Kaspersky Endpoint Agent

Configuring user permissions to manage IOC Scan tasks

November 17, 2023

ID 193064

You need to configure Kaspersky Security Center permissions for the user whose account will be used to manage IOC Scan tasks.

Only the files with IOC rules can be specified for the IOC Scan task. Files with other types of rules are not supported for the IOC Scan task.

To configure Kaspersky Security Center user permissions to manage IOC Scan tasks:

  1. Open Kaspersky Security Center Administration Console.
  2. Select Administration Server.
  3. In the Administration Server context menu, select Properties.

    The property window for the Administration Server.

  4. In the left part of the window, select the Security section.
  5. Select the Kaspersky Security Center user whose account will be used to manage IOC Scan tasks.

    At the bottom of the window, the list of the selected user permissions is displayed, grouped by the applications that the user can manage using Kaspersky Security Center.

  6. In the Kaspersky Endpoint Agent group of permissions expand the Intrusion Prevention section.
  7. Select the check boxes in the Allow column for the following types of permissions: Modify, Execute, and Perform actions on device selections.
  8. Click Apply and OK.

    The configuration of the user permissions to manage IOC Scan tasks is finished.

See also

Configuring Autonomous IOC Scan task

IOC collection export

Viewing IOC Scan task execution results

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.