<?xml version="1.0"?>
<rss version="2.0"><channel><title>Kaspersky Hybrid Cloud Security</title><link>https://forum.kaspersky.com/blogs/blog/12-kaspersky-hybrid-cloud-security/</link><description></description><language>en</language><item><title>KSV AL 6.1 error in VIIS console: "No NSX policy using Kaspersky File Antimalware Protection service exists." [KSV Agentless]</title><link>https://forum.kaspersky.com/blogs/entry/329-ksv-al-61-error-in-viis-console-no-nsx-policy-using-kaspersky-file-antimalware-protection-service-exists-ksv-agentless/</link><description><![CDATA[<p>
	<span style="font-size:14px;">This error may be caused by non-Latin characters in the policy name.</span>
</p>

<p>
	<span style="font-size:14px;">To fix this issue, check existing policy and place it with a new one, if it has non-Latin characters in its name:</span>
</p>

<p>
	<span style="font-size:14px;">1. In the NSX web console: Navigate to Security → Endpoint Protection Policies.</span>
</p>

<p>
	<span style="font-size:14px;">2. Delete the existing policy with Non-Latin characters in its name.</span>
</p>

<p>
	<span style="font-size:14px;">3. Create a new policy using English-only naming conventions.</span>
</p>
]]></description><guid isPermaLink="false">329</guid><pubDate>Mon, 28 Jul 2025 12:48:56 +0000</pubDate></item><item><title>Error "Failed to get IP addressees for connecting to SVM" during SVM deployment [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/318-error-failed-to-get-ip-addressees-for-connecting-to-svm-during-svm-deployment-ksv-light-agent/</link><description><![CDATA[<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Problem
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Error <strong><code>Failed to get IP addresses for connecting to SVM</code></strong> appears during SVM deployment.
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="16722" href="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.fe59eb04fac18296578f0e8e89380f24.png" rel=""><img alt="image.thumb.png.cfab82652629c2a0df883f57e1697159.png" class="ipsImage ipsImage_thumbnailed" data-fileid="16722" data-ratio="24.40" style="height:auto;" width="500" data-src="https://forum.kaspersky.com/uploads/monthly_2024_01/image.thumb.png.cfab82652629c2a0df883f57e1697159.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Solution
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	To troubleshoot this problem, you need to follow our step-by-step guide:
</p>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>I. Disable SVM rollback</strong>
</h3>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to<span> </span><code><strong>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIIS Console\</strong></code><span> </span>for KSV LA 5.1 or to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIISLA Console</code></strong><span> </span>for KSV LA 5.2
	</li>
	<li>
		Edit the<span> </span><code><strong>Kaspersky.VIISConsole.UI.exe.config</strong></code><span> </span>file
	</li>
	<li>
		Uncomment<span> </span><strong><code>&lt;!--&lt;add key="disableRollback" value="1" /&gt;--&gt;</code></strong><span> </span>(delete &lt;!-- and--&gt;)
	</li>
	<li>
		Save changes
	</li>
</ul>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>II. Enable VIIS traces</strong>
</h3>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to<span> </span><code><strong>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIIS\</strong></code><span> </span>for KSV LA 5.1 or to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIISLA</code></strong><span> </span>for KSV LA 5.2
	</li>
	<li>
		Open<span> </span><strong><code>NLog.config</code></strong><span> </span>file in a text editor
	</li>
	<li>
		<span>Find the line<span> </span></span><strong><code><span>&lt;logger name="*" minlevel="Info" writeTo="file"/&gt;</span></code></strong><span><span> </span>and change<span> </span></span><strong><code><span>minlevel</span></code></strong><span><span> </span>value from<span> </span></span><strong><code><span>Info</span></code></strong><span><span> </span>to<span> </span></span><strong><code><span>Trace</span></code></strong>
	</li>
	<li>
		Save changes
	</li>
</ul>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>III. Enable extended logging of deployment wizard</strong>
</h3>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIIS Console\ </code></strong>for KSV LA 5.1 or to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIISLA Console</code></strong><span> </span>for KSV LA 5.2
	</li>
	<li>
		Open<span> </span><strong><code>NLog.config</code></strong><span> </span>file in a text editor 
	</li>
	<li>
		Find the line<span> </span><strong><code>&lt;logger name="Kaspersky.Virtualization*" minlevel="Info" writeTo="DeployWizardLog" final="true"/&gt;</code></strong><span> </span>and change<span> </span><strong><code>minlevel</code></strong><span> </span>value from<span> </span><strong><code>Info</code></strong><span> </span>to <strong>Trace</strong> for KSV LA 5.1 and<span> </span><code><strong>&lt;logger name="DeployWizardFileLogger" minlevel="trace" writeTo="DeployWizardLog" final="true"/&gt;</strong></code> and change<span> </span><strong><code>minlevel</code></strong><span> </span>value from<span> </span><strong><code>off</code></strong><span> </span>to<span> </span><strong><code>Trace<span> </span></code></strong>for KSV LA 5.2
	</li>
	<li>
		Save changes
	</li>
</ul>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>IV. Start troubleshooting</strong>
</h3>

<ol style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Start SVM deploying wizard and don’t forget to enable option<span> </span><strong><code>Allow remote access via SSH for root account</code></strong>.
	</li>
	<li>
		Wait for the error and then, make sure that deployment wizard skipped rollback step.
	</li>
	<li>
		Disable all traces returning to the previous values.
	</li>
	<li>
		Connect to SVM directly, using hypervisor.
	</li>
	<li>
		<p style="padding:0px;">
			Login to SVM OS under the<span> </span><strong><code>root</code></strong><span> </span>account, using default password <strong><code>7czWtTKhCgrvEYBHb3rE</code></strong>
		</p>

		<div style="border:1px solid #ffeaae;color:#333333;padding:10px 10px 10px 36px;">
			<div style="padding:0px;">
				This password can be applied only during troubleshooting process with disabling SVM rollback and it wouldn't work with normally deployed SVMs.
			</div>
		</div>
	</li>
	<li>
		<span>Use command<span> </span><strong><code>ifconfig</code></strong> to check if the SVM received network adapter settings, specified at the beginning of installation.</span>
	</li>
	<li>
		Try to establish connection by SSH from KSC (where VIIS installed) to the SVM. If SSH connection fails, then there are no issues with Kaspersky product. You should configure the environment according to our system requirements. Especially, at the side of ports accessibility. <u><a href="https://help.kaspersky.com/KSVLA/5.1/en-US/133882.htm" rel="external nofollow" style="color:#265951;">Configuring ports used by the application</a></u>
	</li>
	<li>
		<p style="padding:0px;">
			If the SSH connection established successfully, please collect the following data and send it to Kaspersky Support: 
		</p>

