Kaspersky Unified Monitoring and Analysis Platform
Contents
Contents
Filtering events using SQL queries
In KUMA you can filter events using SQL syntax queries.
To create a filter using SQL search queries:
- In the Events section of KUMA click the
field and select the SQL query tab.
The field for entering the search query opens.
- Generate a search query.
- Click Search.
After this, only events matching he created filter are displayed in the events table, and the filter expression is displayed in the Search field.
To remove the filter:
- In the Events section of KUMA click the field with the filter expression.
- Click New search.
The filter will no longer be applied to the displayed events.
This action will also delete the time-based filter.
Page top