Kaspersky Unified Monitoring and Analysis Platform

Working with events

In the Events section of the KUMA web interface, you can inspect events received by the program to investigate security threats or create correlation rules. The events table displays the data received after the SQL query is executed.

Events can be sent to the correlator for a retroscan.

Displayed date format:

  • English localization: YYYY-MM-DD.
  • Russian localization: DD.MM.YYYY.

In this Help topic

Filtering and searching events

Viewing event detail areas

Exporting events

Selecting Storage

Getting events table statistics

Configuring the table of events

Refreshing events table

Opening the correlation event window

See also:

About events

Program architecture

Normalized event data model