		<div style="border:1px solid #aab8c6;color:#333333;padding:10px 10px 10px 36px;">
			<p style="padding:0px;">
				Data to be collected
			</p>

			<div style="padding:0px;">
				<ul>
					<li>
						Screenshot of network settings that has been applied to the SVM
					</li>
					<li>
						VIIS log from -<span> </span><code><strong>C:\ProgramData\Kaspersky Lab\VIIS\logs for LA 5.1 and C:\ProgramData\Kaspersky Lab\VIISLA\logs\ for LA 5.2</strong></code>
					</li>
					<li>
						Deployment wizard detailed log from -<strong><code><span> </span>C:\Users\&lt;Account&gt;\AppData\Local\Kaspersky_Lab\ViisConsole for LA 5.1 and  C:\Users\&lt;Account&gt;\AppData\Local\Kaspersky Lab\Kaspersky VIISLA Console\logs\ for LA 5.2</code></strong>
					</li>
					<li>
						<strong><code>/var/log/</code></strong><span> </span>– from SVM
					</li>
					<li>
						<strong><code>/var/opt/</code></strong>– from SVM
					</li>
				</ul>
			</div>
		</div>
	</li>
</ol>
]]></description><guid isPermaLink="false">318</guid><pubDate>Mon, 28 Jul 2025 12:43:13 +0000</pubDate></item><item><title>Network security assessment tools detect vulnerabilities in SVMs [KSV]</title><link>https://forum.kaspersky.com/blogs/entry/292-network-security-assessment-tools-detect-vulnerabilities-in-svms-ksv/</link><description><![CDATA[<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	<span style="color:#339966;">Problem Description, Symptoms &amp; Impact</span>
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<span style="color:#3b3b3b;">Network security assessment tools detect multiple vulnerabilities in the SVMs.</span>
</p>

<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	<span style="color:#339966;">Workaround &amp; Solution</span>
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<span style="color:#3b3b3b;">Below is a list of detected vulnerabilities and solutions or reasons why it can't be fixed.</span>
</p>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	Open ports
</h3>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	SVMs have ports 22 and 80 open for communication with the Deployment Wizard and providing updates to Light Agents respectively. They are hardcoded, and therefore can't be changed or closed without at least partially breaking functionality of the product.
</p>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	Browsable Web Directories
</h3>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	SVMs use them to share updates with Light Agents, and Light Agents need to be able to check for updates. This is not a problem as there are only read-only Light Agent updates available there.
</p>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	Weak SSH encryption
</h3>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	By default SVMs use weak ssh key exchange algorithms. To fix that without losing ability to configure the SVM via Deployment Wizard, add the following in<code><strong><span> </span>/etc/ssh/sshd_config<span> </span></strong></code>on SVMs:
</p>

<div style="background-color:#ffffff;border:1px solid #dfe1e5;color:#333333;font-size:14px;padding:0px;">
	<div style="color:#333333;font-size:14px;padding:0px;text-align:left;">
		<div style="padding:0px;">
			<div style="background-color:#ffffff;font-size:1em;padding:0px;">
				<table border="0" cellpadding="0" cellspacing="0" style="border:0px;font-size:14px;padding:0px;text-align:left;vertical-align:baseline;">
					<tbody style="border:0px;font-size:14px;padding:0px;text-align:left;vertical-align:baseline;">
						<tr style="border:0px;font-size:14px;padding:0px;text-align:left;vertical-align:baseline;">
							<td style="border:0px;font-size:14px;padding:0px 0px 0px 15px;text-align:left;vertical-align:baseline;">
								<div style="border:0px;font-size:14px;padding:0px 0px 15px 0em;text-align:left;vertical-align:baseline;" title="Hint: double-click to select code">
									<div style="border:0px;font-size:14px;padding:0px 1em 0px 0em;text-align:left;vertical-align:baseline;">
										<code style="border:0px;color:#000000;font-size:14px;padding:0px;text-align:left;vertical-align:baseline;">KexAlgorithms diffie-hellman-group-exchange-sha256</code>
									</div>
								</div>
							</td>
						</tr>
					</tbody>
				</table>
			</div>
		</div>
	</div>
</div>
]]></description><guid isPermaLink="false">292</guid><pubDate>Mon, 28 Jul 2025 12:33:18 +0000</pubDate></item><item><title>How to install a patch on multiple SVMs at once [KSV]</title><link>https://forum.kaspersky.com/blogs/entry/287-how-to-install-a-patch-on-multiple-svms-at-once-ksv/</link><description><![CDATA[<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	<span style="color:#339966;">Description and cautions</span>
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<span style="color:#3b3b3b;">This article describes how to install a patch on multiple SVMs at once via Kaspersky Security Center.</span>
</p>

<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	<span style="color:#339966;">Details</span>
</h2>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Create an installation package from a<span> </span><code>.kud</code><span> </span>file included with the patch

