    ossec-hids-agent-0:2.9.3-3861.el7.art                                                         $   >                                  n\hws[܏!   >                 =  V<   ?     V,      d                                                   (        	   ,        	   B                                                                        	  (          C          Y          _           f                                     	           
                                                            -                                x                                                                 (          8          9     ,     :     .     >     P     ?     P     B     P     G     P      H     Q<      I     Q      X     Q     Y     Q     Z     R     [     R     \     R      ]     R      ^     T     b     Un     d     V     e     V
     f     V     l     V          V(   C ossec-hids-agent 2.9.3 3861.el7.art       The OSSEC HIDS Client The ossec-hids-agent package contains the agent part of the
OSSEC HIDS. Install this package on every system to be
monitored. Zw69ac4b58b6bb4f718069763b829a4ce8     http://www.ossec.net AGPL Atomicorp <support@atomicorp.com> System Environment/Daemons http://www.ossec.net/ linux x86_64 if [ $1 = 1 ]; then
	/bin/systemctl daemon-reload >/dev/null 2>&1 || :
fi

echo "TYPE=\"agent\"" >> /etc/ossec-init.conf

if [ ! -f  /var/ossec/etc/ossec.conf ]; then
  ln -sf ossec-agent.conf /var/ossec/etc/ossec.conf
fi

ln -sf /var/ossec/bin/ossec-client.sh /var/ossec/bin/ossec-control

# daemon trickery
ln -sf /var/ossec/bin/client-logcollector  /var/ossec/bin/ossec-logcollector 
ln -sf /var/ossec/bin/client-syscheckd  /var/ossec/bin/ossec-syscheckd 

touch /var/ossec/logs/ossec.log
chown ossec:ossec /var/ossec/logs/ossec.log
chmod 0664 /var/ossec/logs/ossec.log


#/sbin/service ossec-hids restart || : if [ $1 = 0 ]; then
  /sbin/chkconfig ossec-hids off
  /sbin/chkconfig --del ossec-hids

  /sbin/service ossec-hids stop || :

  rm -f /var/ossec/etc/localtime
  rm -f /var/ossec/etc/ossec.conf
  rm -f /var/ossec/bin/ossec-control
  rm -f /var/ossec/bin/ossec-logcollector 
  rm -f /var/ossec/bin/ossec-syscheckd 
fi       K  	 -  L  | (    P        *A  /    'R        D2  t  A  >  a      '       (   (   (hhhhhhhAhAAh                                                                ZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwZwb33596fde2a4ad6430fc202553a8705a71e2f6a2f0ac4b4256a04f5f09bb3724 21630d0d8054768ffe6cb4463be91bb22a434cf8cecca98ac17506b0cb36b4cb bd0467eadc335241d3c45ebed110329e656eec9929af2122c1c6f06dbab6b748 c8f6e7355ed4bb8805b5a5d6aa3b5d7453a0ec62d3e2038aa1fae3c19ec086aa 568a58895ea9e8587df82dddcbe670bdb8156cc206822a1a34fc668e12a6e781 2487dcc42ce906d58af7c600dd8b5a1623bdda1c9d00fca77885905ac91d2d31 318199cad039bd743a7832a5998fd229d21a3d8e17530705924cf9347aa4b4fd 41af621f8bf01e37df8459853e6e8cf3ce5b46d2bc1ce1b57bf17ad27526d3ad 91149019f3100e3dfd9645df8c731b6833c044ef2b40cc37438272e527379a1a 92570e800098240e860ee952cc7855ec266c17e8b2238bb3871364bd31280cb8 31aabae3bfdebd4bb15344d2fde8a4397749d03f291d49c0dddb51fb0a22c5c7 e86acfd633f5293a39512002cb01fa175675abe9ad96f99df331444fd02c0f23 c1030b917aba0bc42b21ebb829eaa3cafb9081d55f533c676bf8708c0376bbeb b9303f2e8b46eb8c5ad7971e5f8a26ec5a2eefd3690989bcbeeab43ccb75a511 c6b5792d079a7569dadf04e66d749df8568ba9ba70607b392e126d389cf7741c ae8475d53363afa5a92cba7e4aef1d5470a0b7b2a2ac9a0978a012c0e3619d8f 85abbfeca400f7729195446af9ae8e80d8bf7d3c8bb56e6230bb2277808123ed 99e3972a8ecd98d9659a1086b2b0edcfc02a1f4f16e28550d3ef2517fe282e92 3471d91a28848f050cc940638f7aa21c60854610addc8aee44198ba37a62f11b 9b45b745cebb493c1c632de26cc6c6cdbe9294f6e04e09058ffdabb766b84a82 47fb6fdf6a9b880ed642356f284d1f6e828440502037890af53a020f8e2f723f 104fb993865c504a918d3016f14171369e90fc423f26b804b7f22c0868fc5ee5 7363a2dfd764883f5dd22c85c956f1352da1f8a562d91aa7e4a2d58973470610 8d133b8ff2bcb65bb139e742a7f72aa54236fd1602305a17b26ea0618d821d7d 03dc13aeb48ba253d9d4ac7bc05fa1d79cc2ae0bfb2b874a72a0e1e32ebb3a9f 