In the main Kaspersky Security Center Web Console window select Devices → Managed devices.
Select the device for which you want to configure application settings.
In the <Device name> window that opens, select the Applications tab.
Select Kaspersky Endpoint Agent.
In the Kaspersky Endpoint Agent window that opens, select the Application settings tab.
In the Telemetry collection servers section, select Integration with SIEM.
The Integration with SIEM window opens.
In the Connection settings block, select the Use TLS encryption check box to encrypt data transfer between Kaspersky Endpoint Agent and the SIEM server.
If you want to configure additional connection protection using a pinned TLS certificate:
Select the Use pinned certificate to protect connection check box.
Add a TLS certificate:
Click the Add new TLS certificate button.
In the window that opens, do one of the following:
Click Browse, and in the window that opens, select the certificate file and click Open.
Copy and paste the contents of the certificate file to the Paste TLS certificate data field.
Click OK.
Information about the added TLS certificate is shown in the TLS certificate data group of settings.
If you want to configure additional connection protection using a user certificate:
In the Additional connection protection section, select the Secure connection with the client certificate check box.
Click the Load Crypto-container button.
In the window that opens, select the PFX file that stores the client certificate in encrypted form.
Click Open.
In the Cryptocontainer password field, enter the password for the PFX file.
Click OK.
In the upper right corner of the settings group, change the switch from Undefined to Enforce.
The default switch position is Enforce.
Click OK.
A secure connection with the SIEM server is configured.