Kaspersky IoT Secure Gateway 1000 saves events related to system security to the operating system audit log. These events are created by system entities. Each event contains the identifier (user or component name) of the subject that registered the event.
When a critical event occurs, an exclamation mark alarm icon is displayed next to the Audit menu section on the left. In that event, contact the employee responsible for information security in your organization.
To view the operating system audit log:
This opens the Audit page, which contains a table of all registered operating system audit events. Events in the table are refreshed every 30 seconds and displayed in reverse chronological order (new events first). The table can display a maximum of 1024 of the last registered events. If the number of events is exceeded, the log is overwritten starting with the oldest entries.
If the audit event language in the table does not match the system language, select the relevant web interface language in the menu and refresh the page to apply the changes.
The following information is displayed for each log entry:
Events are categorized by the following severity levels:
When a critical event occurs, an exclamation mark alarm icon is displayed next to the Audit menu section on the left. In the table, audit events with a critical level of severity are highlighted in red.
The table will display events for the selected date or period.
The table will display events with the selected severity level.
The table will display events from the selected sources.
All registered events will be displayed in the table.
The Load more button is always available, even if there are no earlier events.