AlienVault OSSIM

De Wiki do Bernardino
Other functions


Monitor AlienVault OSSIM system with ZABBIX.

Install agent:

# apt-get install zabbix-agent

By default OSSIM is tracing and auditing all the traffic by its own firewall. You should open the correct port on the firewall.

# vi /etc/ossim/firewall_include

Include next line:

-A INPUT -p tcp -m state --state NEW -m tcp --dport 10050 -j ACCEPT

Restart OSSIM

# ossim-reconfig