Kaspersky Endpoint Agent

Configuring trusted connection with KATA Central Node

November 17, 2023

ID 196935

To configure trusted connection between Kaspersky Endpoint Agent and KATA Central Node, perform the following actions on Kaspersky Endpoint Agent side:

  1. Expand the Managed devices node in the Kaspersky Security Center Administration Console tree.
  2. Select the administration group for which you want to configure application settings.
  3. Perform one of the following actions in the details pane of the selected administration group:
    • To configure application settings for a group of protected devices, select the Policies tab and open the Properties: <Policy name> window.
    • To configure the settings of a task or application for an individual protected device, select the Devices tab and go to the settings of a local task or the application settings.
  4. In the Telemetry collection servers section select the KATA integration subsection.
  5. In the Connection settings group of settings, select the Use pinned certificate to secure connection check box.
  6. Click the Add new TLS certificate button.

    The Adding TLS certificate window will open.

  7. Perform one of the following actions to add a TLS certificate:
    • Add a certificate file. Click Browse, and in the window that opens, select the certificate file and click Open.
    • Copy and paste the contents of the certificate file to the TLS certificate data field.

    Kaspersky Endpoint Agent may have only one KATA server TLS certificate. If you have added a TLS certificate before and then add a TLS certificate once again, only the last added certificate is valid.

  8. Click Add.

    Information about the added TLS certificate is shown in the TLS certificate data group of settings.

  9. If you want to configure additional connection protection by a user certificate, click the Add client certificate button.
  10. In the Add client certificate window that opens, do the following:
    1. Select the Secure connection with client certificate check box.
    2. Click the Upload button and in the window that opens select the PFX archive and click Open.
    3. Enter the password for the PFX archive.
    4. Click OK.
  11. In the upper right corner of the settings group, change the switch from Policy not enforced to Under policy.
  12. Click OK.

The trusted connection to KATA server is now configured.

See also

Enabling and disabling integration with KATA Central Node

Configuring synchronization settings between Kaspersky Endpoint Agent and KATA Central Node

Configuring trusted connection with Kaspersky Industrial CyberSecurity for Networks

Configuring a secure connection with a SIEM server

About integration with Kaspersky Anti Targeted Attack Platform

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.