Dear, I would like to get the logs generated by an Hp 3600 switch, but there is no decoder?
Dec 8 07:58:19 2021 SA-DC-ALL-SSC-01 %%10SHELL/4/LOGIN(t): Trap 1.3.6.1.4.1.25506.2.2.1.1.3.0.1:supredes login from VTY
Dec 8 07:58:19 2021 SA-DC-ALL-SSC-01 %%10SHELL/5/SHELL_LOGIN(l): supredes logged in from 10.206.104.43.
Dec 8 07:58:24 2021 SA-DC-ALL-SSC-01 %%10SHELL/6/SHELL_CMD(l): -Task=vt0-IPAddr=10.206.104.43-User=supredes; Command is disp version
Dec 8 07:58:53 2021 SA-DC-ALL-SSC-01 %%10SHELL/4/LOGOUT(t): Trap 1.3.6.1.4.1.25506.2.2.1.1.3.0.2:supredes logout from VTY
Dec 8 07:58:53 2021 SA-DC-ALL-SSC-01 %%10SHELL/6/SHELL_CMD(l): -Task=vt0-IPAddr=10.206.104.43-User=supredes; Command is quit
Dec 8 07:58:53 2021 SA-DC-ALL-SSC-01 %%10SHELL/5/SHELL_LOGOUT(l): supredes logged out from 10.206.104.43.
^C
root@wazuh:/var/ossec/bin# ./wazuh-logtest'
> ^C
root@wazuh:/var/ossec/bin# ./wazuh-logtest
Starting wazuh-logtest v4.2.5
Type one log per line
Dec 8 07:58:53 2021 SA-DC-ALL-SSC-01 %%10SHELL/5/SHELL_LOGOUT(l): supredes logged out from 10.206.104.43.
logtest result:**Phase 1: Completed pre-decoding.
full event: 'Dec 8 07:58:53 2021 SA-DC-ALL-SSC-01 %%10SHELL/5/SHELL_LOGOUT(l): supredes logged out from 10.206.104.43.'
timestamp: 'Dec 8 07:58:53'
hostname: '2021'
**Phase 2: Completed decoding.
No decoder matched.