Kaspersky Unified Monitoring and Analysis Platform

Configuring the KUMA collector for receiving Auditd events

At the Transport step, select the TCP or UDP connector type and move the Auditd toggle switch to the enabled position.

After creating a collector, in order to configure event receiving using rsyslog, you must install a collector on the network infrastructure server intended for receiving events.

For details on installing the KUMA collector, refer to the Installing collector in the network infrastructure section.