Kaspersky Industrial CyberSecurity for Networks

Obtaining reports

March 22, 2024

ID 236181

In Kaspersky Industrial CyberSecurity for Networks, you can generate reports based on templates to obtain information about devices, the states of devices and system security, monitored technological process parameters and system commands, and information about detected risks and interactions with third-party devices.

The application has two types of report templates:

  • System templates are created automatically during installation of the application. In the report templates table, system templates are displayed with the System template icon icon. You cannot delete system templates.

    Kaspersky Industrial CyberSecurity for Networks supports the following system templates for generating reports:

    • Inventory report.

      Report containing information about devices, monitored technological process parameters and system commands, utilized protocols, and detected risks on devices.

    • System security report.

      Report containing information about the security state of devices, registered events, detected risks, and interactions with devices of external networks.

    • Executive summary.

      Report containing concise information about devices and the security state of the system.

    • Full report.

      Report containing comprehensive information about devices and the security state of the system.

  • User-defined templates are created manually by duplicating templates. System templates and user-defined templates can be duplicated. Only users with the Administrator role can duplicate templates.

Data in reports is presented in separate information blocks. For each report, Kaspersky Industrial CyberSecurity for Networks uses a fixed set and layout of information blocks. The information blocks used in reports and their descriptions are presented in the table below.

Use of information blocks in reports

Name of information block

Inventory report

System security report

Executive summary

Full report

Device categories

Icon Yes

Icon No

Icon Yes

Icon Yes

Device vendors

Icon Yes

Icon No

Icon Yes

Icon Yes

Device operating systems

Icon Yes

Icon No

Icon Yes

Icon Yes

Monitored technological process parameters

Icon Yes

Icon No

Icon No

Icon Yes

Devices with the most risks

Icon Yes

Icon Yes

Icon No

Icon Yes

Most vulnerable industrial devices

Icon Yes

Icon Yes

Icon No

Icon Yes

System command sources

Icon Yes

Icon No

Icon No

Icon Yes

Situational awareness

Icon No

Icon Yes

Icon Yes

Icon Yes

New devices in the network

Icon Yes

Icon No

Icon No

Icon Yes

Protocols with the most traffic

Icon Yes

Icon No

Icon No

Icon Yes

Devices with the most connections to other nodes

Icon Yes

Icon No

Icon No

Icon Yes

Network traffic volume

Icon Yes

Icon No

Icon Yes

Icon Yes

Common protocols

Icon Yes

Icon No

Icon Yes

Icon Yes

Industrial protocols

Icon Yes

Icon No

Icon Yes

Icon Yes

System command recipients

Icon Yes

Icon No

Icon No

Icon Yes

Security states of devices

Icon No

Icon Yes

Icon Yes

Icon Yes

Distribution of devices by status

Icon No

Icon Yes

Icon No

Icon Yes

Statistics on events

Icon No

Icon Yes

Icon No

Icon Yes

Distribution of events by detection technologies

Icon No

Icon Yes

Icon No

Icon Yes

Devices with the most events

Icon No

Icon Yes

Icon No

Icon Yes

Most critical events

Icon No

Icon Yes

Icon No

Icon Yes

Most frequently triggered malicious activity detection rules

Icon No

Icon Yes

Icon No

Icon Yes

Unusual protocols in the industrial network

Icon No

Icon Yes

Icon No

Icon Yes

Devices with signs of access to public resources

Icon No

Icon Yes

Icon No

Icon Yes

Connections via remote control protocols

Icon No

Icon Yes

Icon No

Icon Yes

Modification of industrial device programs

Icon No

Icon Yes

Icon No

Icon Yes

Active risks

Icon No

Icon Yes

Icon Yes

Icon Yes

You can manually start generating reports based on templates in the Reports section on the Report templates tab of the application web interface. Kaspersky Industrial CyberSecurity for Networks can also start generating reports according to a schedule. Only users with the Administrator role can configure template schedule settings.

Kaspersky Industrial CyberSecurity for Networks generates reports in PDF files that are no more than 10 MB in size, and sends the report files to the email addresses indicated in the report templates. You can also view information about generated reports and export them to files on the Created reports tab.

In this section:

Viewing the report templates table

Viewing report template details

Manually generating a report

Viewing the reports table

Exporting a report to a file

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.