		<ul>
			<li>
				<strong>Advanced</strong><span> </span>→<span> </span><strong>Remote installation</strong><span> </span>→<span> </span><strong>Installation packages</strong><span> </span>→<span> </span><strong>Create installation package</strong><br />
				<a data-fileid="16725" href="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.780c15442da179c5524501cfb6ad0af8.png" title="Увеличить изображение" data-fileext="png" rel=""><img alt="image.png.780c15442da179c5524501cfb6ad0af8.png" class="ipsImage ipsImage_thumbnailed" data-fileid="16725" data-ratio="57.17" style="height:auto;" width="481" data-src="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.780c15442da179c5524501cfb6ad0af8.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
			</li>
			<li>
				Choose<span> </span><strong>Create an installation package for a Kaspersky application</strong>
			</li>
			<li>
				Choose a name for the package
			</li>
			<li>
				Select the<span> </span><code>.kud</code><span> </span>file in the file picker
			</li>
		</ul>
	</li>
	<li>
		Create a remote installation task for that package
		<ul>
			<li>
				Select the installation package →<span> </span><strong>Install application</strong><br />
				<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="16726" href="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.71cf5358aba01c702e70f25989749a60.png" rel=""><img alt="image.thumb.png.20dcac7be6ad8a1133ed2ea5b27b8612.png" class="ipsImage ipsImage_thumbnailed" data-fileid="16726" data-ratio="46.80" style="height:auto;" width="500" data-src="https://forum.kaspersky.com/uploads/monthly_2024_01/image.thumb.png.20dcac7be6ad8a1133ed2ea5b27b8612.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
			</li>
			<li>
				If there is a separate group for SVMs, choose<span> </span><strong>Install on a group of managed devices</strong>, otherwise choose<span> </span><strong>Select devices for installation</strong>
			</li>
			<li>
				Select the administration group/devices to install the patch on
			</li>
			<li>
				Use default installation settings
			</li>
			<li>
				Choose<span> </span><strong>Do not place license key in installation package</strong>
			</li>
			<li>
				Choose<span> </span><strong>No account required</strong>
			</li>
			<li>
				Start patch installation
			</li>
		</ul>
	</li>
</ul>
]]></description><guid isPermaLink="false">287</guid><pubDate>Mon, 28 Jul 2025 12:32:07 +0000</pubDate></item><item><title>Group On-Demand Scan Task of Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2 might detect infected object(-s) but it might not be deleted [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/270-group-on-demand-scan-task-of-windows-kaspersky-light-agent-52linux-kaspersky-light-agent-52-might-detect-infected-object-s-but-it-might-not-be-deleted-ksv-light-agent/</link><description><![CDATA[<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Problem:</strong>
</p>

<ol style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Create Group On Demand Scan Task of Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2
	</li>
	<li>
		Launch Group On Demand Scan Task
	</li>
</ol>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Group On Demand Scan Task of Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2 might detect infected object, but might not delete it.
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Solution: </strong>
</p>

<ol style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Delete created Group On Demand Scan Task of Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2
	</li>
	<li>
		Delete all created Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2 Policies
	</li>
	<li>
		Add registry key on Kaspersky Administration Server
		<ol>
			<li>
				<strong><a href="https://box.kaspersky.com/d/004e49113f224c849c7e/" rel="external nofollow">5_2_ksc_win_x86_fix.reg</a></strong> if Kaspersky Administration Server is installed on x86 operation system
			</li>
			<li>
				<strong><a href="https://box.kaspersky.com/d/004e49113f224c849c7e/" rel="external nofollow">5_2_ksc_win_x64_fix.reg</a></strong> if Kaspersky Administration Server is installed on x64 operation system
			</li>
		</ol>
	</li>
	<li>
		Create Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2 Policies anew.
	</li>
	<li>
		Create Group On Demand Scan Task of Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2
	</li>
	<li>
		Launch Group On Demand Scan Task of Windows Kaspersky Light Agent 5.2/Linux Kaspersky Light Agent 5.2
	</li>
</ol>
]]></description><guid isPermaLink="false">270</guid><pubDate>Mon, 28 Jul 2025 12:24:26 +0000</pubDate></item><item><title><![CDATA[AntiVirus and Network Attack service profile creation might fail with the error "Service Definition id <ID> <Kaspersky Component> not found in MP [KSV Agentless]]]></title><link>https://forum.kaspersky.com/blogs/entry/244-antivirus-and-network-attack-service-profile-creation-might-fail-with-the-error-service-definition-id-not-found-in-mp-ksv-agentless/</link><description><![CDATA[<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Prerequisetes: 
</h2>

<p style="padding:0px;">
	Supported vSphere by Kaspersky Agentless solution<br />
	Usage of NSX version 3.2+<br />
	Deployed Kaspersky Agentless 6.1 Antivirus or/and Network Attack Blocker Appliance
</p>

<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Problem
</h2>

<p style="padding:0px;">
	Anew registration and Kaspersky Agentless 6.1 Antivirus or/and Network Attack Blocker Appliance deployment completes successfully.<br />
	By attempt to create Service Profile for Kaspersky Agentless 6.1 Antivirus or/and Network Attack Blocker fails with error<br />
	<strong>AntiVirus and Network Attack service registration might fail with the error "Service Definition id &lt;ID&gt; &lt;Kaspersky Component&gt; not found in MP</strong>
</p>

<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="15224" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.efe30cbe6f1fd17b7eb02699117ca282.png" rel=""><img alt="image.thumb.png.f728fe0d0f85fc965db164d43041c6ae.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15224" data-ratio="54.57" style="height:auto;" width="700" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.thumb.png.f728fe0d0f85fc965db164d43041c6ae.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a><br />
	<br />
	Root cause
</h2>

<p style="padding:0px;">
	NSX-T does not delete service references of Kaspersky Agentless 6.1 Antivirus or/and Network Attack Blocker Appliance
</p>

<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Solution
</h2>

<ul>
	<li>
		Through terminal like putty you need access to NSX-T appliacnce and launch the command 
	</li>
</ul>

<p style="padding:0px;">
	<span style="color:#000000;"><strong>           curl  -kG https://admin:&lt;PASSWORD&gt;@&lt;nsx-t address&gt;/policy/api/v1/infra/service-references</strong></span>
</p>

<p style="padding:0px;">
	<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="15225" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.46bc4848f2796e4357d14cba894101f3.png" rel=""><img alt="image.thumb.png.b527e26ce127bf1e54eb9690e4d0d4ef.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15225" data-ratio="54.57" style="height:auto;" width="700" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.thumb.png.b527e26ce127bf1e54eb9690e4d0d4ef.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<p style="padding:0px;">
	The path value should be remembered for Kaspersky File Antimalware Protection and for Kaspersky Network Protection
</p>

<ul>
	<li>
		Delete service reference by path value by launching the command
	</li>
</ul>

<p style="padding:0px;">
	<span style="color:#333333;">         <span> </span><span style="color:#000000;"><strong>curl -kX DELETE<span> </span><span>https://admin:&lt;PASSWORD&gt;@&lt;nsx-t address&gt;/policy/api/v1/&lt;value of path&gt;</span></strong></span></span>
</p>

