Kaspersky Anti Targeted Attack (KATA) Platform

Basics of managing "Alerts" type widgets

8 November 2023

ID 247585

You can configure the display scale for all "Alerts" type widgets.

The left part of each widget displays the legend for colors used in widgets.

Example:

The Alerts by importance widget displays the number of alerts of various importance.

Importance—Alert importance for the Kaspersky Anti Targeted Attack Platform user depending on the impact this alert may have on computer or corporate LAN security based on Kaspersky experience.

In the Alerts by importance widget, the following colors correspond to importance levels:

  • Red—Alert has a high level of importance.
  • Orange—Alert has a medium level of importance.
  • Green—Alert has a low level of importance.

To the right of the legend, the number of alerts of each type for the selected period for displaying data in widgets is displayed.

By clicking the link with the type of each alert, you can go to the Alerts section of the application web interface and view all alerts of this type. Alerts are filtered based on the specific type.

 

Example:

The Alerts by attack vector widget displays Files from email alerts, which indicate the number of files that Kaspersky Anti Targeted Attack Platform detected in mail traffic for the selected period.

Clicking the Files from email link opens the Alerts section and displays all alerts associated with the detection of files in mail traffic for the selected period. Data will be filtered based on the following parameters: Time, Object type=FILE and Object source=MAIL.

The right part of each widget displays data columns. The vertical axis shows the number of events, and the horizontal axis shows the date and time of the alert. You can edit the period of data display in widgets and select the tenant for which information is displayed in the widget.

Position your mouse cursor on each data column to display the number of alerts counted for the period represented by the specific column. The number of unprocessed alerts is displayed by default. You can enable the display of processed alerts by selecting the Processed check box in the upper-right corner of the window. In this case, the total number of all alerts will be displayed.

See also

Monitoring the performance of the application

About widgets and layouts

Adding a widget to the current layout

Moving a widget in the current layout

Removing a widget from the current layout

Saving a layout to PDF

Configuring the data display period in widgets

Configuring the widget display scale

Viewing the working condition of modules and components of the application

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.