Configuring trusted connection with KATA Central Node
To configure trusted connection between Kaspersky Endpoint Agent and KATA Central Node, perform the following actions on Kaspersky Endpoint Agent side:
Expand the Managed devices node in the Kaspersky Security Center Administration Console tree.
Select the administration group for which you want to configure application settings.
Perform one of the following actions in the details pane of the selected administration group:
To configure application settings for a group of protected devices, select the Policies tab and open the Properties: <Policy name> window.
In the tree of Kaspersky Security Center Administration Console, expand the Managed devices node.
Expand the administration group whose policy settings you want to configure, and select the Policies tab in the results pane.
Select the policy you want to configure.
Open the Properties: <Policy name> window in one of the following ways:
Select the Properties option in the context menu of the policy.
Click the Configure policy settings link in the results pane of the selected policy.
In the KATA integration section select the KATA Central Node subsection.
In the Connection settings group of settings, select the Use trusted connection check box.
Click the Add new TLS certificate button.
The Adding new TLS certificate window will open.
Perform one of the following actions to add a TLS certificate:
Add a certificate file. Click Browse, and in the window that opens, select the certificate file and click Open.
Copy and paste the contents of the certificate file to the Paste TLS certificate data field.
Kaspersky Endpoint Agent may have only one KATA server TLS certificate. If you have added a TLS certificate before and then add a TLS certificate once again, only the last added certificate is valid.
Click Add.
Information about the added TLS certificate is shown in the TLS certificate data group of settings.
If you want to configure additional connection protection by a user certificate, click the Advanced connection protection button.
In the Advanced connection protection window that opens, do the following:
Select the Secure connection with the client certificate check box.
Click the Upload button and in the window that opens select the PFX archive and click Open.
Enter the password for the PFX archive.
Click OK.
In the upper right corner of the settings group, change the switch from Unaffected by policy to Under policy.
Click OK.
The trusted connection to KATA server is now configured.