Folks,
We've installed RHEL 5 which seems to have some bug in SNMP that causes the log file to be swamped with messages, which are then picked up by OSSEC and alerted on, which in turn fills up our IDS mailbox. Anyone know of a way to make OSSEC ignore these messages that are in the /var/log/messages file?