Help - Search - Members
Full Version: Suggestions for MP4 for Kaspersky Anti-Virus for WKS 6.0
Kaspersky Lab Forum > English User Forum > Protection for Small and Medium Businesses
Pages: 1, 2
Igor Kurzin
Dear all,

You are welcome to post here your comments, suggestions and wishes for MP4 (KAV for WKS 6.0).

Thanks a lot!

Kind regards,
Igor Kurzin
spypee
Hi,

For the benefit of those non-techie users of KAV, I would like to suggest to have a .exe file of database signatures for manual update instead of configuring the update settings. Like E-Scan, it would be more convenient than a compressed files. Your actions will be highly appreciated. Thank you very much.


Best regards,

spypee
Helmut
QUOTE(spypee @ 27.03.2008 07:34) *
Hi,

For the benefit of those non-techie users of KAV, I would like to suggest to have a .exe file of database signatures for manual update instead of configuring the update settings. Like E-Scan, it would be more convenient than a compressed files. Your actions will be highly appreciated. Thank you very much.
Best regards,

spypee


I can agree this request. It was easy to deploy this .exe.

In the past Kaspersky have had some faulty updates and we had have a lot of work to revise this problem.
wicked
i also agree with spypee's idea about the update which is in .exe format, i also checked ESCAN and the name of that update.exe is MWAV and is very useful to people who are not comfortable in configuring their settings. if its possible to do that kaspersky lab should named it "kasperskeenator" hahaha laugh3.gif
csgit
I'd like to be able to change the Anti-Banner settings through policy so that i can white list sites. The option is there locally, just not in the policy settings.
Caos
Hi,

- Sandbox option.
- Option to send the suspicious files or possible falses positives to Kaspersky using other email clients than OE, Outlook, example: The Bat!.
- Improve the perfomance of full scanning files (How KIS v8 beta, more quickly scanning files).
- Option to skip the scanning complete of the system, example: disconnect the computer of the network, unistall the installed version, reboot, install the new version, and then need to do the complete scanning.

Regards
spypee
Hi,

Concerning installation of Adminkit, creating installation packages consumes time on deploying the products. I would highly suggest if you could include the packages for workstations and servers upon installation of Adminkit to minimize the time of deployment. Your action will be highly appreciated. Thank you very much.


Best regards,

spypee
WCEnte
Hi,

WKS:
- product without NDIS driver and although 100% functionality (XP & Vista)
- improved scanning speed
- less resources used by file-anti-virus & proactive


WKS & AdminKit:
- ability to manage local task globally with AdminKit (reset settings etc.)
- let the user switch between default and mobile policy
mpsilva
Ability to remote update clients before the first reboot.

Today, local installation gives me ability to update signatures before computer restart.

Remotely, AdminKit will recognize that AV is installed, but I can't start an update task before the first reboot. So, I need to reboot, then update, then reboot again.
Whizard
QUOTE
product without NDIS driver and although 100% functionality (XP & Vista)


That is impossible, especially on Windows Vista OS. NDIS 6.0 is the actual way recomended by MS to intercept packets and bind onto TCP/IP stack. The rest are crude workarounds, which will never be certified by MS Logo program.
slburke
Ability to selectively scan "subnetworks"
kulaga
QUOTE(spypee @ 31.03.2008 09:44) *
Hi,

Concerning installation of Adminkit, creating installation packages consumes time on deploying the products. I would highly suggest if you could include the packages for workstations and servers upon installation of Adminkit to minimize the time of deployment. Your action will be highly appreciated. Thank you very much.
Best regards,

spypee


This option will be added in AdminKit 7.
kulaga
QUOTE(slburke @ 11.04.2008 21:23) *
Ability to selectively scan "subnetworks"


This option will be added in AdminKit 7.
Caos
Eta time for Kaspersky Anti-Virus for WKS 6.0 MP4? And for AdminKit 7?

