The klbackup utility allows you to switch managed devices under management of another Administration Server. You can change the Kaspersky Security Center Windows Administration Server to Kaspersky Security Center Linux Administration Server by using the klbackup utility when you perform the migration. Also, you can migrate managed devices between Kaspersky Security Center Linux Administration Servers, as well as between Kaspersky Security Center Windows Administration Servers.
To switch managed devices under management of another Administration Server by using the klbackup utility:
You can create a backup copy in one of the following ways:
Run the klbackup utility located in the Kaspersky Security Center installation folder, and then create a backup by using the Restore or back up Administration Server certificate only option.
Run the klbackup utility with the -cert_only
key from the command line, to create a backup copy of the Administration Server certificate and private key:
klbackup -path <
path to the backup copy of Administration Server certificate
> -cert_only
The new Administration Server can be assigned the NetBIOS name, FQDN, and static IP address. It depends on which Administration Server address was set in the Network Agent installation package when Network Agents were deployed. Alternatively, you can use the connection address that determines the Administration Server to which Network Agent connects (you can obtain this address on managed devices by using the klnagchk utility).
If it is impossible to assign the same address to the device with another Administration Server, you must generate a new Administration Server certificate and specify this certificate in the IAM configuration file. After installation of the Administration Server you need to manually switch Network Agents to the new Administration Server.
You can restore a backup copy in one of the following ways:
Run the klbackup utility, and then restore a backup by using the Restore or back up Administration Server certificate only option.
Run the klbackup utility with the -cert_only
key from the command line, to restore a backup copy of the Administration Server certificate and private key:
klbackup -path <
path to the backup copy of Administration Server certificate
> -restore -cert_only
server_iam.ksc_address
parameter to exactly the same Administration Server address that is specified in the Subject Alternative Name (SAN) of the previously used Administration Server certificate.Managed devices are put under the management of another Administration Server. You can go to this Administration Server and ensure that managed devices are visible in the network, and that Network Agent is installed and running on them (the Yes value in the Visible, Network Agent is installed, and Network Agent is running columns).
Page top