Skip to content

Commit

Permalink
Merge pull request #19 from wazuh/development
Browse files Browse the repository at this point in the history
v1.07 PCI Tagging
  • Loading branch information
jesuslinares committed Apr 5, 2016
2 parents 11de6e7 + e75d4c6 commit 56b9966
Show file tree
Hide file tree
Showing 67 changed files with 188 additions and 2 deletions.
2 changes: 2 additions & 0 deletions rootcheck/cis_debian_linux_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Linux Audit - (C) 2008 Daniel B. Cid - [email protected]
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/cis_rhel5_linux_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Linux Audit - (C) 2014
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/cis_rhel6_linux_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Linux Audit - (C) 2014
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/cis_rhel_linux_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Linux Audit - (C) 2014
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/system_audit_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Linux Audit - (C) 2007 Daniel B. Cid - [email protected]
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/win_applications_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Application detection - (C) 2007 Daniel B. Cid - [email protected]
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/win_audit_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Windows Audit - (C) 2007 Daniel B. Cid - [email protected]
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rootcheck/win_malware_rcl.txt
Original file line number Diff line number Diff line change
@@ -1,5 +1,7 @@
# OSSEC Windows Malware list - (C) 2007 Daniel B. Cid - [email protected]
#
# PCI Tagging by Wazuh <[email protected]>.
#
# Released under the same license as OSSEC.
# More details at the LICENSE file included with OSSEC or online
# at: http://www.ossec.net/en/licensing.html
Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/apache_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,8 @@
- Copyright (C) 2009 Trend Micro Inc.
- All rights reserved.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- This program is a free software; you can redistribute it
- and/or modify it under the terms of the GNU General Public
- License (version 2) as published by the FSF - Free Software
Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/apparmor_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -4,6 +4,9 @@
- License (version 2) as published by the FSF - Free Software
- Foundation.
-
-
- PCI Tagging by Wazuh <[email protected]>.
-
- License details: http://www.gnu.org/licenses/old-licenses/gpl-2.0.html
-->

Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/arpwatch_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,9 @@
- Copyright (C) 2009 Trend Micro Inc.
- All rights reserved.
-
- PCI Tagging by Wazuh <[email protected]>.
-
-
- This program is a free software; you can redistribute it
- and/or modify it under the terms of the GNU General Public
- License (version 2) as published by the FSF - Free Software
Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/asterisk_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,8 @@
- Copyright (C) 2009 Trend Micro Inc.
- All rights reserved.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- This program is a free software; you can redistribute it
- and/or modify it under the terms of the GNU General Public
- License (version 2) as published by the FSF - Free Software
Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/attack_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,8 @@
- Copyright (C) 2009 Trend Micro Inc.
- All rights reserved.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- This program is a free software; you can redistribute it
- and/or modify it under the terms of the GNU General Public
- License (version 2) as published by the FSF - Free Software
Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/cimserver_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -9,6 +9,8 @@
- License (version 3) as published by the FSF - Free Software
- Foundation.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- License details: http://www.ossec.net/en/licensing.html
-->

Expand Down
4 changes: 3 additions & 1 deletion rules-decoders/ossec/rules/cisco-ios_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -9,7 +9,9 @@
- and/or modify it under the terms of the GNU General Public
- License (version 2) as published by the FSF - Free Software
- Foundation.
-
-
- PCI Tagging by Wazuh <[email protected]>.
-
- License details: http://www.ossec.net/en/licensing.html
-->

Expand Down
6 changes: 5 additions & 1 deletion rules-decoders/ossec/rules/clam_av_rules.xml
Original file line number Diff line number Diff line change
@@ -1,4 +1,8 @@

<!--
- Updated by Wazuh
- PCI Tagging by Wazuh <[email protected]>.
-
-->
<group name="clamd,freshclam,">

<rule id="52500" level="0" noalert="1">
Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/courier_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,8 @@
- Copyright (C) 2009 Trend Micro Inc.
- All rights reserved.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- This program is a free software; you can redistribute it
- and/or modify it under the terms of the GNU General Public
- License (version 2) as published by the FSF - Free Software
Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/dovecot_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,9 @@
- and/or modify it under the terms of the GNU General Public
- License (version 3) as published by the FSF - Free Software
- Foundation.
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/dropbear_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -4,6 +4,8 @@
- License (version 2) as published by the FSF - Free Software
- Foundation.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- License details: http://www.gnu.org/licenses/old-licenses/gpl-2.0.html
-->

Expand Down
2 changes: 2 additions & 0 deletions rules-decoders/ossec/rules/firewall_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -10,6 +10,8 @@
- License (version 2) as published by the FSF - Free Software
- Foundation.
-
- PCI Tagging by Wazuh <[email protected]>.
-
- License details: http://www.ossec.net/en/licensing.html
-->

Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ftpd_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,9 @@
- Official ftpd rules for OSSEC.
- Author: Ahmet Ozturk
- License: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/hordeimp_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ids_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/imapd_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/mailscanner_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/mcafee_av_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,9 @@
- and/or modify it under the terms of the GNU General Public
- License (version 3) as published by the FSF - Free Software
- Foundation.
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->

<var name="MCAFEE_ERROR">^259$|^100$|^1000$|^1001$|^1002$|^1003$|^1004$|^1005$|^1006$|^1007$|^1008$|^5003$|^5005$|^5008$|^5010$|^5011$|^5019$|^5020$|^5021$|^5022$|^5030$|^5031$|^5032$|^5033$|^5034$|^5035$|^5046$|^5047$|^5048$|^5049$|^5051$|^5054$|^5057$|^5059$|^5060$|^5063$|^5063$</var>
Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ms-exchange_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ms-se_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ms_dhcp_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -4,6 +4,9 @@
- Microsoft Windows 2003 ipv4, Windows 2008 ipv4/ipv6 DHCP rules for OSSEC.
- Author: [email protected]
- License: http://www.ossec.net/en/licensing.html (http://gplv3.fsf.org)
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ms_ftpd_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/msauth_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/mysql_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/named_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/netscreenfw_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/nginx_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/openbsd_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,9 @@
- Foundation.
-
- License details: http://www.gnu.org/licenses/old-licenses/gpl-2.0.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/ossec_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/pam_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/php_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/pix_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/policy_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,9 @@
- Foundation.
-
- License details: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->


Expand Down
3 changes: 3 additions & 0 deletions rules-decoders/ossec/rules/postfix_rules.xml
Original file line number Diff line number Diff line change
Expand Up @@ -4,6 +4,9 @@
- Author: Ahmet Ozturk
- Author: Daniel B. Cid
- License: http://www.ossec.net/en/licensing.html
-
- PCI Tagging by Wazuh <[email protected]>.
-
-->

<var name="POSTFIX_FREQ">6</var>
Expand Down
Loading

0 comments on commit 56b9966

Please sign in to comment.