Generating a TLS certificate of the Endpoint Agent component in the web interface of Kaspersky Anti Targeted Attack Platform and downloading a crypto container

To generate and download a TLS certificate for the connection of Kaspersky Anti Targeted Attack Platform with the application that is being used in the Endpoint Agent component role:

  1. Sign in to the Kaspersky Anti Targeted Attack Platform web interface with the administrator credentials.
  2. In the Kaspersky Anti Targeted Attack Platform web interface window, select the Settings section, Certificates subsection.
  3. In the Endpoint Agent certificates section, click Generate and export.

    This opens the Export certificate window.

  4. Select a TLS certificate protection option:
    • Protect the file with a password. If you select this option, the generated TLS certificate is downloaded to your computer as a password-protected PFX archive (crypto container).

      Enter a password in the Password and Confirm password fields. We recommend safekeeping this password for future use because the application does not save this password.

    • Do not protect the file with a password. If you select this option, the generated TLS certificate is downloaded to your computer as a non-password-protected PFX archive.
  5. Click Export.

The new TLS certificate is displayed in the TLS certificate table. The crypto container file with the certificate of the application that acts as the Endpoint Agent in the PFX format is downloaded to your browser's downloads folder on your local computer.

For details on managing TLS certificates, see the OpenSSL documentation.

The crypto container contains only the certificate file, but not the private key file. Kaspersky Anti Targeted Attack Platform does not store private keys for the TLS encryption of the connection.

See also

Configuring integration of the Endpoint Agent component with the KEDR functional block

Configuring a trusted connection with Kaspersky Endpoint Security

Downloading the TLS certificate of the Central Node server

Generating a TLS certificate for the Central Node server in the web interface of Kaspersky Anti Targeted Attack Platform

Uploading an independently prepared TLS certificate for the Central Node server using the web interface of Kaspersky Anti Targeted Attack Platform

Enabling the validation of the TLS certificate of the Endpoint Agent component in the web interface of Kaspersky Anti Targeted Attack Platform

Uploading an independently prepared TLS certificate of the Endpoint Agent component using the web interface of Kaspersky Anti Targeted Attack Platform

Viewing the table of TLS certificates of the Endpoint Agent component in the web interface of Kaspersky Anti Targeted Attack Platform

Filtering and searching TLS certificates of the Endpoint Agent component in the web interface of Kaspersky Anti Targeted Attack Platform

Deleting TLS certificates of the Endpoint Agent component in the web interface of Kaspersky Anti Targeted Attack Platform

Configuring traffic redirection from the Endpoint Agent component to the Sensor server

Page top