> ## Documentation Index
> Fetch the complete documentation index at: https://docs.levelblue.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Raw Logs in Events

USM Anywhere archives raw <Tooltip tip="Any traffic or data exchange detected by LevelBlue products through a sensor or external devices such as a firewall.">event</Tooltip> data as logs. Raw logs are an invaluable asset for forensic analysis and compliance mandates. You can download raw logs for review and find details about specific incidents, search the logs for instances using a specific IP address, or analyze the patterns of multiple attacks.

USM Anywhere enables you to configure the Raw Log column when viewing events or download raw logs from events.

**To add the Raw Log column when viewing events**

1. From the Events List view, click the <img src="https://mintcdn.com/levelblue-5324744e/T1hrc0hK0aza_DCc/images/central-any-app/buttons/manage-columns-final.svg?fit=max&auto=format&n=T1hrc0hK0aza_DCc&q=85&s=1b58a57a870d7fee8cb991427b7fe41f" style={{ height: "1em", verticalAlign: "middle", display: "inline-block", margin: "0 0.25em" }} width="20" height="20" data-path="images/central-any-app/buttons/manage-columns-final.svg" /> icon to open the Columns Configuration dialog box.
2. Enter **raw** in the search field of the available columns.
3. Use the <img src="https://mintcdn.com/levelblue-5324744e/T1hrc0hK0aza_DCc/images/central-any-app/buttons/arrow-right.svg?fit=max&auto=format&n=T1hrc0hK0aza_DCc&q=85&s=8c2b99123bbdd3095a2c38366c2067f1" style={{ height: "1em", verticalAlign: "middle", display: "inline-block", margin: "0 0.25em" }} width="20" height="20" data-path="images/central-any-app/buttons/arrow-right.svg" /> icon to pass the Raw Log column from one side to the other.
4. Click **Apply**.

<Note>
  **Note:** If you want to keep your configuration, you need to save it by selecting **Save View > Save as**. Otherwise, your custom view will not be kept when you move to another page.
</Note>

**To download Raw Logs**

1. Go to **Activity > Events**.

2. Search or use filters to limit the events if needed.

3. In the upper right corner of the page, click **Generate Report** to open the Create Report dialog box.

4. Click the **Download Raw Logs** tab.

   <Frame>
     <img src="https://mintcdn.com/levelblue-5324744e/fC92IJE7ax567GE5/images/usm-anywhere/user-guide/events/downloadrawlogs.webp?fit=max&auto=format&n=fC92IJE7ax567GE5&q=85&s=13dc9370a8e29bc096af4e5171ef0503" width="1558" height="624" data-path="images/usm-anywhere/user-guide/events/downloadrawlogs.webp" />
   </Frame>

5. Choose a date range. You can select a predefined range between **Last Hour**, **Last 24 Hours**, **Last 7 Days**, **Last 30 Days**, or **Last 90 Days** or **Custom Range** to set a particular date range.

6. Under the Number of records section, choose the maximum number of records to include on the report: **20**, **50**, **100**, **500**, **1000**, or **2500**.

7. Click **Download Logs**.
