Content of RPM
ossec-hids-server-2.4-1.el5.pp.x86_64.rpm :
/etc/ossec-init-server.conf
/etc/ossec-init.conf
/etc/rc.d/init.d/ossec-hids
/usr/share/ossec
/usr/share/ossec/contrib
/usr/share/ossec/contrib/add_localfile.sh
/usr/share/ossec/contrib/compile_alerts.pl
/usr/share/ossec/contrib/compile_alerts.txt
/usr/share/ossec/contrib/config2xml
/usr/share/ossec/contrib/ossec-batch-manager.pl
/usr/share/ossec/contrib/ossec_report.txt
/usr/share/ossec/contrib/ossec_report_contrib.pl
/usr/share/ossec/contrib/ossectop.pl
/var/ossec/active-response/bin/disable-account.sh
/var/ossec/active-response/bin/firewall-drop.sh
/var/ossec/active-response/bin/host-deny.sh
/var/ossec/active-response/bin/ossec-tweeter.sh
/var/ossec/active-response/bin/restart-ossec.sh
/var/ossec/active-response/bin/route-null.sh
/var/ossec/agentless
/var/ossec/agentless/main.exp
/var/ossec/agentless/register_host.sh
/var/ossec/agentless/ssh.exp
/var/ossec/agentless/ssh_asa-fwsmconfig_diff
/var/ossec/agentless/ssh_foundry_diff
/var/ossec/agentless/ssh_generic_diff
/var/ossec/agentless/ssh_integrity_check_bsd
/var/ossec/agentless/ssh_integrity_check_linux
/var/ossec/agentless/ssh_nopass.exp
/var/ossec/agentless/ssh_pixconfig_diff
/var/ossec/agentless/sshlogin.exp
/var/ossec/agentless/su.exp
/var/ossec/bin/agent_control
/var/ossec/bin/clear_stats
/var/ossec/bin/list_agents
/var/ossec/bin/manage_agents
/var/ossec/bin/manage_agents-server
/var/ossec/bin/ossec-agentlessd
/var/ossec/bin/ossec-analysisd
/var/ossec/bin/ossec-control
/var/ossec/bin/ossec-csyslogd
/var/ossec/bin/ossec-execd
/var/ossec/bin/ossec-logcollector
/var/ossec/bin/ossec-logcollector-server
/var/ossec/bin/ossec-logtest
/var/ossec/bin/ossec-maild
/var/ossec/bin/ossec-monitord
/var/ossec/bin/ossec-remoted
/var/ossec/bin/ossec-reportd
/var/ossec/bin/ossec-server.sh
/var/ossec/bin/ossec-syscheckd
/var/ossec/bin/ossec-syscheckd-server
/var/ossec/bin/rootcheck_control
/var/ossec/bin/syscheck_control
/var/ossec/bin/syscheck_update
/var/ossec/etc/client.keys
/var/ossec/etc/decoder.xml
/var/ossec/etc/internal_options.conf
/var/ossec/etc/localtime
/var/ossec/etc/ossec-server.conf
/var/ossec/etc/ossec.conf
/var/ossec/etc/shared/cis_debian_linux_rcl.txt
/var/ossec/etc/shared/cis_rhel5_linux_rcl.txt
/var/ossec/etc/shared/cis_rhel_linux_rcl.txt
/var/ossec/etc/shared/rootkit_files.txt
/var/ossec/etc/shared/rootkit_trojans.txt
/var/ossec/etc/shared/system_audit_rcl.txt
/var/ossec/etc/shared/win_applications_rcl.txt
/var/ossec/etc/shared/win_audit_rcl.txt
/var/ossec/etc/shared/win_malware_rcl.txt
/var/ossec/logs/alerts
/var/ossec/logs/archives
/var/ossec/logs/firewall
/var/ossec/logs/ossec.log
/var/ossec/queue/agent-info
/var/ossec/queue/agentless
/var/ossec/queue/alerts
/var/ossec/queue/diff
/var/ossec/queue/fts
/var/ossec/queue/rids
/var/ossec/queue/rootcheck
/var/ossec/queue/syscheck
/var/ossec/rules
/var/ossec/rules/apache_rules.xml
/var/ossec/rules/arpwatch_rules.xml
/var/ossec/rules/asterisk_rules.xml
/var/ossec/rules/attack_rules.xml
/var/ossec/rules/cimserver_rules.xml
/var/ossec/rules/cisco-ios_rules.xml
/var/ossec/rules/courier_rules.xml
/var/ossec/rules/dovecot_rules.xml
/var/ossec/rules/firewall_rules.xml
/var/ossec/rules/ftpd_rules.xml
/var/ossec/rules/hordeimp_rules.xml
/var/ossec/rules/ids_rules.xml
/var/ossec/rules/imapd_rules.xml
/var/ossec/rules/local_rules.xml
/var/ossec/rules/mailscanner_rules.xml
/var/ossec/rules/mcafee_av_rules.xml
/var/ossec/rules/ms-exchange_rules.xml
/var/ossec/rules/ms-se_rules.xml
/var/ossec/rules/ms_dhcp_rules.xml
/var/ossec/rules/ms_ftpd_rules.xml
/var/ossec/rules/msauth_rules.xml
/var/ossec/rules/mysql_rules.xml
/var/ossec/rules/named_rules.xml
/var/ossec/rules/netscreenfw_rules.xml
/var/ossec/rules/nginx_rules.xml
/var/ossec/rules/ossec_rules.xml
/var/ossec/rules/pam_rules.xml
/var/ossec/rules/php_rules.xml
/var/ossec/rules/pix_rules.xml
/var/ossec/rules/policy_rules.xml
/var/ossec/rules/postfix_rules.xml
/var/ossec/rules/postgresql_rules.xml
/var/ossec/rules/proftpd_rules.xml
/var/ossec/rules/pure-ftpd_rules.xml
/var/ossec/rules/racoon_rules.xml
/var/ossec/rules/roundcube_rules.xml
/var/ossec/rules/rules_config.xml
/var/ossec/rules/sendmail_rules.xml
/var/ossec/rules/smbd_rules.xml
/var/ossec/rules/solaris_bsm_rules.xml
/var/ossec/rules/sonicwall_rules.xml
/var/ossec/rules/spamd_rules.xml
/var/ossec/rules/squid_rules.xml
/var/ossec/rules/sshd_rules.xml
/var/ossec/rules/symantec-av_rules.xml
/var/ossec/rules/symantec-ws_rules.xml
/var/ossec/rules/syslog_rules.xml
/var/ossec/rules/telnetd_rules.xml
/var/ossec/rules/translated
/var/ossec/rules/translated/pure_ftpd
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_da.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_de.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_en.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_es.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_fr.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_fr_funny.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_it.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_nl.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_no.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_pt_br.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_ro.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_sk.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_sv.xml
/var/ossec/rules/translated/pure_ftpd/pure-ftpd_rules_tr.xml
/var/ossec/rules/trend-osce_rules.xml
/var/ossec/rules/vmpop3d_rules.xml
/var/ossec/rules/vmware_rules.xml
/var/ossec/rules/vpn_concentrator_rules.xml
/var/ossec/rules/vpopmail_rules.xml
/var/ossec/rules/vsftpd_rules.xml
/var/ossec/rules/web_rules.xml
/var/ossec/rules/wordpress_rules.xml
/var/ossec/rules/zeus_rules.xml
/var/ossec/stats
/var/ossec/tmp