Regards
Tybilly
Hello,

Here is my list happy.gif

1. Correct existing bugs happy.gif
2. Add the possibility to install the application with a newer set of threat databases for example using zip archives, through a local installation or a remote deployment.
3. Improve plug-in for the Administration Kit to implement Anti-Banner ad servers customization and Anti-Spam settings
4. Add an event for computers which are waiting for reboot after a module update for example, then it is possible to view them using the Administration Console
5. Add an option to avoid installation of the NDIS filter in case other similar filters are installed on the remote host, to prevent network issues.
6. Add the possibility to completely disable local tasks through a policy
7. Add an exclusion list to self-defense option then computers can be managed remotely using programs like VNC without disable self-defense.
8. Interactive Exclusions/Trusted Apps/rules for applications. I mean, when an application is removed from the computer, then user should be asked to delete corresponding rules.
9. Rename the product. It's not only an Anti-Virus for Windows Workstation, but also a complete security suite.
10. Add compatibility with Thunderbird for the Anti-Spam plugin
11. Add the HiPS which is actually under development for v2009

Thanks smile.gif
mpsilva
QUOTE(Tybilly @ 22.04.2008 05:52) *
6. Add the possibility to completely disable local tasks through a policy


I think that's already possible.

Open Policy properties, "Settings" tab, select "Additional" in the listbox.
Tybilly
QUOTE(mpsilva @ 22.04.2008 17:31) *
I think that's already possible.

Open Policy properties, "Settings" tab, select "Additional" in the listbox.


This option allow to disable scheduled execution of these tasks, but does not help if you want to disable them completelty. I mean, user can not execute these task even manually. It was possible in KAV WKS 5.
Whizard
They can if you unlock the policy for that particular task and install it. Usually Local tasks are not installed by default.
kulaga
QUOTE(Caos @ 22.04.2008 10:35) *
Eta time for Kaspersky Anti-Virus for WKS 6.0 MP4? And for AdminKit 7?

Regards


It is scheduled for Autumn of 2008.
kulaga
QUOTE(Tybilly @ 22.04.2008 12:52) *
Hello,

1. Correct existing bugs happy.gif
2. Add the possibility to install the application with a newer set of threat databases for example using zip archives, through a local installation or a remote deployment.
4. Add an event for computers which are waiting for reboot after a module update for example, then it is possible to view them using the Administration Console

Thanks smile.gif


1. If you know any important bugs in the AdminKit, please post it here. We'll investigate the scenario and try to find the solution. Right now I'm not aware of any serious bugs in the AdminKit 6.0.1591.

2. It is planned for the KAV for WKS 6 MP4.

4. It will be added in the AdminKit 7.
Tybilly
Hello,

Thank you for your answer.

About item n°1, I don't know critical bugs on Admin Kit now. I was talking about KAV WKS MP4, I know several important bugs in current release of this product.

@Whizard, I'm sorry I don't understand how to avoid manual execution of local tasks. I know it is necessary to modify the installation package to disable these tasks before the deployment. But in this case they are not visible at all on the local interface of the product. I'll try to explain better :
I want to be able to disable these tasks in the local interface of the product in a LAN policy then user cannot execute them at all (no useless network resources consumption caused by the update task, no useless scan executed)
But I want users to be able to launch manually (or in a scheduled way) these tasks when they are on the mobile policy.

ccasper

If you could add an option to cap KAV CPU usage at an admin defined level, it would be exceptually useful. Or even better, if it'd be possible to define a way to automatically pause a scan while a user is working, and continue after X minutes of inactivity.


Like most folks, I have the scheduled scans set to run at night. Unfortunately, we have staff on multiple shifts covering 24/7. So our night shift personnel routinely complain about the machines running slow. We don't really have the option of running scans during the day because of the performance hit we'd take.
qtester
QUOTE(ccasper @ 6.05.2008 09:38) *
If you could add an option to cap KAV CPU usage at an admin defined level, it would be exceptually useful. Or even better, if it'd be possible to define a way to automatically pause a scan while a user is working, and continue after X minutes of inactivity.
Like most folks, I have the scheduled scans set to run at night. Unfortunately, we have staff on multiple shifts covering 24/7. So our night shift personnel routinely complain about the machines running slow. We don't really have the option of running scans during the day because of the performance hit we'd take.


It is interesting suggestion, but WKS allready have similar functionality in settings of any Scan Task "[Customize...]\Aditional\ Advanced Options: Concede resources to other application".
If this option not helpfull for you, then describe please your computer configuration on witch problem occur.
strafelife
QUOTE(kulaga @ 24.04.2008 03:25) *
1. If you know any important bugs in the AdminKit, please post it here. We'll investigate the scenario and try to find the solution. Right now I'm not aware of any serious bugs in the AdminKit 6.0.1591.



Minor bug: Kaspersky Security for Exchange License report within the Admin Kit reports only a single license being used.

