Jump to content

tommylwl

Members
  • Posts

    6
  • Joined

  • Last visited

Posts posted by tommylwl

  1. 2 more points.

    1. You must have "Endpoint Security for Business Advanced" licnese if you are using Windows Server, otherwise, it won't work for the Application Control. 

    https://support.kaspersky.com/KESWin/12.3/en-US/228553.htm

    2. I use a windows 10 vm and try to get the list of the running processes. Those processes are successfully listed in the Security Center, and I can block the process in this windows 10 (refer to Arian.Mohammad screen capture). As those serves and this windows 10 are in the same managed device group, I tried those servers but if faill. The process in those servers are not blocked.

    These is what i figure out these few days. The license issue waste me 4 hours. = ='

  2. I want to limit a process, abc.exe,  for outgoing traffic. Therefore, I open my policy in the KSC, Under Essential Threat Protection, Firewall. In the right pane, Click "settings" of configure applicaiton network rules in the operation system. When I select untrusted, and then "Add", the applicatioin list is empty.

    Then, I try at the Host Instruction Prevention, there has a message "To send application startup information to Administration Server, select 'Reports and Stroage'.......". I try to follow the instruction, but there is no such option. 

    May I know a correct way to limit the abc.exe outgoing traffic? 

     

    add.png

    host.png

    general.png

  3. On 9/6/2023 at 7:51 PM, ElvinE5 said:

    Did you update over the old version?

    In rare cases, a similar failure occurred, all connections were blocked.

    try uninstalling the security solution completely from the problematic device, reboot the system, and try installing it again.

    It is fresh install. 

    All the below scenarios have Remote desktop IP Virtualization on.

    Windows 2016 + KES 12.2.0 = ok

    Windows 2022 + KES 12.1.0 = ok

    Windows 2022 + KES 12.2.0 = Connection blocked

     

     

  4. I have a server farms for users to remote. It is windows 2016 with IP virtualization + End Point Security 11.10, everything works fine. 

    But today, I had clean install 2 servers with server 2022, config with IP virtualization and also upgrade to End point security 12.2, when i open the brwoser in remote desktop, all the internet connection fail (see attachment) . If i disable the End Point Security Service, it is normal. I have tried to allow all outgoing connection in the firewall rule, but no use.  How to fix this issue? Any idea?

    2023-09-06_185604.png

×
×
  • Create New...