067bdbfaa05b45c727a25e20a17409b06ef0e2db5059456a0abcc2e48581b820 7c0677b19985b30ca49d181b193e18cd8dfb66970b706d961745fba0a0217fca 34115106b827d27fe853daa0884e32c7f3936af3192a4a0a61f2811999678f00 96a357ae4c4871307da26f0649ada7e7c35b33d4ed08f9215790f3900eb207cf                                                                                                                                                                 root root root root root root root root root root root root ossec root root root root root root root root root root root root root root root root root root root root root root root root root root root root root root root ossec root root root root root root root root root root root root root root root root ossec ossec ossec ossec-hids-2.9.3-3861.el7.art.src.rpm  ossec-hids-agent ossec-hids-agent(x86-64)                       	   
  
  
  
ossec-hids /sbin/chkconfig /sbin/chkconfig /sbin/service /sbin/service /bin/sh /bin/sh rpmlib(FileDigests) rpmlib(PayloadFilesHavePrefix) rpmlib(CompressedFileNames) rpmlib(PayloadIsXz) 0:2.9.3-3861.el7.art       4.6.0-1 4.0-1 3.0.4-1 5.2-1        ossec-hids-server  4.11.3   XXYX@TT@SSS[S@R@R@RʚR@R@RrF@RiRR@Q@QY@Q@@QQ@Q@Qu&@Qu&@QkQg@Q\PDPP@PP@OiO@OЗOЗO	O OpZ@NNS@NK@N;@N;@N6@N-ZNMMM@M@M@M?MM>MUM@MPL~L8LΫLΫLʷ@LeL@L{LL@LA@LLLzL~@@L|LvW@LmLa?@LRL4l@LT@KtK͗@KKK@K[K@K8@K@K@K@J@JJJ@JJJn@JL@JI@J2C@J2C@J/@J&eI@Io@I)@I4IܑIII@I@I&@III~@H@H|@HcHM@H2@H)GJ@GAzGV@Gm@Fޚ@F@F@FF@Fr@Fq-FIF-@EWEEySEIE
E 	DDY@D@DLSupport <support@atomicorp.com> - 2.9.0-50 Support <support@atomicorp.com> - 2.9.0-49 Support <support@atomicorp.com> - 2.9.0-48 Support <support@atomicorp.com> - 2.8.1-47 Support <support@atomicorp.com> - 2.8.0-46 Support <support@atomicorp.com> - 2.8.0-45.1 Support <support@atomicorp.com> - 2.8.0-45 Support <support@atomicorp.com> - 2.7.1-44 Support <support@atomicorp.com> - 2.7.1-43 Support <support@atomicorp.com> - 2.7.1-42 Support <support@atomicorp.com> - 2.7.1-41 Support <support@atomicorp.com> - 2.7.1-40 Support <support@atomicorp.com> - 2.7.1-36 Support <support@atomicorp.com> - 2.7.1-35 Support <support@atomicorp.com> - 2.7-34 Support <support@atomicorp.com> - 2.7-33 Support <support@atomicorp.com> - 2.7-32 Support <support@atomicorp.com> - 2.7-31 Support <support@atomicorp.com> - 2.7-30 Support <support@atomicorp.com> - 2.7-29 Support <support@atomicorp.com> - 2.7-28 Support <support@atomicorp.com> - 2.7-27 Support <support@atomicorp.com> - 2.7-26 Support <support@atomicorp.com> - 2.7-25 Support <support@atomicorp.com> - 2.7-24 Support <support@atomicorp.com> - 2.7-23 Support <support@atomicorp.com> - 2.7-22 Support <support@atomicorp.com> - 2.7-21 Support <support@atomicorp.com> - 2.7-20 Support <support@atomicorp.com> - 2.7-19 Support <support@atomicorp.com> - 2.7-17 Support <support@atomicorp.com> - 2.6-16 Support <support@atomicorp.com> - 2.6-15 Support <support@atomicorp.com> - 2.6-14 Support <support@atomicorp.com> - 2.6-13 Support <support@atomicorp.com> - 2.6-12 Support <support@atomicorp.com> - 2.6-11 Support <support@atomicorp.com> - 2.6-10 Support <support@atomicorp.com> - 2.6-9 Support <support@atomicorp.com> - 2.6-8 Support <support@atomicorp.com> - 2.6-7 Support <support@atomicorp.com> - 2.6-6 Support <support@atomicorp.com> - 2.6-5 Support <support@atomicorp.com> - 2.6-4 Support <support@atomicorp.com> - 2.6-3 Support <support@atomicorp.com> - 2.6-2 Support <support@atomicorp.com> - 2.6-1 Support <support@atomicorp.com> - 2.6.0-0.10 Support <support@atomicorp.com> - 2.6.0-0.9 Support <support@atomicorp.com> - 2.6.0-0.8 Support <support@atomicorp.com> - 2.6.0-0.7 Support <support@atomicorp.com> - 2.6.0-0.6 Support <support@atomicorp.com> - 2.6.0-0.5 Support <support@atomicorp.com> - 2.6.0-0.4 Support <support@atomicorp.com> - 2.6.0-0.3 Support <support@atomicorp.com> - 2.6.0-0.1 Support <support@atomicorp.com> - 2.5.1-10 Support <support@atomicorp.com> - 2.5.1-9 Support <support@atomicorp.com> - 2.5.1-8 Support <support@atomicorp.com> - 2.5.1-7 Support <support@atomicorp.com> - 2.5.1-6 Support <support@atomicorp.com> - 2.5.1-5 