This section describes how to finish the integration of Kaspersky CyberTrace with QRadar after the upgrade of the Kaspersky CyberTrace files.
Upgrading the integration of Kaspersky CyberTrace with QRadar manually
To upgrade the integration of Kaspersky CyberTrace with QRadar manually,
Perform the actions described in sections "Importing QIDs to QRadar", "Sending a set of events to QRadar", and "Mapping events to QIDs" for the categories and alert events listed above. You can use the sample_initiallog.txt
and sample_qid.txt
files included in the distribution kit of Kaspersky CyberTrace.