user has attempted to su to an unknown class. + +