Support <support@atomicorp.com> - 2.5.1-4 Support <support@atomicorp.com> - 2.5.1-3 Support <support@atomicorp.com> - 2.5.1-2 Support <support@atomicorp.com> - 2.5.1-1 Support <support@atomicorp.com> - 2.5-1 Support <support@atomicorp.com> - 2.5-0.9 Support <support@atomicorp.com> - 2.5-0.8 Support <support@atomicorp.com> - 2.5-0.7 Support <support@atomicorp.com> - 2.5-0.6 Support <support@atomicorp.com> - 2.5-0.1 Support <support@atomicorp.com> - 2.4.1-11.2 Support <support@atomicorp.com> - 2.4.1-11.1 Support <support@atomicorp.com> - 2.4.1-10 Support <support@atomicorp.com> - 2.4.1-9 Support <support@atomicorp.com> - 2.4.1-8 Support <support@atomicorp.com> - 2.4.1-7 Support <support@atomicorp.com> - 2.4.1-6 Support <support@atomicorp.com> - 2.4.1-5 Support <support@atomicorp.com> - 2.4.1-4 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.4.1-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.4-5 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.4-4 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.4-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.4-0.2 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.4-0.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.3-8 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.3-7 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.3-6 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.3-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.2-5 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.2-4 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.2-3 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.2.0.beta2.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.2.0.beta1.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.1.1-5 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.1.1-3 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.1.1-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.1-3 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.1-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-11 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-10 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-9 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-8 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-7 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-6 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-5 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-4 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-2 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0.0-0.090225.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0.0-0.090220.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0.0-0.090206.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 2.0.0-0.090205.1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.99-2 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.99-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.6.1-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.6-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.5.1-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.5-3 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.5-2 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.5-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.4-2 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.4-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.3-4 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.3-3 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.3-2 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.3-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.2-8 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.2-7 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.2-5 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.2-4 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.2-3 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.2-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.1-1 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.0-2 Scott R. Shinn <scott@atomicrocketturtle.com> - 1.0 Scott R. Shinn <scott@atomicrocketturtle.com> peter.pramberger@member.fsf.org peter.pramberger@member.fsf.org peter.pramberger@member.fsf.org peter.pramberger@member.fsf.org peter.pramberger@member.fsf.org peter.pramberger@member.fsf.org peter.pramberger@member.fsf.org - Change labels in alert mail headers to "ASL" - Update to Ossec 2.9.0 Final - Update to Ossec 2.9.0 - Update to 2.8.1. This is identical to 2.8.0-46, the only change is the hosts.deny CVE-2014-5284 is merged in. - Revert BR#1596
