<ossec_config>
<active-response>
<command>firewall-drop</command>
<location>local</location>
<rules_id>5763</rules_id>
<timeout>120 </timeout>
</active-response>
</ossec_config>The restart the wazuh manager using the following command:
sudo systemctl restart wazuh-manager
Hope this will help. Please feel free to contact us for any information/issues.
Regards