Kaspersky Unified Monitoring and Analysis Platform

Compatibility with other applications

Kaspersky Endpoint Security for Linux

If KUMA components and the Kaspersky Endpoint Security for Linux application are installed on the same server, the report.db directory may grow very large and even take up the entire drive space. In addition, Kaspersky Endpoint Security for Linux scans all KUMA files by default, including service files, which may affect performance. To avoid these problems:

  • Upgrade Kaspersky Endpoint Security for Linux to version 12.0 or later.
  • We do not recommend enabling the network components of Kaspersky Endpoint Security for Linux.
  • Add the following directories to general exclusions and to on-demand scan exclusions:
    1. On the KUMA Core server:
      • /opt/kaspersky/kuma/victoria-metrics/ — directory with Victoria Metrics data.
      • /opt/kaspersky/kuma/mongodb — directory with MongoDB data.
    2. On the storage server:
      • /opt/kaspersky/kuma/clickhouse/ — the ClickHouse directory.
      • /opt/kaspersky/kuma/storage/<storage ID>/buffers/ — directory with storage buffers.
    3. On the correlator server:
      • /opt/kaspersky/kuma/correlator/<correlator ID>/data/ — directories with dictionaries.
      • /opt/kaspersky/kuma/correlator/<correlator ID>/lists — directories with active lists.
      • /opt/kaspersky/kuma/correlator/<correlator ID>/ctxtables — directories with context tables.
      • /opt/kaspersky/kuma/correlator/<correlator ID>/buffers — directory with buffers.
    4. On the collector server:
      • /opt/kaspersky/kuma/collector/<collector ID>/buffers — directory with buffers.
      • /opt/kaspersky/kuma/collector/<collector>/data/ — directory with dictionaries.
    5. Directories with logs for each service.

For more details on scan exclusions, please refer to the Kaspersky Endpoint Security for Linux Online Help.