- Add Bugfix for hosts.deny race condition (CVE-2014-5284) - BR #1596, Add fork limiting patch (max 10) for execd to prevent DoS conditions - Upgrade to 2.8.0 - Feature Request #1512,  speed up shuns in execd, move sqlite down - Relink against native mysql - Add ar-tracking active response - Placeholder for null exclusion rules.  Legacy support - ASL 4 version with new database format - Add support for Fedora 20
- Modify optimization flags for FORTIFY - Update to 2.7.1
- Add independent rules.d/decoders.d ossec-rules package - FR#772, add rule 3360 for postfix slow brute force
-   add dovecot-decoder.patch for cpanel dovecot
-   Update 9702, 9753 for dovecot brute force
- FR#773, add rule 11308 for pure-ftp slow brute force
- FR#1347, Update for courier v4 decoder (pop3s)
- FR#1359, Update horde decoder for v5 - Disable ossec-dbd signature table (replaced by aslw_rules). This was very slow - Break ossec-dbd into separate package
- FR#1321, update courier-imap decoder for version 4.0 - Bugfix #XXX, prevent truncating last character on ossec-dbd database inserts on the alerts/data table - Add tld column to alert table w/ index - Deprecate internal id generation in dbd
- update schema to autoincrement, increase id space to int - Add is_hidden to mysql schema - Add if exists to mysql schema - Add os_dbd-mysql-replace-query.patch to consolidate SELECT/UPDATE into REPLACE sql - Consolidate alert & data into a common table
- Add ossec-authd init script - Add sqldelete command  to execd
- Update to clear sqlite db at startup - More minor updates to GeoIP tracking - Minor update to GeoIP tracking - Bugfix on permissions for files in shared/ directory for client installs
- Add GeoIP support
- Remove dependency on perl-DBD-SQLite
- Update asl-shun to new non-perl based version.
- Deprecate firewall-drop-update.patch
- Add sqlite support to execd (/var/ossec/var/execd.sqlite) - Update to 2.7 final - Feature Request #XXX, revert duplicate detection in log events to help detect extremely fast brute force attacks
- Add FORTIFY_SOURCE, PIE, and relro (full) - Update to 2.7-rc2 - Update to 2.7-rc1 - Move active response components under the common package - bugfix #xxx, correct ownership permissions on fts dir - Update to init script to suppress spurious execd output
- Add alerts queue to server package with ossec/ossec permissions - Bugfix #XXX, correct any/agentd condition - Moved agentless packages under server - Drop timeid and cat_id indexes from schema - Add new index, timeid to alerts table. - Add cmoraes patch, Adds config options for enabling/disabling rootkit/syscheck options, and agent config profiles
- Add ossec-memleaks patch
- Add agentless directories, and agent.conf
- Bugfix #XXX, ossec-hids.init will now return an exit code on status - Add prelink_cmd support - Bugfix #XXX, display multi-line events in data table correcty - Update to asl-shun.pl purge event to default to 24 hours. - Update to asl-shun.pl to change ordering of block rules
- Revert from 0805 snapshot - Update to 0805 snapshot - Update to 0801 snapshot
- Update asl-shun.pl to log to active-responses.log, blocks now go to the named chain ASL-ACTIVE-RESPONSE, and delete events are more redundant. - Update to OSSEC 2.6 Final - Update to snapshot 110711 - Update to snapshot 110613 - Update to snapshot 110609 - Update to snapshot 110606
