-
Posts
87 -
Joined
-
Last visited
Everything posted by Deadlock4400
-
Hello Everybody, As there written latest KES 11.3 supports only KSC v12, then what will be the upgrade procedure from KSC v11 to KSC v12, including the KES 11 or 10 to 11.3? If the KSC v12 installed and it has it’s KES v11.3. Can KSC 12 supports to have DB backUp, Policies Import and Tasks import from earlier KSC versions? Thanks in Advance @Deadlock4400
-
How do I enable AMSI Protection? [MOVED]
Deadlock4400 replied to flas's topic in Kaspersky Endpoint Security for Business
seems like AMSI is on all three versions. -
How do I enable AMSI Protection? [MOVED]
Deadlock4400 replied to flas's topic in Kaspersky Endpoint Security for Business
hello @flas Advance license is needed -
Hello Everybody, The scenario is explained below- Kaspersky Security Center 11.0.0.1131b Kaspersky Endpoint Advance 11.2.0.2254 Syslog Server is a TheckOS Storage where Syslog Server option is there. Now problem is that The Syslog server can only showing Informative Logs of KSC. Not the warning, Critical etc. logs of KSC. Even from Wireshark , it’s clear that KSC is not sending other type of logs (only Informative logs of KSC are being sent) Below url was being followed - Exporting events using Syslog On KSC Enabling automatic export is done (Screenshot Attached below) Then Syslog Server IP added with UDP port 514 - Selecting export events Selecting events in a policy has done From the properties of Event configuration section, all the events are selected and then from events properties, Export to SIEM system via Syslog check box is enabled for all selected events Upto this point done. But now We can see only KSC information event on Syslog server, no other critical or warning events there showing on Syslog Server, even Wireshark we only see informative events are forwarding from KSC to Syslog Server, no other events are going. Should i do the “Selecting events for an application”?? Thanks in Advance @Deadlock4400
-
hello @ak01 Thanks for your reply. Option “Scan encrypted connection” was ON n OFF both way tasted. Even i use the trusted domain also. I follow the below web link - https://community.kaspersky.com/kaspersky-total-security-14/untrusted-root-center-site-blocked-connection-not-protected-and-can-t-exclude-it-i-understand-the-risks-is-not-available-812 also follow - https://support.kaspersky.com/common/safemoney/12489?_ga=2.177839013.1039545886.1578383781-833333344.1575652241#block5 No way out!!
-
hello @raviparker See the first screen shot, there below left corner you can Kaspersky logo. It’s fine that the website has certificate or other problem, but there should be some way to exclude such irritating problem. Dear @Nikolay arinchev can you please answer something cool over here and make a awesome solutions ! Thanks - @Deadlock4400
-
Problem in remote installation [MOVED]
Deadlock4400 replied to a topic in Kaspersky Endpoint Security for Business
If the connection between KSC Server and Clients are good to go then the problem in your Network Agent and on Client Packages. Try to make standalone package of Network Agent and Endpoint. Then first installed Network agent then Endpoint agent. -
Problem in remote installation [MOVED]
Deadlock4400 replied to a topic in Kaspersky Endpoint Security for Business
try to do ping with IP and hostname from both side (Server to Client and Client to Server), if that’s alright then from Client PC \\…...(KSC server IP), see if you have the KLShare folder or not? -
Problem in remote installation [MOVED]
Deadlock4400 replied to a topic in Kaspersky Endpoint Security for Business
I clearly wrote there that for Client/Target machine, NOT KSC Server? You can find the Remote Registry Service on Services.msc While you did KSC, what did you chose, IP or FQDN for this KSC Server, that i was saying! -
Problem in remote installation [MOVED]
Deadlock4400 replied to a topic in Kaspersky Endpoint Security for Business
Hello @Samira-IT Expert Your Remote Installation Target machine should have Windows Firewall Off and Windows Remote Registry Service ON. And check if any other AV is installed there or not. And while you installed KSC, was it IP base or FQDN base installation? Thanks in Advance @Deadlock4400 -
Hello @kk60 Kaspersky Security Center 11.0.0.1131b Supports up to Operating system: Windows Server 2019 , but The Microsoft SQL Server for this KSC supports up to MS SQL 2017. please visit the below web link - Hardware and software requirements If your new Windows 2019 for KSC has different IP and different FQDN from Running KSC Server then, you can do agent transfer from Old one to New Windows 2019 KSC server. That’s smart move. If you don’t want to go above Agent transfer method then You have to do old KSC DB backup and make the restore into New KSC DB (Note: If you old KSC setup was IP base then different FQDN will not make problem, otherwise you will fall into trouble) Thanks in Advance @Deadlock4400
-
Hello everybody, The scenario is like below- Kaspersky Security Center 11 need to be send logs to Syslog Server then from Syslog server logs need to be sent to AlienVault SIEM. is the above scenario is a good practice? If the scenario is set like the above then - what will be the method from KSC11 to Syslog Server and then Syslog Server to SIEM….is that push or something else? Thanks in Advance @Deadlock4400
-
Kaspersky License in impact
Deadlock4400 replied to Deadlock4400's topic in Kaspersky Endpoint Security for Business
Hello everybody, If a license is issued for 12 days by written on it's papaer starting and ending date, then if this license put into KSC, will this license impact on that starting date to ending date? Thanks in Advance @Deadlock4400