<p style="padding:0px;">
	<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="15226" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.9e1d62ede3b38a4e535fefa1ea6c6405.png" rel=""><img alt="image.thumb.png.10912cfa25c7c9e386d63e84a385d21f.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15226" data-ratio="10.86" style="height:auto;" width="700" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.thumb.png.10912cfa25c7c9e386d63e84a385d21f.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<ul>
	<li>
		After it delete previously created profile service for Kaspersky Agentless 6.1 Antivirus or/and Network Attack Blocker and create it anew
	</li>
</ul>
]]></description><guid isPermaLink="false">244</guid><pubDate>Mon, 28 Jul 2025 12:15:46 +0000</pubDate></item><item><title>KSV AL 6.1 unexpectedly starts to be unavailable in Kaspersky Security Center [KSV Agentless]</title><link>https://forum.kaspersky.com/blogs/entry/243-ksv-al-61-unexpectedly-starts-to-be-unavailable-in-kaspersky-security-center-ksv-agentless/</link><description><![CDATA[<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Problem Description
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Unexpectedly it can be observed that KSV AL 6.1 starts to be unavailable in Kaspersky Security Center as shown on the screenshot.
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<a data-fileid="15222" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.fb29b7c74ce154e7ea81c1a964c769b9.png" title="Увеличить изображение" data-fileext="png" rel=""><img alt="image.png.fb29b7c74ce154e7ea81c1a964c769b9.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15222" data-ratio="6.04" style="height:auto;" width="530" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.fb29b7c74ce154e7ea81c1a964c769b9.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<h1 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:24px;padding:0px;">
	Root cause
</h1>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	The most probable cause of this issue is expired Kaspersky Security Certificate and new generated one is not transferred to KSV AL 6.1. 
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	KSV AL 6.1 does not have functionality to automatically update certificate from Kaspersky Security Center.
</p>

<h1 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:24px;padding:0px;">
	Workaround
</h1>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	The script klmover should be launched on KSV AL 6.1 to reconnect to the Kaspersky Security Center. This script performs some steps, including a certificate update. 
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	The script resides in /opt/kaspersky/klnagent64/bin.
</p>
]]></description><guid isPermaLink="false">243</guid><pubDate>Mon, 28 Jul 2025 12:10:34 +0000</pubDate></item><item><title>KSV AL 6.1: There is VMware vulnerability VMSA-2022-0002 by vendors KB. IT is requested to disable all mounted ISO files. [KSV Agentless]</title><link>https://forum.kaspersky.com/blogs/entry/236-ksv-al-61-there-is-vmware-vulnerability-vmsa-2022-0002-by-vendors-kb-it-is-requested-to-disable-all-mounted-iso-files-ksv-agentless/</link><description><![CDATA[<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	To achieve this goal for Kaspersky Agentless 6.1 solution you should:
</p>

<ol style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Shutdown Kaspersky Agentless Appliance
	</li>
	<li>
		Disable the option<span> </span><span>"Сonfigure/vApp Options/edit/OVF Details/OVF environment transport/ISO image" for Kaspersky Agentless Appliance</span>
	</li>
	<li>
		<span>Launch Kaspersky Agentless Appliance</span>
	</li>
</ol>
]]></description><guid isPermaLink="false">236</guid><pubDate>Mon, 28 Jul 2025 12:08:55 +0000</pubDate></item><item><title>No VASA Provider for schema namespace (VSAN) found [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/225-no-vasa-provider-for-schema-namespace-vsan-found-ksv-light-agent/</link><description><![CDATA[<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Problem:</strong>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	When deploy the SVM of KSV LA on the vSphere 6.5, the following error may occur:
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="16721" href="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.bc91198a3b4c6050d5187eb9be3f2c00.png" rel=""><img alt="image.thumb.png.d28a51a63d64d948e72693e8401e3443.png" class="ipsImage ipsImage_thumbnailed" data-fileid="16721" data-ratio="56.40" style="height:auto;" width="500" data-src="https://forum.kaspersky.com/uploads/monthly_2024_01/image.thumb.png.d28a51a63d64d948e72693e8401e3443.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Reason</strong><strong>：</strong>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	This issue occurs because vCenter Server cannot detect any vSAN storage provider. There is no way to detect vSAN storage provider if no hosts are available when vCenter Server starts.
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<em>Note: vSAN storage provider cannot be recognized automatically even after host start working properly.</em>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Workaround:</strong>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	This is a known issue affecting vCenter Server.
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	To workaround this issue, you have the following options:
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	1. Initiate synchronizing vSAN storage provider by clicking icon for synchronization in the page:
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>vCenter Server -&gt; Configure -&gt; Storage Providers</strong>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	2. Make sure at least one host is working when starting vCenter Server.
</p>
]]></description><guid isPermaLink="false">225</guid><pubDate>Mon, 28 Jul 2025 12:06:18 +0000</pubDate></item><item><title>New possibilities to add exclusions from protection against external encryption [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/191-new-possibilities-to-add-exclusions-from-protection-against-external-encryption-ksv-light-agent/</link><description><![CDATA[<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Officially exclusions from protection against external encryption are written on this page<span> </span><a href="https://support.kaspersky.com/KSVLA/5.2/en-US/175626.htm" rel="external nofollow" style="color:#265951;">https://support.kaspersky.com/KSVLA/5.2/en-US/175626.htm</a>
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Starting from 07/06/2022 it is possible to add exclusions from protection against external encryption using "Exclusions" tab under "Exclusions and trusted applications" settings. 
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Steps: </strong>
</p>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to "Exclusions and trusted applications" settings and move to "Exclusions" tab
	</li>
	<li>
		Add folder/filename (masks are supported) specifying SystemWatcher application component.
	</li>
	<li>
		Apply the policy 
	</li>
</ul>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	The tested exclusions: 
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	&lt;Drive&gt;:\&lt;Folder&gt;\
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	&lt;Drive&gt;:\&lt;Folder&gt;\*.enc
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	&lt;Drive&gt;:\&lt;Folder&gt;\*\*.enc
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<strong>Example:</strong>
</p>

<div style="border-bottom:solid #ededed;color:#172b4d;font-size:14px;padding:0px;">
	<div style="padding:0px 1rem 1rem 2.5rem;">
		<p style="padding:0px;">
			<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="16727" href="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.8b58fd4038df052ef2c147b20ae46b0a.png" rel=""><img alt="image.thumb.png.d49c09062485ab2b3905fd9b149f4391.png" class="ipsImage ipsImage_thumbnailed" data-fileid="16727" data-ratio="100.00" style="height:auto;" width="500" data-src="https://forum.kaspersky.com/uploads/monthly_2024_01/image.thumb.png.d49c09062485ab2b3905fd9b149f4391.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
		</p>
	</div>
</div>
]]></description><guid isPermaLink="false">191</guid><pubDate>Mon, 28 Jul 2025 11:58:10 +0000</pubDate></item><item><title>How to change SNMP community name and move into protocol SNMPv3 [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/180-how-to-change-snmp-community-name-and-move-into-protocol-snmpv3-ksv-light-agent/</link><description><![CDATA[<p style="padding:0px;">
	SNMP daemon on SVM should have the following default settings:
</p>