- Moved ossecr user creation event to the ossec-hids core package - Update to snapshot 110531 - Update to snapshot 110526 - Update to snapshot 110504 - Bugfix #536, Increase the default sleep time for syscheck - Renamed to 2.6 branch - Add support for the rules/decoders dir system - Update to snapsot 110405
- Update asl-shun to support ossec alert ids - Changed asl-shun sqlite database to /var/ossec/var/blocklist3.sqlite
- asl-shun database format now stores the full alertid - Update to snapshot 101203 - Update to snapshot 101125 - Added alertid support to os_dbd, this involves a schema update - Added dst ip, src prt, and dst prt capture support to os_dbd - Bugfix #XXX, manage_agents was built in client mode for the server package. - Add clamav decoder & ruleset - Update to 2.5.1 final - Update to 2.5 final - Update to 0928 snapshot - Extended no_ar into ossec-dbd - Add no_ar option to disable active response per rule - Update to snapshot 100920 - Update snapshot to 100907 - Snapshot 100901 - Added test fix for os_dbd - Bugfix #376, ossec-control will now properly stop and reload - Update to 0809 snapshot - Relink against native mysql - Add minicon decoder from les fenison - Update to 100707 snapshot
- Feature Request #371, add ossec.log to logrotate - Updated to 100615 snapshot - Updated init and ossec-server scripts to support the new reload feature. - Update to 2.4.1 - Added zabbix reporting active response - Update to 2.4 final
- Lowered courier rule 3910 (failures) from 6 over 240 to 10 over 10
- Lowered courier rule 3911 (success) from 10 over 60 to 30 over 20 - Rebuilt for atomic repo - Update to CVS 100317 - Update to CVS 100311
- Add decoder for denyhosts
- Update asl_rules.xml to include denyhosts rules - Update to CVS 100309 - Added new decoder for smtp_auth
- Added rules to detect smtp_auth brute force attempts
- Added rules to detect imap/pop brute force attempts - Updated ossec-server.conf to be in parity with the ASL config
- Added templates dir for generating configs - Update to 2.3 release - Update to snapshot 091109 - Update to snapshot 091008 - Update to snapshot 090925
- Added timestamp field to the mysql schema
- Bugfix #XXX, for the ossec-client.init script to call the correct (renamed) ossec syscheckd/logcollector daemons
- Appologies for not updating the previous changelogs. Missed a few updates! - Update to snapshot 090827
- Feature Request #225, Added logrotate event to active-response log
- Updated system_audit_rcl.txt to look for the correct php.ini file - Update to 090824, beta 1 release - Update to 090812 snapshot - Rebuild agent daemons with -DCLIENT, added symlink trickery - update to 2.1.1 - update to 090630 snapshot, this has fixes for CentOS/RHEL 4 64-bit environments - update to 2.1 final - update to snapshot 090612 - update to snapshot 090610 - update to snapshot 090603 - Disable postgresql support, to get around an undesirable dependency on EL4 - Update to snapshot 090417 - Update to snapshot 090413 (this adds in inotify support) - Update to snapshot 090410 (this adds in inotify support) - Update to snapshot 090408 - Added authpsa rules back in, this is used to detect brute force attacks
- Added conditional building support for ASL modifications - Update to 2.0 official release - update to snapshot 090225 - update to snapshot 090220 - update to snapshot 090206 - update to snapshot 090205 - update to CVS code 090129, this is not an offical release. Its for testing only - update to CVS code 090126, this is not an offical release. Its for testing only - update to 1.6.1 - update to 1.6 - update to 1.5.1 - added mysql support - Added Stanislaw Polak's excellent ban-hackers script to manage shunning more intelligently. - update to 1.5 - fix on active-response locking bug that prevented some rules from expiring. - update to ossec 1.4 - update snapshot to ossec-hids-071011.tar.gz
- relinked C4, FC4, FC5 against mysql4 - update to snapshot ossec-hids-071006.tar.gz - update to shun blocklist tracking used by ASL
- added authpsa rules + decoder - update to 1.3 - minor adjustment in post, to check for config file before overwriting it - v6 was first version of the patch.
