Kaspersky Unified Monitoring and Analysis Platform

Creating a KUMA collector to receive KICS for Networks events

September 9, 2024

ID 282864

After configuring the event export settings, you must create a collector for KICS for Networks events in the KUMA web interface.

For details on creating a KUMA collector, refer to Creating a collector.

When creating a collector in the KUMA web interface, you must:

  1. At the Transport step, select the transport protocol type matching the type you selected when you created the connector in KICS for Networks at step 4i (TCP or UDP) and the port number matching the port number you specified at step 4h.
  2. At the Event parsing step, select the [OOTB] KICS4Net v3.х normalizer.
  3. At the Routing step, make sure that the following destinations are added to the collector resource set:
    • storage—used to transmit data to the storage.
    • correlator—used to transmit data to the correlator.

    If destinations have not been added to the collector, you must create them.

  4. At the last step of the wizard, a command is displayed in the lower part of the window, which you can use to install the service on the server that you want to receive events. Copy this command and use it when installing the second part of the collector.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.