Configuring the integration with Kaspersky Industrial CyberSecurity for Networks in the Administration Console

In the Administration Console, you can enable or disable the integration of Kaspersky Industrial CyberSecurity for Linux Nodes with Kaspersky Industrial CyberSecurity for Networks and edit integration settings in policy properties (Detection and Response → Integration with KICS for Networks).

Kaspersky Industrial CyberSecurity for Networks integration settings

Setting

Description

Enable integration with KICS for Networks

Enables or disables integration of Kaspersky Industrial CyberSecurity for Linux Nodes with Kaspersky Industrial CyberSecurity for Networks.

The integration is disabled by default.

Enable execution prevention for objects

Enables or disables the use of execution prevention rules that the application receives from Kaspersky Industrial CyberSecurity for Networks.

This function is available if integration with KICS for Networks is enabled. The function is disabled by default.

KICS for Networks servers

Clicking the Configure button opens the KICS for Networks servers window. This window lets you add addresses and ports to connect to KICS for Networks servers, and view a list of added KICS for Networks servers.

The application connects to the first available KICS for Networks server in the list if sending telemetry via TCP is configured, and to the first available KICS for Networks server in the list if sending telemetry via UDP is configured (server availability is not determined).

KICS for Networks servers connection settings

In the settings block, you can select the protocol the application will use to send telemetry to the KICS for Networks server:

  • Send telemetry via TCP. A bidirectional data transfer protocol. Selected by default.

    If this option is selected, the Configure button opens the Server connection settings window, where you can configure general settings for connecting to KICS for Networks servers, add a server certificate, and set up two-way authentication when connecting to KICS for Networks servers.

  • Send telemetry via UDP. A unidirectional data transfer protocol. It can be used to send telemetry via a data diode set up between devices with Kaspersky Industrial CyberSecurity for Linux Nodes installed and KICS for Networks servers to prevent data from being sent to devices with Kaspersky Industrial CyberSecurity for Linux Nodes installed.

    If this option is selected, the Configure button opens the Data transfer settings window, where you can, if necessary, configure encryption of telemetry sent via UDP to KICS for Networks servers.

Data transfer settings

The Configure button opens the Data transfer settings window, where you can configure the settings for sending data to KICS for Networks servers.

In this section

KICS for Networks servers window

KICS for Networks server window

KICS for Networks server connection settings window

Adding a client certificate window

Adding a server certificate window

Data transfer settings window

Window for adding the data encryption key

Page top