Jump to content

sec4me

Public Testers
  • Content Count

    145
  • Joined

  • Last visited

About sec4me

  • Rank
    Cadet

Recent Profile Visitors

1,000 profile views
  1. Hi, make sure you have Kaspersky Endpoint Security for Business ADVANCED license key. Siem export is part of Systems Management, https://support.kaspersky.com/9325. Br, sec4me
  2. Hi, genau vor einem Jahr hab ich mal so was gemacht, vielleicht hilft es. -------------------------------------------------------------- @echo off for /f "TOKENS=1,2,*" %%a in ('tasklist /FI "IMAGENAME eq explorer.exe" /FO LIST /V') do if /i "%%a %%b"=="User Name:" set _currdomain_user=%%c for /f "TOKENS=1,2 DELIMS=\" %%a in ("%_currdomain_user%") do set _currdomain=%%a & set _curruser=%%b for /f "TOKENS=2 DELIMS= " %%c in ('whoami /user ^| find /i "%_curruser%"') do set _currusersid=%%c echo %_currusersid% for /f "TOKENS=3" %%a in ('REG QUERY "HKU\%%_currusersid%%\Volatile Environment" /v USERPROFILE') do echo %%a ---------------------------------------------------------------
  3. @Kirill CF16 is the current version. @duntails Install CF16, FAQ and download here: https://support.kaspersky.com/13742 The patch includes all the fixes from previous patches (KB13463, KB13081, KB13017, KB13047, KB13086, KB12644, KB12662), fixes for new known issues, as well as improvements in the application’s functionality.
  4. Hi Remo, gehe ich richtig in der Annahme, dass es um Kaspersky Endpoint Security 10 for Linux geht? Wie wurde die KES10 for Linux installiert? So wie mir scheint wurde bei der Installation während des postinstalls, als Updatequelle KLServers gewählt (Default). Somit geht er an die KL Update Server im Internet und das Verhalten wäre korrekt. Im Adminguide auf Seite 55 ist beschrieben, wie man(n) die die Updatesource ausliest. good luck, sec4me
  5. Hi Fernando, don't waste your time with a feature request. Will be included in KES10 SP2! BR
  6. Hi, falls es die Sicherheitsrichtlinie erlaubt KSCint zu KSCdmz bidirektionaler Verkehr, wie oben schon erkannt. Oder ein Connection Gateway, DMZ Server liefern Status zu CGW - KSCint baut Verbindung zu CGW auf. Verbindungsaufbau von int nach dmz und alle sind (hoffentlich) glücklich.
  7. Alles nur eine Frage der MTA Konfiguration... KSMG nutzt den Postfix als MTA und stellt die Konfigurationsoptionen im Webinterface zur Verfügung --> nix mit Magic.
  8. Yes sure, but excuse I'm not the script spoon feeder! You have to help yourself by combining the fromer suggestions. Good luck, have a nice week.
  9. Long story short: You try to change registry of currently logged on user, am I right? Network Agent runs under SYSTEM account, with your batch you change registry setting of SYSTEM account and not for logged on user. -- will read user and convert it to sid -- @echo off for /f "TOKENS=1,2,*" %%a in ('tasklist /FI "IMAGENAME eq explorer.exe" /FO LIST /V') do if /i "%%a %%b"=="User Name:" set _currdomain_user=%%c for /f "TOKENS=1,2 DELIMS=\" %%a in ("%_currdomain_user%") do set _currdomain=%%a & set _curruser=%%b for /f "TOKENS=2 DELIMS= " %%c in ('whoami /user ^| find /i "%_curruser%"') do set _currusersid=%%c echo %_currusersid% -- end -- then: REG ADD "HKEY_USERS\<SIDOUTPUT from batch>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows" /V LegacyDefaultPrinterMode /T REG_dWORD /D 1 /F
  10. value is stored in hklm\Software\wows6432node\kasperskylab\protected\kes10sp1\watchdog\BasesInfo - e.g. date, reg_qword, 1d1d6d97f278a00 the display in support window shows, database release date: 05.07.2016 18:23 i assume it is utc + 2 (mosow local time) furthermore i assume it's saved in ticks but converting it shows Tuesday, 5. July 0416 16:23:00 maybe kl support guys could shade some light on it
  11. That's correct, the node is not managed by KSC -> that's why is not there. Are the systems unmagaged?
  12. sry my bad HKLM\SOFTWARE\Wow6432Node\KasperskyLab\Components\34\1103\1.0.0.0\Statistics\AVState it's stable
  13. Hi Dave, I don't know why the KL support guys are making it so hard for you. Please check HKLM\SOFTWARE\Wow6432Node\KasperskyLab\Components\34\1.0.0.0\Statistics\AVState, here you'll find e.g. Protection_BasesDate. cheers, sec4me
  14. Hi, would you mind to read the fine manuals? http://support.kaspersky.com/ksv3#downloads see administrators guide for changing password in integration Server and maybe the implementation guide
  15. stop following services, Kaspersky Security Center 10 Administration Server Kaspersky Security Center 10 Network Agent delete the files once more start Network Agent Administration Server if it doesn't work, follow the recommendation in article 10665 create incident in CompanyAccount and attach traces
×
×
  • Create New...

Important Information

We use cookies to make your experience of our websites better. By using and further navigating this website you accept this. Detailed information about the use of cookies on this website is available by clicking on more information.