Network Threat Detection

In this section, SVM refers to an SVM with the Network Threat Detection component installed.

The Network Threat Detection component of Kaspersky Security performs the following functions:

The Network Threat Detection component settings depend on the traffic processing mode selected during registration of the network protection service:

You can select the traffic processing mode only when registering the network protection service (Kaspersky Network Protection).

Kaspersky Security protects only virtual machines that meet all the conditions for virtual machine protection against network threats.

If you want to protect virtual machines against network threats, after installing the Network Threat Detection component you must configure the network threat protection settings in the active policy. By default, Kaspersky Security does not protect virtual machines against intrusions and does not scan web addresses.

You can configure exclusions from Network Threat Protection as follows:

Information about events that occur during protection of virtual machines against network threats is transmitted to the Kaspersky Security Center Administration Server and logged in a report.

Descriptions of currently known types of network attacks, signs of intrusions, and the databases of malicious and phishing web addresses are included in the application databases and are updated during application database updates.

In this Help section

Conditions for protection of virtual machines against network threats

Intrusion Prevention

Web Addresses Scan

Configuring exclusions from Network Threat Protection

Page top