Kaspersky Security Center 9

 
 
 

How to configure a Kaspersky Endpoint Security 8 for Smartphone policy

Back to "Host Maintenance"
2012 Oct 17 ID: 4935
 
 
 
 
All the application settings including the activation key file, update and mobile device scan schedule are defined in a policy or in the local application configuration.

Kaspersky Endpoint Security 8 for Smartphone policy is created and configured according to the mobile device administration system implemented in your network.

Kaspersky Administration Kit 8 / Kaspersky Security Center 9.0

Information about application settings configured in a policy is saved on the Administration server and distributed to mobile devices during synchronizations. It is necessary to install an application control plugin for Administration console to be able to create a Kaspersky Endpoint Security 8 for Smartphone policy.

In order to create a Kaspersky Endpoint Security 8 for Smartphone policy:

  • Start the Administration console with control plugin installed;
  • Expand the mobile devices group node;

    • in Kaspersky Security Center 9.0 - go to the node Managed computers, open tab Policies, and click Create a policy;
    • in Kaspersky Administration Kit 8 - go to the node Managed computers, right-click the node Policies, and select New > Policy.

  • New policy wizard allows configuring its settings;
  • Once the policy has been created, open its properties;

    Kaspersky Adminitrsation Kit 8 policy properties

    Kaspersky Kaspersky Security Center 9.0 policy properties

  • Configure each application component on corresponding policy properties tabs;
  • Each policy setting can be “locked”. A locked setting cannot be modified locally on the mobile device:
    • Locked settings are enforced by a policy for mobile devices. A mobile device user cannot modify such values.
    • Unlocked settings are using default or custom local values.

The default synchronization period between a mobile device and the Administration server is 6 hours. 
 

Microsoft System Center Mobile Device Manager (MS SCMDM)

Policy settings are defined in an administrative template added to a group policy used for mobile devices. The settings are configured via the administrative template.

In order to create a Kaspersky Endpoint Security 8 for Smartphone policy:

  • Create a group policy and assign it to a unit containing mobile devices;
  • Add an administrative template to the group policy;
  • Select an application component in the administration console tree;
  • Select a component value in the right pane;



  • Each setting can have a status:
    • Not specified. Use default or custom local values;
    • Enabled. The component is enabled. Once the policy is applied, mobile devices will use the values set in the policy. Mobile device user cannot modify these values;
    • Off. The component is disabled. Once the policy is applied, mobile devices will use the values set in the policy. Mobile device user cannot modify these values;

It is necessary to open properties of a group policy with installed administrative control plugin to be able to modify an existing Kaspersky Endpoint Security 8 for Smartphone policy.

How to configure Anti-Virus settings

How to configure Anti-Theft settings

How to configure Anti-Spam settings

How to configure Privacy Protection settings

How to configure Encryption settings

How to configure Firewall settings

How to configure License settings (activate the application)

Sybase Afaria

A policy for mobile devices is created and configured using the KES2Afaria.exe utility. The utility can be found inside the KES8_forSybaseAfaria_en.exe distribution package and can be installed on a workstation or a Sybase Afaria server.

Install the KES2Afaria.exe utility by copying the KES2Afaria.exe, kl.pdv, licensing.dll and oper.pbv files from the distribution package into a single folder.

In order to create a Endpoint Security 8 for Smartphone policy:

  • Run the KES2Afaria.exe utility;
  • Kaspersky Endpoint Security 8 for Smartphone window will open containing application components settings;



  • Configure each application component on corresponding tabs;
  • Each policy setting can be “locked”. A locked setting cannot be modified locally on the mobile device:

    • Locked settings are enforced by a policy for mobile devices. Once the policy is applied, mobile devices will use the values set in the policy. Mobile device user cannot modify these values.
    • Unlocked settings are using default or custom local values:

How to configure Protection settings

How to configure Scan on request settings

How to configure Anti-Virus updates settings

How to configure Anti-Theft settings

How to configure Firewall settings

How to configure Encryption settings

How to configure Anti-Spam settings

How to configure Privacy Protection settings



  • Save the generated *.kes policy file by selecting File > Save.

    InformationYou can create several policy files. A policy file used by Sybase Afaria server should be named policy.kes. The application does not recognize policy files having any other names.

  • If the utility is installed on a workstation, copy the generated policy file on the Sybase Afaria server.

Click File > Open to modify a policy (opens the *.kes policy file).

Changes made to the policy file on a server shall be delivered to mobile devices during the next synchronization with Sybase Afaria. By default, mobile devices synchronize with Sybase Afaria each 6 hours.

 
 
 
 
Did the provided info help you?
Yes No
 
 
 

Applies To:

  • Kaspersky Administration Kit 8.0
  • Kaspersky Endpoint Security 8 for Smartphone
  • Kaspersky Security Center 9