Kaspersky Sandbox event configuration
Kaspersky Sandbox event configuration
12 August 2022
ID 189620
To configure Kaspersky Sandbox events:
- In the main window of Web Console, select the Devices → Policies & profiles section.
- Click KSB.
- This opens a window; in this window, select the Event settings tab.
Events are grouped in sections in accordance with severity levels:
- Critical
- Functional failure
- Warning
- Informational message
Each section displays a list of event types. By default, the storage duration of events on the Administration Server is specified in days.
- Select the event that you want to configure.
- This opens the event properties window; in that window, configure the following:
- Under Event logging, enter the expiration time of stored events in days and select one or more event storage types:
- Store in the Administration Server database for (days).
- Export to the SIEM system over the Syslog protocol.
- Store in the OS event log on the client device.
- Store in the OS event log on the Administration Server.
- Under Event notifications, select one or more event notification methods:
- Notify by email.
- Notify by SMS.
- Notify by launching an executable file or script.
- Notify by SNMP.
For details about configuring event notifications, see Kaspersky Security Center Online Help.
- Under Event logging, enter the expiration time of stored events in days and select one or more event storage types:
Event configuration is complete.
Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.