Kaspersky Unified Monitoring and Analysis Platform
 
 

How to configure receiving events from Kaspersky Anti Targeted Attack Platform to Kaspersky Unified Monitoring and Analysis Platform

Latest update: June 18, 2024 ID: 16056
 
 
 
 
Show applications and versions that this article concerns
  • Kaspersky Anti Targeted Attack Platform 6.1
  • Kaspersky Anti Targeted Attack Platform 6.0
  • Kaspersky Anti Targeted Attack Platform 5.1
  • Kaspersky Unified Monitoring and Analysis Platform 3.0.3
  • Kaspersky Unified Monitoring and Analysis Platform 3.0.2
 
 
 
 

You can configure receiving events from Kaspersky Anti Targeted Attack Platform (KATA) to the Kaspersky Unified Monitoring and Analysis Platform (KUMA) SIEM system.

To do this, configure forwarding events from KATA and create a KUMA collector for KATA/EDR events using the instructions below.

With this method, you can forward:

  • Information about user's actions in the application web interface
  • Information about alerts
  • Application component status
You can configure receiving original events (not processed by KATA) using these instructions.
 
 
 
 

How to configure KATA

 
 
 
 

How to configure KUMA

 
 
 
 
 
Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.