<ul>
	<li>
		protocol version: v2c
	</li>
	<li>
		rocommunity name: public
	</li>
	<li>
		<span>listening address and port: 0.0.0.0:161</span>
	</li>
	<li>
		<span>access type: read only</span>
	</li>
	<li>
		<span>transport: UDP</span>
	</li>
	<li>
		logging: syslog
	</li>
</ul>

<p style="padding:0px;">
	The following statistics can be received from SVM:
</p>

<div style="padding:0px;">
	<table style="border-collapse:collapse;padding:0px;">
		<colgroup>
			<col />
			<col />
			<col />
			<col />
		</colgroup>
		<thead>
			<tr>
				<th style="background-color:#f4f5f7;border:1px solid #c1c7d0;color:#000000;padding:7px 10px;text-align:left;vertical-align:top;">
					#
				</th>
				<th style="background-color:#f4f5f7;border:1px solid #c1c7d0;color:#000000;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="color:#000000;padding:0px;">
						<strong><span style="color:#000000;">Description</span></strong>
					</p>
				</th>
				<th style="background-color:#f4f5f7;border:1px solid #c1c7d0;color:#000000;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="color:#000000;padding:0px;">
						<strong><span style="color:#000000;">Name</span></strong>
					</p>
				</th>
				<th style="background-color:#f4f5f7;border:1px solid #c1c7d0;color:#000000;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="color:#000000;padding:0px;">
						<strong><span style="color:#000000;">Identifier</span></strong>
					</p>
				</th>
			</tr>
		</thead>
		<tbody>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.1</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					CPU Statistics
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					UCD-SNMP-MIB::systemStats
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					 
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.2</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Memory Statistics
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					UCD-SNMP-MIB::memory
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					 
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.3</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Load average statistics
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					UCD-SNMP-MIB::laTable
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					 
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.4</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Disk statisitcs
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					HOST-RESOURCES-MIB::hrStorageTable
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					 
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.5</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Network statistics
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					IF-MIB::ifTable
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					 
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.7</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Amount of desktop VMs connected
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					KSVLA-MIB::ksvlaProtectedDesktopCount
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					1.3.6.1.4.1.23668.1491.1539.1.1
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.8</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Amount of server VMs connected
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					KSVLA-MIB::ksvlaProtectedServerCount
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					1.3.6.1.4.1.23668.1491.1539.1.0
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.9</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						ODS running status:<br />
						- in progress (if all ODS Tasks are running)<br />
						- waiting (if at least one ODS task is waiting for processing)<br />
						- none (if no ODS tasks are running/waiting at all)
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					KSVLA-MIB::ksvlaODSStatus
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					1.3.6.1.4.1.23668.1491.1539.0.0
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.10</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					ODS queue lenght: amount of VMs awaiting ODS processing
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					KSVLA-MIB::ksvlaODSQueueLenght
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					1.3.6.1.4.1.23668.1491.1539.0.1
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.11</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Amount of simualtaneously running ODS tasks
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					KSVLA-MIB::ksvlaODSTaskCount
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					1.3.6.1.4.1.23668.1491.1539.0.2
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.12</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					Current percent of an allowed physical memory consumption<br />
					- In case of watchdog is on use WDSERVER_MAX_MEM const<br />
					from ScanServerLaunch.sh as maximum <br />
					- In case of watchdog is off use 100% as maximum
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					KSVLA-MIB::ksvlaMemoryConsumption
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					1.3.6.1.4.1.23668.1491.1539.3.0
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.13</span>
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						Current percent of an allowed swap consumption<br />
						- In case of watchdog is on use WDSERVER_MAX_SWAP const <br />
						from ScanServerLaunch.sh as maximum<br />
						- In case of watchdog is off use 100% as maximum 
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						 
					</p>

					<p style="padding:0px;">
						KSVLA-MIB::ksvlaSwapConsumption
					</p>
				</td>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						 
					</p>

					<p style="padding:0px;">
						1.3.6.1.4.1.23668.1491.1539.3.1
					</p>
				</td>
			</tr>
			<tr>
				<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						<span style="color:#000000;">4.14</span>
					</p>
				</td>
				<td colspan="3" style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
					<p style="padding:0px;">
						Main processes state (running/stopped):
					</p>

					<div style="padding:0px;">
						<table style="border-collapse:collapse;">
							<tbody>
								<tr>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										-- scan server daemon                                                                                                                                                                                 
									</td>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span>KSVLA-MIB::ksvlaScanServerStatus                                                                                     </span>
										</p>
									</td>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span style="color:#000000;">1.3.6.1.4.1.23668.1491.1539.2.0</span>
										</p>
									</td>
								</tr>
								<tr>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										-- klnagent daemon
									</td>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span>KSVLA-MIB::ksvlaKlnagentStatus</span>
										</p>
									</td>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span style="color:#000000;">1.3.6.1.4.1.23668.1491.1539.2.1</span>
										</p>
									</td>
								</tr>
								<tr>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										-- nginx daemon
									</td>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span>KSVLA-MIB::ksvlaNginxStatus</span>
										</p>
									</td>
									<td style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span style="color:#000000;">1.3.6.1.4.1.23668.1491.1539.2.2</span>
										</p>
									</td>
								</tr>
								<tr>
									<td colspan="1" style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										-- watchdog
									</td>
									<td colspan="1" style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span>KSVLA-MIB::ksvlaWatchdogStatus</span>
										</p>
									</td>
									<td colspan="1" style="border:1px solid #c1c7d0;padding:7px 10px;text-align:left;vertical-align:top;">
										<p style="padding:0px;">
											<span style="color:#000000;">1.3.6.1.4.1.23668.1491.1539.2.3</span>
										</p>
									</td>
								</tr>
							</tbody>
						</table>
					</div>
				</td>
			</tr>
		</tbody>
	</table>
</div>

