Activating SIEM audit logging
SIEM audit logging is a paid add-on. It is managed by Kolleno, so switching it on or off, and setting how long events are retained, are handled by the Kolleno team and cannot be changed from within the app.
How to request activation
To activate SIEM audit logging, contact your account manager and ask to enable the add-on. Let them know:
That you'd like the SIEM audit-logging add-on enabled for your company.
Your preferred data-retention period, in days (between 1 and 180; the default is 7).
Your account manager can confirm the pricing and switch the add-on on for you.
Confirming it's active
Once enabled, go to Settings > Security. Under SIEM status you'll see:
SIEM audit logging: Active with a green indicator.
Data retained for N days, showing your retention period.
You'll also see a note confirming that activation, deactivation, and retention changes are managed by Kolleno. To change any of these later, contact your account manager again.
What you can do yourself
Even though activation is managed by Kolleno, once the add-on is on you can manage everything else in-app: create and revoke API keys, and copy the feed URL for your SIEM.

