Alex
-
Posts
107 -
Joined
-
Last visited
Never
Posts posted by Alex
-
-
Hi,
Sorry for the delay with the answer.
The policy is configured in a way to focre implementance of all parameter settings.
The message, that is related to web-pages is a result of Web-threat protection, not Web-control.
If there are any differences between policy and local settings please provide us with a screenshot(s) of these differencies for further investigation.
Thank you and sorry for inconvenience caused.
Thank you for the answer
-
Hi,
I observed some times that KES 11 for Windows policy (now is only one!) seems to be not properly applied as if the clients use a different policy
Could you please provide us with an export of active policy and with screenoshot of settings thet are not applied corretly.
Please notice, that ‘locks’ at policy settings should be locked in order to correctly apply correspondin policy settings.
Thank you!
Nikolay I would like to understand if to get an answer I have to open a request on the company account website. We often have these problems and it’s not the first time that you (or others) asked a copy of the policy and then I do not receive an answer! This is bad behavior and bad support!
-
Hi,
I observed some times that KES 11 for Windows policy (now is only one!) seems to be not properly applied as if the clients use a different policy
Could you please provide us with an export of active policy and with screenoshot of settings thet are not applied corretly.
Please notice, that ‘locks’ at policy settings should be locked in order to correctly apply correspondin policy settings.
Thank you!
Any news Nikolay?
-
Hi,
I observed some times that KES 11 for Windows policy (now is only one!) seems to be not properly applied as if the clients use a different policy
Could you please provide us with an export of active policy and with screenoshot of settings thet are not applied corretly.
Please notice, that ‘locks’ at policy settings should be locked in order to correctly apply correspondin policy settings.
Thank you!
Is this Kaspersky Web Control? Sometimes a Chrome alert appears and sometimes a Kaspersky so it’s a bit strange.
-
Hi,
I observed some times that KES 11 for Windows policy (now is only one!) seems to be not properly applied as if the clients use a different policy
Could you please provide us with an export of active policy and with screenoshot of settings thet are not applied corretly.
Please notice, that ‘locks’ at policy settings should be locked in order to correctly apply correspondin policy settings.
Thank you!
Hi Nikolay,
I forgot to send screenshots related to not applied settings.
This is related to what I discovered, could also be others modules.

-
Hi,
I observed some times that KES 11 for Windows policy (now is only one!) seems to be not properly applied as if the clients use a different policy
Could you please provide us with an export of active policy and with screenoshot of settings thet are not applied corretly.
Please notice, that ‘locks’ at policy settings should be locked in order to correctly apply correspondin policy settings.
Thank you!
Policy is attached, I checked all the locks and are properly closed except for user support under interface.
-
I saw this within Netagent policy and it explains the reason of OoO profile.
Anyway still remains the issue with the protection modules, any suggestion about it?

-
Hi,
I observed some times that KES 11 for Windows policy (now is only one!) seems to be not properly applied as if the clients use a different policy.
I discovered this because some times I see a blocked web page while our policy has Web Control disabled.
I used klnagchk utilities and I’d understand why the report shows the out of office mode activated while I deleted this policy. I want know why we’re having this issue related to the protection modules and I would fully understand which kind of policy is applied to the clients. Is there a related report?
Thank you.
KSC: 11.0.0.1131 (now with patch B)
Current KES 11 for Windows policy name is: KES11_withFirewall
NetAgent: 11.0.0.1131
KES: 11.1.1.126
Profiles
Profile name: 'OoF-Profil'
Administration Server address: 'XXXXXXXXXXX'
Use SSL: 1
Compress traffic: 1
Numbers of the Administration Server SSL ports: '13000'
Numbers of the Administration Server ports: '14000'
Use proxy server: 0
Switch to out-of-office mode: 1 -
I`m sorry for my mistake. The correct name is “Distribute instalation package”.
Nikolay just to clarify it “Distribute installation package” can’t be used in this case because work only for distribute package between different Administration server.
I used “install application remotely” and it worked with one client.
-
How can I create a task without a package previously created? I’m not aware of this.
Please open task creation wizard - Click New - Create installation package for user specified program - select patch`s exe file - wait for installation package to be created and follow task creation wizad to create remote installation task.
Nikolay I don’t have that option therefore I created the task with install application remotely, is it ok?