<p style="padding:0px;">
	 
</p>

<p style="padding:0px;">
	<strong>Change SNMP community name</strong>
</p>

<ul>
	<li>
		Edit file /etc/snmnp/snmpd.conf
	</li>
	<li>
		Change<span> </span><strong>public</strong><span><span> </span>into the string recommunity on your own</span>
	</li>
	<li>
		Save changes
	</li>
	<li>
		Restart SNMP daemon - systemctl restart snmpd
	</li>
</ul>

<p style="padding:0px;">
	<strong>Move on SNMPv3</strong>
</p>

<ul>
	<li>
		Stop SNMP daemon - systemctl stop snmpd
	</li>
	<li>
		Launch the command - net-snmp-config --create-snmpv3-user -ro -a "authpass" -x "privpass" -X AES -A SHA "user"
	</li>
</ul>

<ol>
	<li style="padding:0px;">
		           "authpass" is the private key/password for generating HMAC when connecting to snmpd, "privpass" is the private key/password for encrypting snmp traffic, "user" is the username for                snmpd. 
	</li>
	<li style="padding:0px;">
		           "authpass" and "privpass" we can say passwords, which should be generated by you own
	</li>
	<li style="padding:0px;">
		           "user" - user name for snmpd
	</li>
</ol>

<p style="padding:0px;">
	           This command will make mpdifications into two files - /etc/snmp/snmpd.conf and /var/lib/net-snmp/snmpd.conf
</p>

<ul>
	<li>
		Restart SVM
	</li>
</ul>
]]></description><guid isPermaLink="false">180</guid><pubDate>Mon, 28 Jul 2025 11:55:31 +0000</pubDate></item><item><title>"The specified path does not exist" error appears by launching any executable file [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/169-the-specified-path-does-not-exist-error-appears-by-launching-any-executable-file-ksv-light-agent/</link><description><![CDATA[<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Problem
</h2>

<p style="padding:0px;">
	Environment:
</p>

<ul>
	<li>
		Citrix Virtual Apps and Desktops (Citrix XenApp and XenDesktop) with enabled option Citrix UPL (User Personalization Layer)
	</li>
	<li>
		Citrix App Layer 
	</li>
	<li>
		Non-English Operation System localization. 
	</li>
</ul>

<p style="padding:0px;">
	After installation of KSV LA 5.2, you can face the error "The specified path does not exist" which appears by launching any executable file.
</p>

<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Possible root cause
</h2>

<p style="padding:0px;">
	Both Citrix technologies use separate vhd files for creating VMs by using Citrix App Layer and for roaming profiles used by Citrix UPL. As the result, the merge of vhd files processes and Citrix driver returns incorrect path of where the executable files are. 
</p>

<h2 style="border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Workaround
</h2>

<ol>
	<li>
		Install Kaspersky Light Agent 5.2 and ensure it does not connect to SVM.
	</li>
	<li>
		Disable Self Defense and exit LA.
	</li>
	<li>
		Add registry file from <a href="https://box.kaspersky.com/f/935c31d78b0441dd843f/?dl=1" rel="external nofollow">this archive.</a>
	</li>
	<li>
		Launch installation of the latest cumulative patch from the archive (all further released Cumulative PFs will contain the fix as well).
	</li>
	<li>
		As soon as LA informs the restart is needed, restart VMs.
	</li>
	<li>
		Connect LA to SVM.
	</li>
	<li>
		Problem should be solved.
	</li>
</ol>
]]></description><guid isPermaLink="false">169</guid><pubDate>Mon, 28 Jul 2025 11:52:50 +0000</pubDate></item><item><title>New exclusions behavior after installing the Cumulative Patch On Kaspersky Linux Light Agent 5.2 [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/168-new-exclusions-behavior-after-installing-the-cumulative-patch-on-kaspersky-linux-light-agent-52-ksv-light-agent/</link><description><![CDATA[<div style="border:1px solid #d04437;color:#333333;padding:10px 10px 10px 36px;">
	<div style="padding:0px;">
		<p style="padding:0px;">
			ATTENTION! All mechanisms described below will be applicable to all further released Cumulative Patches for Kaspersky Linux Light Agent 5.2.
		</p>
	</div>
</div>

<p style="padding:0px;">
	On-Demand Scan exclusion mechanism has not been changed. The following mechanism of exclusions with installed Cumulative Patch for Kaspersky Linux Light Agent 5.2 is applicable to On Access Scanning only.
</p>

<p style="padding:0px;">
	1. File Scanning Exclusion (an exclusion does not end with ‘/’)
</p>

<p style="padding:0px;">
	<a data-fileid="15308" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.a1f605ca56c4a4856ade1060fa97183c.png" title="Увеличить изображение" data-fileext="png" rel=""><img alt="image.png.a1f605ca56c4a4856ade1060fa97183c.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15308" data-ratio="80.56" style="height:auto;" width="396" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.a1f605ca56c4a4856ade1060fa97183c.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<p style="padding:0px;">
	If the option "Include subfolders" is enabled for exclusions from file scan, the label "IGNORE fanotify" will be set for this file. In this case, processing of an object with the excluded file will not be intercepted by Kaspersky Linux Light Agent 5.2 at all.
</p>

<p style="padding:0px;">
	2. Folder exclusion (an exclusion ends with "/") without the enabled option "Include subfolders"
</p>

<p style="padding:0px;">
	<a data-fileid="15309" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.0be19a07829b9de1366984018ebf8754.png" title="Увеличить изображение" data-fileext="png" rel=""><img alt="image.png.0be19a07829b9de1366984018ebf8754.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15309" data-ratio="79.25" style="height:auto;" width="400" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.0be19a07829b9de1366984018ebf8754.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<p style="padding:0px;">
	This exclusion will be processed by Kaspersky Linux Light Agent 5.2 after the excluded folder is intercepted and file operation resolved.
</p>

<p style="padding:0px;">
	3. Folder exclusion (exclusion ends with "/") with the enabled option "Include subfolders"
</p>

<p style="padding:0px;">
	<a data-fileid="15310" href="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.8393e7fdea7d5fc81c81523fcfe04490.png" title="Увеличить изображение" data-fileext="png" rel=""><img alt="image.png.8393e7fdea7d5fc81c81523fcfe04490.png" class="ipsImage ipsImage_thumbnailed" data-fileid="15310" data-ratio="81.20" style="height:auto;" width="399" data-src="https://forum.kaspersky.com/uploads/monthly_2023_12/image.png.8393e7fdea7d5fc81c81523fcfe04490.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<p style="padding:0px;">
	This type of exclusion can be split into two processing mechanisms:
</p>