Major Annoyance: Removing a workstation doesn't seem to "forget" the previous state when re-adding a workstation with the same name. The Admin kit also sees a workstation with the same name and adds a ~ with a number. This doesn't make any sense. Right-click, delete workstation, and forget it ever existed.

Minor Annoyance (de-clutter interface): Simplify the Admin Kit interface - please. Remove all redundant selections. The multi-layered group tasks/deployment is confusing, and leads to potential overlapping. Surely there is a better way to accomplish this scalability without the nesting. Simplify/Centralize reporting (all reports, computer queries, license reports should be in one section called reports & status queries or something similar).

thanks!
kulaga
QUOTE(strafelife @ 21.05.2008 23:01) *
Major Annoyance: Removing a workstation doesn't seem to "forget" the previous state when re-adding a workstation with the same name. The Admin kit also sees a workstation with the same name and adds a ~ with a number. This doesn't make any sense. Right-click, delete workstation, and forget it ever existed.


When you remove a workstation from the administration group it is moved into 'Network' folder. This is done intentionally by the following reasons:

1) To keep history of events for the computer for some time.
2) In most cases computer will be found again by network scan.

To remove computer completely, you need to delete it from the 'Network' folder.
andkaz
QUOTE(strafelife @ 21.05.2008 23:01) *
Major Annoyance: Removing a workstation doesn't seem to "forget" the previous state when re-adding a workstation with the same name. The Admin kit also sees a workstation with the same name and adds a ~ with a number. This doesn't make any sense. Right-click, delete workstation, and forget it ever existed.



Typical reasons for such behaviour are:
1. Invalid reverse name resolution when for some ip address wrong DNS (or NetBIOS) name is returned -- we added some filtering in AK 7.
2. Computer account with name X is registered in several domains, in this came unique display name will be formed by adding ~<number>.

Please, unpack archive attached on the computer where Administration Kit is installed and run start.cmd, resulting XML-files send to me as a personal message. We'll try to determine the reason.
cweeklund
How about a setting between locked and unlocked like in the admin kit - specifically for the trusted zone?

Specifically if I lock the Policy for exceptions in Trusted Zone (in order to apply my global setting), local users cannot add their own applications.
MrRAlan
1) The ability to modify local tasks from the admin kit of more than one client at a time. I.E., select as many as you want and right-click and select Tasks.
2) The run-mode "Automatically" be available from the admin kit. Both on the admin kit tasks and the local tasks.
3) Install the latest "Signature" updates at the time of Anti-Virus install.
4) Do NOT require a full computer scan after each install.
5) Add "Concede resourcses to other applications" for the Update tasks.
andkaz
QUOTE(MrRAlan @ 3.06.2008 20:20) *
1) The ability to modify local tasks from the admin kit of more than one client at a time. I.E., select as many as you want and right-click and select Tasks.


There are group/global tasks. Why do you need to modify several local tasks ?
MrRAlan
QUOTE(andkaz @ 3.06.2008 12:27) *
There are group/global tasks. Why do you need to modify several local tasks ?

We only run local tasks in our environment because there isn't an option that will run ONLY admin kit tasks when connected to the network. Both admin kit and local tasks run and that is redundant. We tried the option to disable "local tasks" but then a user cannot even manually update if they want, which is not ideal. So, we only run local tasks.

If I want to change the time a scan runs...or when an update takes place, I have to go to each computer to modify it which is very time consuming. The ability to select all computers and modify the tasks would help a great deal.
cweeklund
QUOTE(cweeklund @ 2.06.2008 12:55) *
How about a setting between locked and unlocked like in the admin kit - specifically for the trusted zone?

Specifically if I lock the Policy for exceptions in Trusted Zone (in order to apply my global setting), local users cannot add their own applications.


See this thread for more of what I'm requesting: http://forum.kaspersky.com/index.php?showtopic=64632
Jacek
My requests:
1. KAV: reduce CPU usage during update! (it is horrible I can't do nothing during this process and all applications freeze).
2. KAK: ability to restart workstation remotely if there is pending restart after component update (in my company workstations are on 24/7 and to complete update I have to check in KAK eventlog which of them requires restart, logon each of them and manually restart). Or maybe option "restart automatically workstation! not server, when there is no user logged on at eg. 2am. It would be even better.
3. KAK/AV/NA: allow update AV/NA with different language. Last year I have installed polish version of NetAgent and AV. I had to uninstall manually AV and NA, then again install english version of these packages. The message during update was similar to: there is another version installed. You have to remove it before you can continue.
4. KAV: if KAV is password protected (enforced by policy), I can only shutdown application from workstation. I cannot pause it - application completely ignores request.
Tybilly
QUOTE(Jacek @ 10.06.2008 21:14) *
4. KAV: if KAV is password protected (enforced by policy), I can only shutdown application from workstation. I cannot pause it - application completely ignores request.


