Installing the application locally using the Wizard

The interface of the application Setup Wizard consists of a sequence of windows corresponding to the application installation steps.

To install the application or upgrade the application from a previous version using the Setup Wizard:

  1. Copy the distribution kit folder to the user's computer.
  2. Run setup_kes.exe.

The Setup Wizard starts.

Preparing for installation

Before installing Kaspersky Endpoint Security on a computer or upgrading it from a previous version, the following conditions are checked:

If any one of the previous requirements is not met, a relevant notification is displayed on the screen. For example, a notification about incompatible software (see the figure below).

Installer window with a list of incompatible software. The user can launch the removal of incompatible software.

Removing incompatible software

If the computer meets the listed requirements, the Setup Wizard searches for Kaspersky applications that could lead to conflicts when running at the same time as the application being installed. If such applications are found, you are prompted to remove them manually.

If the detected applications include previous versions of Kaspersky Endpoint Security, all data that can be migrated (such as activation data and application settings) is retained and used during installation of Kaspersky Endpoint Security 12.4 for Windows, and the previous version of the application is automatically removed. This applies to the following application versions:

Configuration of Kaspersky Endpoint Security

Installer window with configuration of the application: full functionality or Endpoint Detection and Response Agent.

Choosing the configuration of the application

Full functionality. The default configuration. This configuration lets you use all components of the application, including components that provide support for Detection and Response solutions. This configuration is used for comprehensive protection of the computer from a variety of threats, network attacks, and fraud. You can select the components that you want to install at the next step of the Setup Wizard.

Endpoint Detection and Response Agent. In this configuration, you can only install the components that provide support for Detection and Response solutions: Endpoint Detection and Response (KATA) or Managed Detection and Response. This configuration is needed if a third-party Endpoint Protection Platform (EPP) is deployed in your organization alongside a Kaspersky Detection and Response solution. This makes Kaspersky Endpoint Security in the Endpoint Detection and Response Agent configuration compatible with third-party EPP applications.

Kaspersky Endpoint Security components

During the installation process, you can select the components of Kaspersky Endpoint Security that you want to install (see the figure below). The File Threat Protection component is a mandatory component that must be installed. You cannot cancel its installation.

Installer window with a list of components that a user can select.

Selecting application components to install

By default, all application components are selected for installation except the following components:

You can change the available application components after the application is installed. To do so, you need to run the Setup Wizard again and choose to change the available components.

If you need to install Detection and Response components, Kaspersky Endpoint Security supports the following configurations:

Kaspersky Endpoint Security verifies the selection of components before installing the application. If the selected configuration of Detection and Response components is not supported, Kaspersky Endpoint Security cannot be installed.

Advanced settings

Installation settings window: installation protection, compatibility with Citrix PVS, system variable for avp.com.

Advanced application installation settings

Protect the application installation process. Installation protection includes protection against replacement of the distribution package with malicious applications, blocking access to the installation folder of Kaspersky Endpoint Security, and blocking access to the system registry section containing application keys. However, if the application cannot be installed (for example, when performing remote installation with the help of Windows Remote Desktop), you are advised to disable protection of the installation process.

Ensure compatibility with Citrix PVS. You can enable support of Citrix Provisioning Services to install Kaspersky Endpoint Security to a virtual machine.

Add the path to the file avp.com to the system variable %PATH%. You can add the installation path to the %PATH% variable for convenient use of the command line interface.

See also

Setup. Installing the application

Standard installation of the application

Remotely installing the application using System Center Configuration Manager

Description of setup.ini file installation settings

Page top