Kaspersky Security Center 9

 
 
 

How to prepare an Administration server version 9 for installing Kaspersky Endpoint Security 8 for Smartphone

Back to "Installation / Uninstallation"
2012 Aug 27 ID: 7570
 
 
 
 
­­­­
Applies to:
  • Kaspersky Endpoint Security 8 for Smartphone
  • Kaspersky Security Center 9.0
  • Before deploying Kaspersky Endpoint Security 8 for Smartphone via Kaspersky Security Center 9.0, you should configure some Administration Server properties.

    Please perform the following actions depending on the selected Kaspersky Endpoint Security 8 for Smartphone deployment mode (from a workstation or by email):

    Installing the Mobile devices support component

    Configuring the connection settings

    Creating groups and relocation rules for mobile devices

    Installing the plug-in for managing Kaspersky Endpoint Security 8 for Smartphone


    Installing the Mobile devices support component

    To manage the protection of mobile devices through Kaspersky Security Center 9.0, it is essential that the Mobile devices support box is checked at the Select Features stage in the Kaspersky Security Center 9.0 setup wizard.



    When installing the component Mobile devices support, the Administration Server for mobile devices certificate is created. This is used for authentication of the mobile devices when exchanging data with the Administration Server.

    The certificate files, klsrvmob.cer and klsrvmob.prk, are located in the following folder:

    %programdata%\KasperskyLab\adminkit\1093\cert\

    InformationWithout the mobile devices certificate, it is not possible to establish a connection between the Administration Server and the mobile devices. It is useless to copy the klsrvmob.cer and klsrvmob.prk certificate files from one Administration server to another. If the user renames the mobile devices certificate, or deletes it from the device, during the next synchronization the Administration Server automatically sends a copy of the certificate to the device.

    If, during installation of the Administration Server, the Mobile devices support box was not checked, perform an installation “on top” of the installed Administration server and check the Mobile devices support box.

    The data exchange between the mobile devices and the Administration server goes over Internet. Therefore you should configure the address used by mobile devices to connect to the Administration Server.


    Back to the beginning

    Configuring the connection settings

    In order to configure the connection settings for mobile devices:

    • Select the Administration Server in the Administration console;
    • Go to the Settings tab;
    • Check the Open port for mobile devices box;
    • Indicate the port through which the Administration Server should expect to connect with mobile devices. Port 13292 is used by default.
    InformationIf the box is not checked, or the port is indicated incorrectly, devices will not be able to connect to the server or send and receive information.


    Back to the beginning

    Creating groups and relocation rules for mobile devices

    Instances of the application installed on mobile devices are managed by applying the group policy to these devices. For this reason, before installing the application on mobile devices, you should create an individual administration group for these devices in the Managed computers node and relocation rules according to which the mobile devices will be moved to that group.

    It is necessary to define a group for mobile devices. It may be a new group.
    • Open the properties of the node Unassigned computers;
    • Click Add;
    • Go to the General tab in the New rule window, and select a group to relocate mobile devices to;
    • Enable the option Enable rule;
    • Go to the Applications tab and select an operating system in the corresponding drop-down menu;


    • Click OK twice.
    • You should create a separate rule for each operating system type.

    WarningAndroid devices are relocated according to Windows Mobile rules.


    Back to the beginning

    Installing the plug-in for managing Kaspersky Endpoint Security 8 for Smartphone

    The plug-in for managing Kaspersky Endpoint Security 8 for Smartphone is a module integrated into the Administration console. This allows managing the application settings, create policies and reports.

    InformationYou can create a policy for Kaspersky Endpoint Security 8 for Smartphone only after installing a plugin for managing this application into the Administration console.

    There exist plugins for the applications manageable via Kaspersky Security Center 9.0. The plugin version corresponds to the managed application version, but the version numbers do not always match.

    You can choose to install Kaspersky Endpoint Security 8 for Smartphone control plugin while installing Kaspersky Security Center 9.0.

    Otherwise you should run the klcfginst.exe file from the Console\Plugins\KES4Mobile folder of the extracted Kaspersky Security Center 9.0 distribution package.

    How to find the version of the plugin installed on the Administration console:

    • Open the Administration server properties;
    • Select Advanced > Information about the installed application management plug-ins.
    Back to the beginning
     
     
     
     
    Did the provided info help you?
    Yes No