ossec-analysisd receives the log messages and compares them to the rules. It will create alerts when a log message matches an applicable rule.
-c <config>¶Configuration file ossec-analysisd should use.
-D <dir>¶Chroot to <dir>.
-d¶Execute ossec-analysisd in debug mode. This can be used more than once to increase the verbosity of the debug messages.
-f¶Run ossec-agentlessd in the foreground.
-g <group>¶Run as group.
-h¶Display a help message.
-t¶Test the configuration.
-u¶Run as user.
-V¶Display the version and license information.