Preparing to install the solution
Before installing the Kaspersky Security, you need to do the following.
General preparations
Preparing to install Light Agent on virtual machines
Before installing the Light Agent, you need to do the following.
Additional steps for Microsoft Hyper-V platform
In a virtual infrastructure on the Microsoft Hyper-V platform, you also need to perform the following steps before installing the Kaspersky Security solution:
- Ensure that the Integration Services package is installed on virtual machines that you want to protect.
- Ensure that the ADMIN$ shared network resource is enabled on the hypervisor. To enable the ADMIN$ shared network resource on Microsoft Windows Server 2012 R2 Hyper-V hypervisors, a File Server role must be assigned in advance using the server configuration wizard.
- Ensure that the drive where the ADMIN$ shared network resource is located has enough space for the SVM image. During installation of the Protection Server component, the SVM image is copied to the ADMIN$ shared network resource and then moved to the folder specified during SVM deployment.
- Ensure that hypervisors that are not included in Active Directory domain have Windows Remote Management (WinRM) Ver. 3.0 installed. Windows Remote Management (WinRM) version 3.0 is included in the Windows Management Framework 3.0 installation package that can be downloaded from the Microsoft website.
- If you want to use a domain account to connect the Integration Server to the hypervisor, make sure that the following conditions are met:
- Integration Server is able to determine the hypervisor address using the domain name service (DNS) of the domain of the hypervisor on which the SVM is deployed.
- The DNS server has forward and reverse records for the Integration Server.
- Zones containing records about the Integration Server and the hypervisor on which the SVM is deployed are integrated with Active Directory.
- The device from which SVM deployment is performed is able to resolve the names of hypervisors on which the SVM is deployed.
- If you want the hypervisor user name and password, which were specified during installation of the SVM, to be encrypted when transmitted, you can use an SSL certificate to configure a secure connection between the hypervisor on which the SVM will be deployed and the device where the Kaspersky Security Center Administration Console is installed.
Additional Steps for VMware vSphere platform
In a virtual infrastructure on the VMware vSphere platform, you also need to perform the following steps before installing the Kaspersky Security solution:
- Make sure that the VMware Tools kit is installed on the virtual machines that you want to protect.
- If a proxy server is used to connect the device hosting the Kaspersky Security Center Administration Console to the VMware vCenter Server, make sure that the virtual machines are available via the proxy server.
Additional Steps for Citrix Hypervisor platform
In the virtual infrastructure on the Citrix Hypervisor platform, before installing the Kaspersky Security solution, make sure that XenTools is installed on the virtual machines that you want to protect.
Additional actions for Proxmox VE platform
In a virtual infrastructure on the Proxmox VE platform, make sure that there is at least 30 GB of free space in the /var/tmp directory before installing the Kaspersky Security solution.
Additional steps for HUAWEI FusionSphere platform
In the virtual infrastructure on the HUAWEI FusionSphere platform, before installing the Kaspersky Security solution, make sure that HUAWEI Tools is installed on the virtual machines that you want to protect.
While deploying an SVM in a virtual infrastructure based on the HUAWEI FusionSphere platform, the SVM Management Wizard installs the HUAWEI Tools package on the SVM. To receive this package, the Wizard queries the HUAWEI FusionCompute hypervisor. The HUAWEI Tools package is not included in the Kaspersky Security solution's distribution kit. It is recommended to make sure that the HUAWEI Tools package is available on the HUAWEI FusionCompute hypervisor.
Additional steps for Astra Linux Platform
Prior to starting installation of the solution in a virtual infrastructure running on the Astra Linux Platform, you need to configure the account that will be used for SVM deployment, removal, and reconfiguration as follows:
- Run the following command:
$ sudo usermod -a -G kvm,libvirt,libvirt-qemu,libvirt-admin <
user_name
>
- Open the sudoers configuration file by running the following command:
sudo visudo
- Specify the following in the file:
<
user name
> ALLĀ = (ALL) NOPASSWD: ALL
<user name> refers to the name of the user account that will be used to connect to the virtual infrastructure during SVM deployment, removal and reconfiguration.
- Save the sudoers file and then close it.
Page top