- added in logging in active-response for better ASL support
- Disabled conf event in post, to keep from overwriting config files. - changed permissions on queue/syscheck so it can be read by the ossec group (tweak for web gui) - removed the noreplace settings from decoder and the rules
- patch for a more ASL friendly client config - release -2 had a bug. 
- added ASL rules (asl_rules.xml)
- added decoder for the asl style modsecurity logging
- adjusted syslog_rules for qmail-scanner issue (BUG #ASL-18)
- Added http index in asl_rules.xml (BUG #ASL-7) - update to 1.2 - update to 1.1 - configuration change for ASL - updated to 1.0 - import into ART
- changed their naming conventions a bit, 0.9-3 to 0.9.3. Please dont be cross with me. - new version (0.9-3) - new version (0.9-2) - new version (0.9-1a) - new version (0.9-1) - new version (0.9) - some bugfixes - created /bin/sh /bin/sh ossec-hids-client                                                                                                                               	   
                                                                                                         0:2.9.3-3861.el7.art 0:2.9.3-3861.el7.art                                                                                                            ossec-init.conf ossec-hids agent-auth client-logcollector client-syscheckd manage_agent ossec-agentd ossec-client.sh ossec-execd internal_options.conf ossec-agent.conf ossec.conf.sample agent.conf cis_debian_linux_rcl.txt cis_mysql5-6_community_rcl.txt cis_mysql5-6_enterprise_rcl.txt cis_rhel5_linux_rcl.txt cis_rhel6_linux_rcl.txt cis_rhel7_linux_rcl.txt cis_rhel_linux_rcl.txt cis_sles11_linux_rcl.txt cis_sles12_linux_rcl.txt rootkit_files.txt rootkit_trojans.txt system_audit_rcl.txt system_audit_ssh.txt win_applications_rcl.txt win_audit_rcl.txt win_malware_rcl.txt alerts rids syscheck /etc/ /etc/rc.d/init.d/ /var/ossec/bin/ /var/ossec/etc/ /var/ossec/etc/shared/ /var/ossec/ossec-agent/etc/shared/ /var/ossec/queue/ -O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches   -m64 -mtune=generic drpm xz 2 x86_64-redhat-linux-gnu        ?   0   7zXZ  
 !   #,8] "k%l{ls&:Pyj.'e#.spq.Ȭ?BnjزӰc