-
I’m pretty sure you do not have to create a separate package. Patch B should also be automatically available under software updates. You just need to approve it for automatic installation.
I checked it and it’s not included in software updates.
-
Please create a task for user specified installation package to deploy the patch.
Thank you!
How can I create a task without a package previously created? I’m not aware of this.
-
Hi,
No, that is not mandatory.
However, could you please clarify what exactly was done(step-by-step) to create the installatio package?
Thank you!
I thought it was a package that could be distributed from KSC like KES and NA so I choose “create installation package for Kaspersky Lab application” and selected the exe.
That’s all.
-
Hi,
I installed patch B on our KSC 11.0.0.1131 and all seems work fine but I didn’t understand how to deploy NetAgent patch B to the clients because I received an error during package creation.
Is it mandatory install that patch to clients?
Thank you.

-
I already know this kind of error and this is what I think about it… obviously I can be wrong.
The client have installed all the protection modules but these modules are disabled by the policy so at each sync they are automatically disabled and the log contains this event.
-
Hi all,
I performed some policy changes and discovered that one client failed the policy enforcement.
What I should do? Just wait next sync or there is something to do?
The client is offline and OoO so I can’t work on it.
Thanks in advance
-
Thank you for that info! Could you please provide us with an export of all avaliable events for that host? You can create a selection at EVENTS tab at Admoinistration server node. Also, please clarify are there any files stored at local host at "Backup" interface? Is the checkbox for Active Threats at Managed computer groups and/or at any subgroup related to the host?
Attached is client events (that has been manually cleared after a virus scan). Active threats is set as critical and also as warning. About backup screen: yes, there were two files, I removed them and KSC status came back to green. Can I remotely perform this action? -
Please use Kaspersky Rescue disk utility to make sure that no actual active threat is present at the PC. Thank you!
Nikolay I performed a remote session on one client and there is no trace of viruses, KES homepage report the threats on the ext device (e:\). I performed a KSC scan, a local malware scan and no trace so I manually removed the warning. How can I solve for do that remotely with the other client? -
Hi, Could you please clarify what versions of KES and KSC do you use? Could you please provide us with a screenshot that shows the warning? Thank you!
Hi Nikolay, see related snips.
KSC 11,0.0.1131
KES: 11.1.0.15919
The other client with the same issue has KES 11.1.1.126
-
Hi, Two clients have this warning related to malware detected on external devices. These devices are no more present but the clients still remain with this warning. I performed virus counter reset without remove this status. Is there a way to do that reset?
-
Hi, I noticed that one client has been removed from Managed Clients. I found it within Unassigned devices but it has been duplicated and there were two clients with the same hostname. One with the proper hostname but offline and one with a strange hostname and online. Could you explain the reason? I've found others clients within unassigend devices: is there a rule to move out clients to unassigned devices after xx inactivity time or status? Thanks in advance
-
I solved except for Ps1 file execution.
-
Hi, There is a way to obtain a list of the Windows keys of Managed clients? I tried Report on third-party software keys but it's empty. Thanks
-
Yes, you can create a batch file to be distributed over network, but please notice, that it will be launced with Local System account.
Do you have a link to a guide? I was not able to use it




Remotely remove KES for Windows license
in Kaspersky Endpoint Security for Business
Posted
Hi,
Is there a way to remotely remove an assigned KES for Windows license? I don’t want uninstall KES but only solve a temporary issue related to missing licenses.
I checked KSC tasks without result.
KSC: 11.0.0.1131
KES:11.1.1.126
Thanks.