Kaspersky Security for Windows Server

Compact Diagnostic Interface

This section describes how to use the Compact Diagnostic Interface for reviewing protected device status or current activity, and how to configure writing of dump and trace files.

In this section

About the Compact Diagnostic Interface

Reviewing the Kaspersky Security for Windows Server status via the Compact Diagnostic Interface

Reviewing security event statistics

Reviewing current application activity

Configuring writing of dump and trace files

Page top
[Topic 152242]

About the Compact Diagnostic Interface

The Compact Diagnostic Interface component (also referred to as the "CDI") is installed and uninstalled along with the System Tray Icon component independently from the Application Console, and can be used when the Application Console is not installed on the protected device. The CDI is started from the System Tray Icon or by running kavfsmui.exe from the application folder on the protected device.

From the CDI window, you can do the following:

The CDI is available even if access to Kaspersky Security for Windows Server functions is password-protected. No password is required.

The CDI component cannot be configured via Kaspersky Security Center.

Page top
[Topic 152292]

Reviewing the Kaspersky Security for Windows Server status via the Compact Diagnostic Interface

To open the Compact Diagnostic Interface window, perform the following actions:

  1. Right-click the Kaspersky Security for Windows Server System Tray Icon in the toolbar notification area.
  2. Select the Open Compact Diagnostic Interface option.

    The Compact diagnostic interface window opens.

Review the current status of the key, Real-Time Server Protection tasks, and Update tasks on the Protection status tab. Different colors are used to notify the user about the protection status (see the table below).

Compact Diagnostic Interface protection status.

Section

Status

Real-time protection status

The panel is green for either of the following scenarios (if any of the conditions are met):

  • Recommended configuration:
    • The Real-Time File Protection task is started with the default settings.
    • The Applications Launch Control task is started in Active mode with the default settings.
  • Acceptable configuration:
    • The Real-Time File Protection task is configured by the user.
    • Applications Launch Control task settings are modified.

The panel is yellow if one or more of the following conditions are met:

  • The Real-Time File Protection task is paused (by the user or schedule).
  • The Applications Launch Control task is started in Statistics only mode.
  • Exploit Protection and Applications Launch Control are started in Statistics only mode.

The panel is red if both of the following conditions are met:

  • The Real-Time File Protection component is not installed or the task is stopped or paused.
  • The Applications Launch Control component is not installed or the task is started in Statistics only mode.

Licensing

The panel is green if the current license is valid.

A yellow panel signifies that one of the following events has occurred:

  • Checking the license status.
  • The license will expire in 14 days and no additional key or activation code has been added.
  • The added key has been black-listed and is about to be blocked.

A red panel signifies that one of the following events has occurred:

  • Application not activated
  • License has expired
  • End User License Agreement has been violated
  • Key is blacklisted

Update

The panel is green when Application databases are up-to-date.

The panel is yellow when Application databases are out of date.

The panel is red when Application databases are extremely out of date.

Page top
[Topic 152244]

Reviewing security event statistics

The Statistics tab displays all security events. Each protection task statistic is displayed in a separate block specifying the number of incidents and the date, and time when the last incident occurred. When an incident is logged, the block color changes to red.

To review the statistics:

  1. Right-click the Kaspersky Security for Windows Server System Tray Icon in the toolbar notification area.
  2. Select the Open Compact Diagnostic Interface option.

    The Compact diagnostic interface window opens.

  3. Open the Statistics tab.
  4. Review the security incidents for the protection tasks.
Page top
[Topic 172842]

Reviewing current application activity

On this tab, you can review the status of current tasks and application processes, and promptly get notifications about critical events that occur.

Different colors are used to indicate the application activity status:

  • In the Tasks section:
    • Green. There are no conditions that would require yellow or red.
    • Yellow. Critical areas have not been scanned for a long time.
    • Red. At least one of the following conditions is true:
      • No tasks are started and a start schedule is not set up for any of the tasks.
      • Application launch errors are logged as critical events.
  • In the Kaspersky Security Network section:
    • Green. The KSN Usage task is started.
    • Yellow. The KSN Statement is accepted, but the task is not started.

To review the current application activity on the protected device:

  1. Right-click the Kaspersky Security for Windows Server System Tray Icon in the toolbar notification area.
  2. Select the Open Compact Diagnostic Interface option.

    The Compact diagnostic interface window opens.

  3. Open the Current application activity tab.
  4. Review the following information in the Tasks section:
    • Critical areas not scanned for a long time

      This field is displayed only if the application returns a corresponding warning about critical area scans.

    • Running now
    • Execution failed
    • Next start defined by a schedule
  5. Review the following information in the Kaspersky Security Network section:
    • KSN is on. File reputation services are enabled or Protection is off.
    • KSN is on. File reputation services are enabled, application statistics is being sent to KSN.

      The application sends information about malware, including fraudulent software, detected during execution of the Real-Time File Protection task and the On-Demand Scan tasks, as well as debugging information about errors during scanning.

      The field is displayed if the Send Kaspersky Security Network statistics check box is selected in the KSN Usage task settings.

  6. Review the following information in the Integration with Kaspersky Security Center section:
    • Local management is allowed.
    • Policy is applied: <Administration Server name>.
Page top
[Topic 152290]

Configuring writing of dump and trace files

You can configure the writing of dump and trace files via the CDI.

You can also configure malfunction diagnostics via the Application Console.

To start writing dump and trace files, perform the following actions:

  1. Right-click the Kaspersky Security for Windows Server System Tray Icon in the toolbar notification area.
  2. Select the Open Compact Diagnostic Interface option.

    The Compact diagnostic interface window opens.

  3. Open the Troubleshooting tab.
  4. Change the following trace settings if necessary:
    1. Select the Write debug information to the trace file in this folder check box.
    2. Click the Browse button to specify the folder where Kaspersky Security for Windows Server will save trace files.

      Tracing will be enabled for all components with the default parameters using the Debug level of detail and the default maximum log size of 50 MB.

  5. Change the following dump-file settings if necessary:
    1. Select the Create dump file on malfunction in this folder check box.
    2. Click the Browse button to specify the folder where Kaspersky Security for Windows Server will save the dump file.
  6. Click the Apply button.

    The new configuration will be applied.

Page top
[Topic 152426]