Recommendations for the Web Threat Protection and ‎Network Threat Protection tasks

To reduce the impact of the Web Threat Protection and ‎Network Threat Protection components on the performance of your applications, we recommend taking the following steps.

When using the application together with the HAProxy load balancer, we recommend taking the following steps:

  1. Open the /var/opt/kaspersky/kesl/common/kesl.ini configuration file, create the [Environment] section and add the TcpSynInterceptDisabled=1 setting to it.
  2. Restart the application:

    systemctl restart kesl

Using the Web Threat Protection and ‎Network Threat Protection components together with Kubernetes containerization requires additional painstaking fine-tuning of the operating system firewall. The components cannot be used with Kubernetes if Cillium CNI is also used.

Page top