<ul>
	<li>
		Excluded folder is not a mount point.
	</li>
</ul>

<p style="padding:0px;">
	This exclusion will be processed by Kaspersky Linux Light Agent 5.2 after the excluded folder is intercepted and file operation resolved.
</p>

<p style="padding:0px;">
	If one of the subfolders in the excluded folder is a mount point, this subfolder will be ignored and not scanned, without processing this exclusion by Kaspersky Linux Light Agent 5.2. It means that this subfolder is excluded on the low level (fa-notify).
</p>

<div style="border:1px solid #aab8c6;color:#333333;padding:10px 10px 10px 36px;">
	<div style="padding:0px;">
		<p style="padding:0px;">
			Example:
		</p>

		<p style="padding:0px;">
			There is a directory<span> </span><strong>“/path/to/folder”</strong><span> </span>which is not a mount point. The folder “/path/to/folder” has the following subfolders:
		</p>

		<ul>
			<li>
				<strong>“notmountsubfolder”</strong>, which is not a mount point
			</li>
			<li>
				<strong>"mountsubfolder"</strong>, which is a mount point
			</li>
		</ul>

		<p style="padding:0px;">
			The folder<span> </span><strong>“/path/to/folder”</strong><span> </span>is added to exclusions with the enabled option "Include subfolders". Exclusion of the two subfolders will be processed in the following way:
		</p>

		<ul>
			<li>
				<span>Exclusion of subfolder<span> </span><strong>“notmountsubfolder”</strong><span> </span>will be processed by Kaspersky Linux Light Agent 5.2 after its interception and resolving.</span>
			</li>
			<li>
				<span>Exclusion of subfolder<span> </span><strong>“mountsubfolder”</strong><span> </span>will be processed without Kaspersky Linux Light Agent 5.2 interception and resolving this subfolder directory, i.e. on the low level (fa-notify) </span>
			</li>
		</ul>
	</div>
</div>

<ul>
	<li>
		 Excluded folder is a mount point.
	</li>
</ul>

<p style="padding:0px;">
	In this case this folder and all its subfolders (including the subfolders which might be mount points) will be excluded<span> </span><span>without Kaspersky Linux Light Agent 5.2 interception and resolving all subfolders, i.e. exclusions are set on the low level (fa-notify).</span>
</p>

<p style="padding:0px;">
	Local installation: 
</p>

<ol>
	<li>
		Copy the *.sh file on the Linux VM with Kaspersky Light Agent 5.2 installed.
	</li>
	<li>
		Grant execution access: chmod +x &lt;path_to_file/*.sh file&gt;
	</li>
	<li>
		Run the command /path_to_file/*.sh --install 
	</li>
</ol>

<p style="padding:0px;">
	Remote Installation through Kaspersky Security Center: 
</p>

<ol>
	<li>
		Create installation package based on the kud file.
	</li>
	<li>
		Create remote installation task and assign it to the Linux VMs with Kaspersky Linux Light Agent 5.2 installed.
	</li>
</ol>

<p style="padding:0px;">
	The version of Kaspersky Linux Light Agent will be changed to the version specified in the name of the cumulative patch for Kaspersky Linux Light Agent 5.2.
</p>
]]></description><guid isPermaLink="false">168</guid><pubDate>Mon, 28 Jul 2025 11:52:36 +0000</pubDate></item><item><title>vSphere Virtual Machine is unresponsive after KSV LA 5.2 installation [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/152-vsphere-virtual-machine-is-unresponsive-after-ksv-la-52-installation-ksv-light-agent/</link><description><![CDATA[<div style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<p style="padding:0px;">
		The symptoms of the issue are:
	</p>

	<ol>
		<li>
			Installation/upgrade of KSV LA 5.2
		</li>
		<li>
			vSphere Virtual Machine is unresponsive after KSV LA 5.2 installation
		</li>
	</ol>

	<p style="padding:0px;">
		Based on the investigation results the problem related to NSX Introspection Drivers coming with VMware Tools. There is the article about it: <a href="https://kb.vmware.com/s/article/78016" rel="external nofollow" style="color:#265951;">https://kb.vmware.com/s/article/78016</a>
	</p>

	<p style="padding:0px;">
		Solution: 
	</p>

	<ol>
		<li>
			The best option is to uninstall NSX File Introspection and NSX Network Introspection by modifying VMware Tools on a virtual machine.
		</li>
		<li>
			Try to upgrade VMware Tools up to the latest supported by vSphere version.
		</li>
	</ol>
</div>
]]></description><guid isPermaLink="false">152</guid><pubDate>Mon, 28 Jul 2025 11:48:36 +0000</pubDate></item><item><title>Support of Windows Server 2022 and Windows 11 by Kaspersky Light Agent 5.2 [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/149-support-of-windows-server-2022-and-windows-11-by-kaspersky-light-agent-52-ksv-light-agent/</link><description><![CDATA[<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Please note that Kaspersky Light Agent 5.2 has been passed basic test scenarios on Windows Server 2022 and Windows 11. 
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Currently KSV LA 5.2 supports installation on Windows Server 2022 and Windows 11.
</p>
]]></description><guid isPermaLink="false">149</guid><pubDate>Mon, 28 Jul 2025 11:47:53 +0000</pubDate></item><item><title>Error "Failed to get IP addressees for connecting to SVM" during SVM deployment [KSV Light Agent]</title><link>https://forum.kaspersky.com/blogs/entry/84-error-failed-to-get-ip-addressees-for-connecting-to-svm-during-svm-deployment-ksv-light-agent/</link><description><![CDATA[<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Problem
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	Error <strong><code>Failed to get IP addresses for connecting to SVM</code></strong> appears during SVM deployment.
</p>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	<a class="ipsAttachLink ipsAttachLink_image" data-fileext="png" data-fileid="16722" href="https://forum.kaspersky.com/uploads/monthly_2024_01/image.png.fe59eb04fac18296578f0e8e89380f24.png" rel=""><img alt="image.thumb.png.cfab82652629c2a0df883f57e1697159.png" class="ipsImage ipsImage_thumbnailed" data-fileid="16722" data-ratio="24.40" style="height:auto;" width="500" data-src="https://forum.kaspersky.com/uploads/monthly_2024_01/image.thumb.png.cfab82652629c2a0df883f57e1697159.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" /></a>
</p>

