Configuring creation of the threat development chain
September 13, 2022
ID 200160
This Help provides information related to Kaspersky Endpoint Agent for Windows. This information may be partially or completely inapplicable to Kaspersky Endpoint Agent for Linux. For complete information about Kaspersky Endpoint Agent for Linux, please refer to the Help of the solution that includes the application: Kaspersky Anti Targeted Attack Platform or Kaspersky Managed Detection and Response.
To create a threat development chain the specified prerequisites must be met.
You can enable creation of the threat development chain for the objects detected on managed devices. The threat development chain is displayed on the incident card.
To enable creation of the threat development chain:
- Do one of the following:
- In the Repositories section select the Synchronization with Administration Server subsection.
- In the Synchronization with the Administration Server group of settings, select the Send data for threat development chain creation check box.
- If you configure the policy settings, in the upper right corner of the Synchronization with the Administration Server group of settings, change the switch from Undefined to Enforce.
- Click OK.
- Click the Save button.
Creation of the threat development chain is configured.