\7'ài$дu>龪1>G(pH-)ֳk`wi=;/?h/6Sa<V=8e NbṞ(>bYY|YYJ6vraC|+ry=%ukˠ q2c[F#{HV]}o)8v$lqRp:'hZW@nq
 z︿fqb). ik}8-*e!QRݕbҩ!XC2RXž(1ֱ|$XQ(Og^HQLR)V5wR)U߁.*AMپN12H1"*!]g=lY59-7"|qdYMCC*ey4;nhgЪxJ3<2 CH%>(aSxwQCCA>Y_sp! ?0 ȴiQ62Zo$8g?YV&Nyx4>Z9}۽Vwҕ)j'=.>4[Dh7+bxy3P)3L8B5&eMf	VPl),*mPu*2ϩiJA(Kkg\sIAx,v fUXpC:O`"O@=wP"g8!噌k22fP	)ʶrO4o6UÀqFmTJ5h"Kz7ag}(hѡ$P)݊
~iHM+yGX.s?q0g~ᚇÊ?PgDo}(]L1k>iuQ+-Mx7IcŌ.D|""iGACw^[r
r!E"2*ZESQD26XoF>->5hVP]to
_*JRRsʼS
԰xFPY$&LB5.&וJeX, e,v͢[g麞K}/&8qQM\cV9p!v\@ɸeOPPv]l¶g`\qQ+Ov*A!WHէVJ?h?p_3bԕb?u`b	Nȫy~uh+18Uz_%cΠ8G#ţdUsd:1zR#hH#?.%`VK_h3(Aߔ%D680*{p0c*WHb>@T=@OZR,ꠞPtve bw媔8HѢ~q.q>1a!`G\v ks\x_ L rtaH0&Enޜul6p=G-	_q4Fۉ>zÅ4=y|6Ƣn4xγFeDEteXP$m!j}9=wMڨ:U񩠋6μ0MwV	Guj5T7g$>![k`*y]h5:I4+?ZBz{leuMxI^)gߡ~邨f\Z*Mp5N~)wlHp9)lqЌj]@ 6ul<.- 4.`$
PRv-r:`\HR[MyW84ؚcÀkD~c*RdͧaY<fInJYH=(h2L}-]d#͌!^kNJ~/J>c@0Ty2DNsJ*	&x]/[_GS1(<+ʕ":vuz"j	eD(-}qؾ&]W0%@-;u%I8'bgџǣi|2%.l<Pl"57F|)ޒ9k縦!iϯ3ST_,
Xf%D~!%!=$_w_X­u$ݯM ca_mܙcwUlOkӧ@o$H{@B9F]+Nz\ڱ[^lW˶oG&`Vaeq{Ac%]K9E$"ӫ0XI`۝yj@10Iu ,^jL$Ǭ%qp+t憓F
aX!@lh'{O<¬sX$l-&h#I56TOTf;_Z?/FXM㎁&QLgU:T۹+mߘ<NN_9
epXO`44
Aڀp(XCdJӦ2Nnon%h8eY3mCNG+kfvrqN=ޒ1*CL>20^RTN *3xfدvކKmlp[UGz*|Yp)<St:5=`'Y| X|Co]1a630K2E``/onc{n04aiND!=%@ה/ͩ+f"XՔK(m9Tc ~" ɹwaJi?C`2l0[l^~cu,aS[x͏f ?4SuqWeqQk2R(nT=s4g{HWCh)`ᝎV5|Lad|ncxbF7Ϲ
\ebd(0W3{Lz	~w09`@K`~]RPC4J*u?*s_9@E9R"M03d=SVk5zA|$.sZ!]>CwÚd~]0P~\LLBs WHm?N6]JyrB%(~hFA\0>y$-yjUSJ?TB\__kO0wPzO&n+GlN_bѺQΊ >.ǽY<t`y	z@#rk/(WCq尔qGLdNW)JV,a"| @s~aSC[(NpoNm(d1V|T?1o|j(T6i/K"ZDFh̯rOsJCv8ڣ`'e$b:J/+IRjClzk]ZE#Q}CPcc)ݼM<ݛ'l2EFQBǥwt6pC2(W\}wՆ$t{V6D+|8Bkj{jH5uԹ>W~(Ʉj kګǟEβj "ٱw]dd.`aqT҄Z!w%";rOS18XwaEfa2vŷȳ6:''DyMnNku%_WT	.uu#,۶4eeh_jB8
_4k$qLr(~קQo\g5h[ե{)F6w0*,chc	^@)vmf sV.<'ؾOa;&k(+ŕzP<bTNpƚvDiѰ7^1L}m,Rw)i4>UXm:)kc 模)kV_`i֊
M2.:/q]D$*Sð+Ym Zp_Kfh*hנ&>1 uudWϪ,=ϸǵ#n]ԁT%qju¿ RC<҄
sn|hd%gQ'8/p-Nzo(VI|(KBX3¾}į6\9z<+=IlّpMU;+v_]&Bbu)!|ΕV9~_5tb<dXUaۍL'4iM#x3-";ߑTeH0<瑑ŭ>)cfp򣖻Iu~y7}mTH"q!W2LF,mK\HP筂m$=&䂡76sXw9)Q]7λŖ]i?_B9ڭsݴ@!hR0&ii`3u>X?9y%a oqDg*e#&B]>#aj{i3#ƎWZ]~cFB%vpMd+a۔{0+iv9vZmvZ
7Gp2t2xP)'dߗf7>!5xwǗ#،]G>TC2'זD	+!pLj	Y{O k嚟%YVAыm:LھE7W)iIגMμ^Y{8dlx>c}X3@2pKOLb#v*Ӡ΍n0eF
/$-du-W!%aچxzD9~I"Z-K!.L	)y~jS{
O%UM=0]=4eB'Wn`oXtL-vIxGh+l
׎5KX{?JDQW?	4/<THi'Z<*=6|)I|i*Gzz6~II(2tߴPVMbU{FPq0ӛǥP|E˓0M'@3D^b QKQ W-  Vҷk^- :^&])ںT (q  "    
YZ