<h2 style="background-color:#ffffff;border-bottom-color:#7eff33;color:#000000;font-size:20px;padding:0px;">
	Solution
</h2>

<p style="background-color:#ffffff;color:#172b4d;font-size:14px;padding:0px;">
	To troubleshoot this problem, you need to follow our step-by-step guide:
</p>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>I. Disable SVM rollback</strong>
</h3>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to<span> </span><code><strong>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIIS Console\</strong></code><span> </span>for KSV LA 5.1 or to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIISLA Console</code></strong><span> </span>for KSV LA 5.2
	</li>
	<li>
		Edit the<span> </span><code><strong>Kaspersky.VIISConsole.UI.exe.config</strong></code><span> </span>file
	</li>
	<li>
		Uncomment<span> </span><strong><code>&lt;!--&lt;add key="disableRollback" value="1" /&gt;--&gt;</code></strong><span> </span>(delete &lt;!-- and--&gt;)
	</li>
	<li>
		Save changes
	</li>
</ul>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>II. Enable VIIS traces</strong>
</h3>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to<span> </span><code><strong>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIIS\</strong></code><span> </span>for KSV LA 5.1 or to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIISLA</code></strong><span> </span>for KSV LA 5.2
	</li>
	<li>
		Open<span> </span><strong><code>NLog.config</code></strong><span> </span>file in a text editor
	</li>
	<li>
		<span>Find the line<span> </span></span><strong><code><span>&lt;logger name="*" minlevel="Info" writeTo="file"/&gt;</span></code></strong><span><span> </span>and change<span> </span></span><strong><code><span>minlevel</span></code></strong><span><span> </span>value from<span> </span></span><strong><code><span>Info</span></code></strong><span><span> </span>to<span> </span></span><strong><code><span>Trace</span></code></strong>
	</li>
	<li>
		Save changes
	</li>
</ul>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>III. Enable extended logging of deployment wizard</strong>
</h3>

<ul style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Go to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIIS Console\ </code></strong>for KSV LA 5.1 or to<span> </span><strong><code>C:\Program Files (x86)\Kaspersky Lab\Kaspersky VIISLA Console</code></strong><span> </span>for KSV LA 5.2
	</li>
	<li>
		Open<span> </span><strong><code>NLog.config</code></strong><span> </span>file in a text editor 
	</li>
	<li>
		Find the line<span> </span><strong><code>&lt;logger name="Kaspersky.Virtualization*" minlevel="Info" writeTo="DeployWizardLog" final="true"/&gt;</code></strong><span> </span>and change<span> </span><strong><code>minlevel</code></strong><span> </span>value from<span> </span><strong><code>Info</code></strong><span> </span>to <strong>Trace</strong> for KSV LA 5.1 and<span> </span><code><strong>&lt;logger name="DeployWizardFileLogger" minlevel="trace" writeTo="DeployWizardLog" final="true"/&gt;</strong></code> and change<span> </span><strong><code>minlevel</code></strong><span> </span>value from<span> </span><strong><code>off</code></strong><span> </span>to<span> </span><strong><code>Trace<span> </span></code></strong>for KSV LA 5.2
	</li>
	<li>
		Save changes
	</li>
</ul>

<h3 style="background-color:#ffffff;color:#000000;font-size:16px;padding:0px;">
	<strong>IV. Start troubleshooting</strong>
</h3>

<ol style="background-color:#ffffff;color:#172b4d;font-size:14px;">
	<li>
		Start SVM deploying wizard and don’t forget to enable option<span> </span><strong><code>Allow remote access via SSH for root account</code></strong>.
	</li>
	<li>
		Wait for the error and then, make sure that deployment wizard skipped rollback step.
	</li>
	<li>
		Disable all traces returning to the previous values.
	</li>
	<li>
		Connect to SVM directly, using hypervisor.
	</li>
	<li>
		<p style="padding:0px;">
			Login to SVM OS under the<span> </span><strong><code>root</code></strong><span> </span>account, using default password <strong><code>7czWtTKhCgrvEYBHb3rE</code></strong>
		</p>

		<div style="border:1px solid #ffeaae;color:#333333;padding:10px 10px 10px 36px;">
			<div style="padding:0px;">
				This password can be applied only during troubleshooting process with disabling SVM rollback and it wouldn't work with normally deployed SVMs.
			</div>
		</div>
	</li>
	<li>
		<span>Use command<span> </span><strong><code>ifconfig</code></strong> to check if the SVM received network adapter settings, specified at the beginning of installation.</span>
	</li>
	<li>
		Try to establish connection by SSH from KSC (where VIIS installed) to the SVM. If SSH connection fails, then there are no issues with Kaspersky product. You should configure the environment according to our system requirements. Especially, at the side of ports accessibility. <u><a href="https://help.kaspersky.com/KSVLA/5.1/en-US/133882.htm" rel="external nofollow" style="color:#265951;">Configuring ports used by the application</a></u>
	</li>
	<li>
		<p style="padding:0px;">
			If the SSH connection established successfully, please collect the following data and send it to Kaspersky Support: 
		</p>

		<div style="border:1px solid #aab8c6;color:#333333;padding:10px 10px 10px 36px;">
			<p style="padding:0px;">
				Data to be collected
			</p>

			<div style="padding:0px;">
				<ul>
					<li>
						Screenshot of network settings that has been applied to the SVM
					</li>
					<li>
						VIIS log from -<span> </span><code><strong>C:\ProgramData\Kaspersky Lab\VIIS\logs for LA 5.1 and C:\ProgramData\Kaspersky Lab\VIISLA\logs\ for LA 5.2</strong></code>
					</li>
					<li>
						Deployment wizard detailed log from -<strong><code><span> </span>C:\Users\&lt;Account&gt;\AppData\Local\Kaspersky_Lab\ViisConsole for LA 5.1 and  C:\Users\&lt;Account&gt;\AppData\Local\Kaspersky Lab\Kaspersky VIISLA Console\logs\ for LA 5.2</code></strong>
					</li>
					<li>
						<strong><code>/var/log/</code></strong><span> </span>– from SVM
					</li>
					<li>
						<strong><code>/var/opt/</code></strong>– from SVM
					</li>
				</ul>
			</div>
		</div>
	</li>
</ol>
]]></description><guid isPermaLink="false">84</guid><pubDate>Fri, 25 Jul 2025 10:56:57 +0000</pubDate></item></channel></rss>