In most of cases that's because you've locked the option "Enable protection" in your policy, this setting overides the possibility to disable protection with a password.
Tiago Capoano
ay.gif Suggestion for ADM KIT 7.0.: Possibility to export reports to other formats... like CSV, DOC, PDF ...
TMike
1.) Self-Defense - ability to add exclusions/trusted apps to policy in AdminKit, similar to Trusted zone
2.) Self-Defense event messages - in addition to #1, show the actual process name and id rather than only the id, for adding to exclusions.
3.) Anti-Banner - Blacklist and Whitelist sites in policy from AdminKit
4.) AdminKit - ability to add additional 1st level groups for assigning single policy's to subgroups.
5.) AdminKit - ability to view which user is logged into the workstation. Symantec had this in their console, which made it easier to identify workstations.

Will post more later if I think of any.

Thanks
Tiago Capoano
Anti-Spam.: Possibility to configure DNSBL services and check SPF records in AntiSpam policy.
tlara@oasisnet.net
Hello there,


I was wondering when the beta version will be available for Kaspersky Anti-Virus for Windows Workstations and for Windows Server v6.0.4.x?

Currently we are at v6.0.3.837 and i am having some problems with it running really slow on some computers. So much that i can't install all of the components for it. I am only able to install File virus scanning a few others.

Thanks!
kulaga
QUOTE(TMike @ 14.06.2008 01:27) *
4.) AdminKit - ability to add additional 1st level groups for assigning single policy's to subgroups.
5.) AdminKit - ability to view which user is logged into the workstation. Symantec had this in their console, which made it easier to identify workstations.

Will post more later if I think of any.

Thanks


4) What do you mean here? It is possible to create additional 1st level groups.
5) It will be added in the next version scheluded for the end of this year.
kulaga
QUOTE(Tiago Capoano @ 12.06.2008 17:41) *
ay.gif Suggestion for ADM KIT 7.0.: Possibility to export reports to other formats... like CSV, DOC, PDF ...


It will be added.
TMike
QUOTE(kulaga @ 19.06.2008 09:36) *
4) What do you mean here? It is possible to create additional 1st level groups.


For instance, if you expand Administration Server (name), below you see "Groups". Within that "Groups" folder, you have sub-groups that are all managed by the "Groups" policies.

It would be nice to be able to create another "Groups" to manage other sub-groups. This way you can have GroupsA with, let's say 3 sub-groups, all being managed by the inherited policies of from "GroupsA". Then you can create "GroupsB" with 3 more sub-groups all inheriting the "GroupsB" policies. I don't see an option for this right now, so if it is available, please let me know how to do it.

Make sense?

edit: Nevermind, i see where you're referring to. Under Groups, you have sub-groups. Within those subgroups you can create additional subgroups. Thanks

QUOTE(kulaga @ 19.06.2008 09:36) *
5) It will be added in the next version scheluded for the end of this year.


Great to hear!
Steve Burkett
Whats the scheduled release month for MP4? In the mean time, can we have a refreshed 6.0.837 package with the latest updates already included? It's a right pain to have to reboot the machine after installation, then run the updater, then reboot again, then run the updater again.


AviE
Hi,

* Reduce CPU usage in full scan - because the computers are very slow when full scan task runs, i've disabled the full task scan. (my users are mobiles so i can't schedule it to night hours).
* Reduce CPU usage in update tasks - i have at least one Vista that freezes at update task. (both from the adminkit and web).
* Reduce the number of restarts required after a new installation.
* Ability to restart a client after installation from the adminkit.
* Add ability to resume a paused protection after a specific time - because all my clients are developers, i gave them the ability to pause the protection and they have the option when to restore the protection, if i could set through the adminkit the period that after that the client will resume the protection automaticly. (better to give thae ability to warn them before that or give them another chance to resume protection).
* Change or add colors to the workstations status in the adminkit, now its red or green, but since i'm disabled the the full scan task, computer that are marked as "full scan wasn't run for a long time" are merked also in red, and i can't see in a glance a realy dangerous status of a client (they all red) - i suggest or to leave those clients in green or even better mark them in yellow.
* when i lock a setting its status (enable/disable) is shown in gray on the client (that's OK) but if i unlock a setting it's status is taken from somewhere instead of the settings in the policy.
i mean that if for example i've unlock the proactive defense setting but cleared it (status disabled) it still enabled on th client, the client can of course disable it cause its unlocked but i want that setting to get its status from the adminkit even when its unlocked.

