Migrating the [KES+KEA] configuration to [KES11.7.0]

Kaspersky Endpoint Security 11.7.0 now has built-in agents for the Kaspersky Endpoint Detection and Response Optimum 2.0 (EDR Optimum) and Kaspersky Sandbox 2.0 solutions. You no longer need a separate Kaspersky Endpoint Agent application to work with these solutions. When you upgrade Kaspersky Endpoint Security to version 11.7.0, the EDR Optimum and Kaspersky Sandbox solutions keep working with Kaspersky Endpoint Security. In addition, the Kaspersky Endpoint Agent is removed from the computer.

Migrating the [KES+KEA] configuration to [KES11.7.0] involves the following steps:

  1. Upgrading Kaspersky Security Center

    Upgrade all Kaspersky Security Center components to version 13.2, including the Administration Agent on user computers and Web Console.

  2. Upgrading the Kaspersky Endpoint Security web plug-in

    In Kaspersky Security Center Web Console, upgrade the Kaspersky Endpoint Security web plug-in to version 11.7.0. To manage EDR Optimum and Kaspersky Sandbox components, you must use Web Console.

  3. Migrating the policy and tasks

    Use the Kaspersky Endpoint Agent Policy and Task Migration Wizard to migrate Kaspersky Endpoint Agent settings to Kaspersky Endpoint Security for Windows.

    This creates a new Kaspersky Endpoint Security policy. The new policy has the Inactive status. To apply the policy, open policy properties, accept the Kaspersky Security Network Statement and set the status to Active.

  4. Licensing functionality

    If you use a common Kaspersky Endpoint Detection and Response Optimum or Kaspersky Optimum Security license to activate Kaspersky Endpoint Security for Windows and Kaspersky Endpoint Agent, EDR Optimum functionality will be activated automatically after upgrading the application to version 11.7.0. You do not need to do anything else.

    If you use a stand-alone Kaspersky Endpoint Detection and Response Optimum Add-on license to activate EDR Optimum functionality, you must make sure that the EDR Optimum key is added to the Kaspersky Security Center repository and the automatic license key distribution functionality is enabled. After you upgrade the application to version 11.7.0, EDR Optimum functionality is activated automatically.

    If you use a Kaspersky Endpoint Detection and Response Optimum or Kaspersky Optimum Security license to activate Kaspersky Endpoint Agent, and a different license to activate Kaspersky Endpoint Security for Windows, you must replace the Kaspersky Endpoint Security for Windows key with the common Kaspersky Endpoint Detection and Response Optimum or Kaspersky Optimum Security key. You can replace the key using the Add key task.

    You do not need to activate Kaspersky Sandbox functionality. Kaspersky Sandbox functionality will be available immediately after upgrading and activating Kaspersky Endpoint Security for Windows.

  5. Upgrading the Kaspersky Endpoint Security application

    To upgrade the application and migrate EDR Optimum and Kaspersky Sandbox functionality, a remote installation task is recommended.

    To upgrade the application using a remote installation task, you must edit the following settings:

    • Select the Endpoint Detection and Response Optimum or Kaspersky Sandbox components in the settings of the installation package.
    • Exclude the Kaspersky Endpoint Agent component in the settings of the installation package.

    You can also upgrade the application using the following methods:

    • Using Kaspersky update service (Seamless Update – SMU).
    • Locally, by using the Setup Wizard.

    In this case, you must check the configuration of Kaspersky Endpoint Agent that is installed on the computer. If the installed Kaspersky Endpoint Agent includes the Endpoint Detection and Response Expert (KATA EDR) component, remove the component before you upgrade the application. If you cannot remove the Endpoint Detection and Response Expert (KATA EDR) component, Kaspersky Endpoint Security will skip the EDR Optimum and Kaspersky Sandbox components when upgrading the application. You can install components using the Change application components task after upgrading the application.

  6. Computer restart

    Restart your computer to finish upgrading the application with the built-in agent. When upgrading the application, the installer removes Kaspersky Endpoint Agent before the computer is restarted. After the computer is restarted, the installer adds the built-in agent. This means that Kaspersky Endpoint Security does not perform the functions of EDR and Kaspersky Sandbox until the computer is restarted.

  7. Checking the health of Kaspersky Endpoint Detection and Response Optimum and Kaspersky Sandbox

    If after the upgrade, the computer has the Critical status in the Kaspersky Security Center console:

    • Make sure that the computer has Administration Agent 13.2 installed.
    • Check the operating status of the EDR Optimum and Kaspersky Sandbox components by viewing the Application components status report. If a component has the Not installed status, install the components using the Change application components task.
    • Make sure you accept the Kaspersky Security Network Statement in the new policy of Kaspersky Endpoint Security for Windows.

    Make sure EDR Optimum functionality is activated using the Application components status report. If a component has the Not covered by license status, make sure that the automatic license key distribution functionality of EDR Optimum is turned on.

Upgrading the application as part of KATA EDR

If you have Kaspersky Endpoint Agent installed for integration with Kaspersky Anti Targeted Attack Platform (the Endpoint Detection and Response Expert (KATA EDR) component), you can upgrade Kaspersky Endpoint Security for Windows in any of the following ways:

Page top