Kaspersky Endpoint Agent

Updating Kaspersky Sandbox TLS certificate data in Kaspersky Endpoint Agent

November 17, 2023

ID 193086

When replacing the TLS certificate of the Kaspersky Sandbox server, you will need to update TLS certificate data in Kaspersky Endpoint Agent and reconfigure the trusted connection with Kaspersky Sandbox.

To update Kaspersky Sandbox TLS certificate data in Kaspersky Endpoint Agent:

  1. Expand the Managed devices node in the Kaspersky Security Center Administration Console tree.
  2. Select the administration group for which you want to configure application settings.
  3. Perform one of the following actions in the details pane of the selected administration group:
    • To configure application settings for a group of protected devices, select the Policies tab and open the Properties: <Policy name> window.
    • To configure the settings of a task or application for an individual protected device, select the Devices tab and go to the settings of a local task or the application settings.
  4. In the Kaspersky Sandbox integration section, select the Kaspersky Sandbox integration settings subsection and the Kaspersky Sandbox integration settings group of settings.
  5. Select the Use pinned certificate to secure connection check box.
  6. Click the Add new TLS certificate button.

    The Adding TLS certificate window will open.

  7. Perform one of the following actions to add a TLS certificate created on Kaspersky Sandbox side:
    • Add a certificate file. Click Browse, and in the window that opens, select the certificate file and click Open.
    • Copy and paste the contents of the certificate file to the TLS certificate data field.

    Kaspersky Endpoint Agent may have only one TLS certificate of Kaspersky Sandbox server. If you have added a TLS certificate before and then add a TLS certificate once again, only the last added certificate is valid.

  8. Click Add.

    Information about the added TLS certificate is displayed in the Kaspersky Sandbox integration settings group of settings.

  9. In the upper right corner of the settings group, change the switch from Policy not enforced to Under policy.
  10. Click OK.

As a result, Kaspersky Sandbox server TLS certificate data has been updated and a trusted connection with Kaspersky Sandbox has been established.

See also

Configuring trusted connection on Kaspersky Sandbox side

Configuring trusted connection on Kaspersky Endpoint Agent side

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.