Analysisd default rule timeframe
Default: 360
Allowed: Any integer
Default: 25000
Allowed: Any integer
Default: 250
Allowed: Any integer
Default: 30
Allowed: Any integer
Default: 32
Allowed: Any integer
Default: 14
Allowed: Any integer
Default: 1
Allowed: Any integer
Default: 0
Allowed: Any integer
The number of times ossec-dbd will attempt to reconnect to the database.
Default: 10
Default: 2
Default: 8
Allow the agents to run commands defined in agent.conf.
Allowed: 0,1
Default: 0
Note
This option first appeared in OSSEC 2.7.
Default: 1
Allowed: 0 or 1
If set to 1 alerts will be grouped together in one email. These alerts may be of different types or levels, and may be from different systems.
Default: 1
Allowed: 0 or 1
If set to 1 maild will use a full subject when sending alert emails. If set to 0 the subject is shortened.
Default: 0
Allowed: 0 or 1
If set to 1 mails will display GeoIP data in alert emails.
Default: 1
Allowed: 0 or 1
Amount of time OSSEC will wait before compressing/signing log files.
Default: 10
If set to 1 ossec-monitord will compress old log files.
Default: 1
Available: 0 or 1
If set to 1 ossec-monitord will sign old log files.
Default: 1
Default: 1
Default: 128
Default: 19999
Default: 1
Default: 0
ossec-syscheckd uses this setting to determine how long to sleep after reading syscheck.sleep_after number of files. By default ossec-syscheckd sleeps for 2 seconds after checking 15 files.
Default: 2
ossec-syscheckd reads this many files before sleeping for syscheck.sleep seconds.
Default: 15