Kaspersky Managed Detection and Response

Moving assets from the root tenant to a new tenant

July 3, 2024

ID 219428

When you delete a tenant that contains some assets, all its assets stop sending telemetry to MDR solution. Before deleting a tenant, move all its assets to the root tenant or a new tenant.

Your account in Kaspersky Security Center Web Console or Kaspersky Security Center Cloud Console must have a role with the following access rights: Incident access and Tenant management, and the ability to view, add, edit, and delete tenants in the MDR section in Kaspersky Security Center.

To move assets to a new tenant:

  1. In the MDR section of Kaspersky Security Center, create a new tenant. Later, you will add assets to this tenant.

    When you create a new tenant, you download an MDR configuration file.

  2. In Kaspersky Security Center Web Console, create a new administration group.
  3. Add the assets that you want to move to the new tenant to the new administration group.
  4. Create a new policy for Kaspersky Endpoint Agent or an EPP application for the created administration group.
  5. Apply the MDR configuration file to the created policy.

    For details on different deployment scenarios, refer to Deployment of Kaspersky Managed Detection and Response.

After the policy is applied to the assets of the administration group, the assets are moved from the default tenant to the newly created tenant.

To move assets to the root tenant:

  1. Download an MDR configuration file for root tenant:
    • In MDR Web Console (https://mdr.kaspersky.com/guide), go to Getting started page and click the MDR configuration file (BLOB file included) or MDR configuration file (BAT file included) link.
    • In your Kaspersky Security Center Web Console or Kaspersky Security Center Cloud Console, go to MDR > Getting Started and click the Download link.
  2. In Kaspersky Security Center Web Console, create a new administration group.
  3. Add the assets that you want to move to the new tenant to the new administration group.
  4. Create a new policy for Kaspersky Endpoint Agent or an EPP application for the created administration group.
  5. Apply the MDR configuration file to the created policy.

After the policy is applied to the assets of the administration group, the assets are moved from the default tenant to the newly created tenant.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.