- Brief non-technical overview
- OSSEC architecture
- Supported systems
- Quotes from our users
- Installation and update information
- Helper tools
- Agent control - Agent list, status, scans, etc
- Manage agents - Tools to add/remove agents on the manager
- Syscheck control - Manages syscheck database
- Rootcheck control - Manages the system auditing/policy monitoring database
- Reporting tool - Generate text-based reports
- Syscheck - How to configure and use File Integrity checking
- Agentless monitoring - How to configure and manage systems without an agent
- Centralized agent configuration - How to configure your agent directly from the manager
- Output options
- Syslog - Sending the alerts via syslog
- Active response - How to configure and use active responses
- Active response on Windows - Explains how to enable it on Windows 2000/xp/2003/2008/vista
- General configuration options - Page with most configuration options summarized
- FAQ - Frequently asked questions by our users (answers to our wiki)
——–
Welcome to the OSSEC HIDS manual! Hopefully it will help you install, configure and use the OSSEC HIDS in a way that best fits your needs. This manual is maintained by Daniel Cid . If you find any errors or think that something is missing, please contact us and we will update it. Questions should be submitted to one of our Mailing lists. For commercial support, please visit: Get Professional Support from Third Brigade.
Last modification on 27/Feb/2009 for the Version 2.0.