Thank you very much
kulaga
QUOTE(Steve Burkett @ 20.06.2008 17:41) *
Whats the scheduled release month for MP4? In the mean time, can we have a refreshed 6.0.837 package with the latest updates already included? It's a right pain to have to reboot the machine after installation, then run the updater, then reboot again, then run the updater again.


New major version of KAV for WKS is scheduled for December, 2008. The possibility to deploy package with updated databases will be included in that release.
kulaga
QUOTE(AviE @ 26.06.2008 17:28) *
Hi,

* Change or add colors to the workstations status in the adminkit, now its red or green, but since i'm disabled the the full scan task, computer that are marked as "full scan wasn't run for a long time" are merked also in red, and i can't see in a glance a realy dangerous status of a client (they all red) - i suggest or to leave those clients in green or even better mark them in yellow.


You can configure all workstation status criteria in the administration group properties.


QUOTE(AviE @ 26.06.2008 17:28) *
Hi,

* Reduce the number of restarts required after a new installation.
* Ability to restart a client after installation from the adminkit.
* when i lock a setting its status (enable/disable) is shown in gray on the client (that's OK) but if i unlock a setting it's status is taken from somewhere instead of the settings in the policy.
i mean that if for example i've unlock the proactive defense setting but cleared it (status disabled) it still enabled on th client, the client can of course disable it cause its unlocked but i want that setting to get its status from the adminkit even when its unlocked.

Thank you very much


This will be done in next major release scheduled for December 2008.
Tiago Capoano
QUOTE(AviE @ 26.06.2008 16:28) *
* Reduce CPU usage in full scan - because the computers are very slow when full scan task runs, i've disabled the full task scan. (my users are mobiles so i can't schedule it to night hours).


Or able to set this parameter in scan options.
Ex.: Use __% of CPU/processor capacity. happy.gif
aryzzaa
I have a special request for KAV WKS MP4+Adminkit 7

1. Manual installation for company without Domain Control (only workgroups),if Trend Micro,they based on web so client just open the website than install the programs (AV including agent) only one click to direct to AV Server.I hope Kaspersky Adminkit will have these tools so all users can deploy easily.

2. URL blocker/content filtering
3.Sandbox
4.Support for Lotus Notes Mail for clients

Regards,


kulaga
QUOTE(aryzzaa @ 7.07.2008 11:09) *
I have a special request for KAV WKS MP4+Adminkit 7

1. Manual installation for company without Domain Control (only workgroups),if Trend Micro,they based on web so client just open the website than install the programs (AV including agent) only one click to direct to AV Server.I hope Kaspersky Adminkit will have these tools so all users can deploy easily.


In the next version of AdminKit it will be possible to create single executable file that will include all required products for installation and install the products in silent mode. The file can be placed on shared folder or on Web server so that end-users having administrator's rights will be able to start the installer by using link (for example, sent by e-mail).
aryzzaa
Hello,

I forgot something about a BUG in my Kaspersky for workstation 6.0.3.837..somehow my PC infected by worm which it can change windows time system and infecting system when Kaspersky suddenly turn off (caused the date & time system changed to the old date in year 2002).

Is any updates for this issue?How to terminate this worm?Need the soonest reply,thx

Regards,


QUOTE(kulaga @ 8.07.2008 17:57) *
In the next version of AdminKit it will be possible to create single executable file that will include all required products for installation and install the products in silent mode. The file can be placed on shared folder or on Web server so that end-users having administrator's rights will be able to start the installer by using link (for example, sent by e-mail).

MrRAlan
I have a few computers with the "do not disconnect from administration server" checked. I'd like to have an easy way to identify which computers those are. Perhaps, the computer icon can be slightly different or there can be a report to show all computers with this checked.
zysset
Hi all

I have the following feature request:

If the option "Disable scheduled scan while running on battery power" is enabled all scheduled tasks are disabled. it would be nice if it is possible to divide this option for scheduled scans and updates...

Greetz
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.