How to deploy Kaspersky Hybrid Cloud Security in Yandex.Cloud
The article concerns:
- Kaspersky Security Center 13.2 (version 13.2.0.1511)
- Kaspersky Security Center 13.1 (version 13.1.0.8324)
- Kaspersky Security Center 13 (version 13.0.0.11247)
- Kaspersky Security Center 12 (version 12.0.0.7734)
- Kaspersky Security Center 11 (version 11.0.0.1131b)
Kaspersky Hybrid Cloud Security in Yandex.Cloud is a solution for protection of virtual machines. It includes:
- Kaspersky Security Center (Administration Server)
- Kaspersky Security for Windows Sever (Windows Security Agent)
- Kaspersky Endpoint Security for Linux (Linux Security Agent)
As a result of deployment of Kaspersky Hybrid Cloud Security, you will have a virtual machine with Kaspersky Security Center installed. You can connect to the server through RDP using the public address of the virtual machine. See the guide below.
How to deploy Kaspersky Hybrid Cloud Security
- Open Kaspersky Hybrid Cloud Security in Yandex.Cloud Marketplace.
- Fill out the required fields and follow the instructions of the wizard.
If you deploy the Pay as you go version, create a service account in Yandex.Cloud with the marketplace.meteringAgent rights and click Access → Service account to add it.
For instructions, see Yandex.Cloud.
The Kaspersky Hybrid Cloud Security solution will be installed.
How to connect to the server
If you have selected a public IP address when creating a virtual machine, you can connect to the server through RDP. To do this:
- In the authorization window, enter the password that you have specified when creating the virtual machine.
- After you connect to the server, you may see the window “Installing Kaspersky Security Center”. Wait until the installation completes and the administration console starts.
The solution is now ready to use.
How to perform the initial setup of Kaspersky Security Center (Administration Server)
- In the Cloud Environment Configuration Wizard that appears at first startup, enter the license. If you are using the Pay as you go license, it will be activated automatically.
- If you are not going to install the protection on virtual machines in Amazon Web Services (AWS), Azure or Google Cloud, close the window.
- Skip the windows with configuration settings for Kaspersky Security for Windows Sever and Kaspersky Endpoint Security for Linux.
- If you don’t have additional Amazon Web Services (AWS), Azure or Google clouds connected, create tasks for backup, database update, vulnerability scan, and a Network Agent policy.
Step 1. Create a Backup of Administration Server data task.
- Go to Tasks and click Create a task in the right frame.
- Select Backup of Administration Server data and click Next.
- Specify the folder where the backup will be created. By default, backup copies are saved to C:\ProgramData\KasperskySC\SC_Backup
- Select the quantity of backup copies to be stored and set a password.
- Set a schedule and specify the name for the task. We recommend that the task is run once every two days or more often.
Step 2. Create the Download updates to the Administration Server repository task.
- Go to Tasks and click Create a task in the right frame.
- Select Download updates to the Administration Server repository and click Next.
- Select the update source and the antivirus database storage.
- Set a schedule and the name for the task.
Step 3. Create the Find vulnerabilities and required updates task.
- Go to Tasks and click Create a task in the right frame.
- In the Advanced section, select Find vulnerabilities and required updates task and click Next.
- Select the scan methods and paths or apps to search for vulnerabilities.
- Add the devices on which the task will be performed.
- Set a schedule and specify the name for the task.
Шаг 4. Create a Network Agent policy
- Go to Policies and click New policy.
- Select a Kaspersky Security Center Network Agent application and click Next.
- Configure the policy and assign it to the Managed devices group.
Kaspersky Security Center (Administration Server) is now set up.
How to deploy protection using deployment scripts
To deploy protection on virtual machines, use deployment scripts. To do this:
- Open Kaspersky Security Center and copy the contents of the DeploymentScript folder located in C:\ProgramData\KasperskyLab\adminkit\1093\.working\share\Public
- Run linux.sh on virtual machines running Linux and winsrv.ps1 on virtual machines running Windows.
Correct work of deployment scripts requires network connectivity between Kaspersky Security Center and virtual machines on which protection must be deployed. You can also use a remote installation task. For details, see Online Help..
Technical support
Kaspersky provides technical support for customers with trial and commercial license. If you experience problems deploying Kaspersky Hybrid Cloud Security, send a request to Kaspersky technical support via Kaspersky CompanyAccount with a detailed description of the issue. Before creating the request, see the following Knowledge Base section.