|
Concerning to Kaspersky Administration Kit 6.0 MP1 If VPN is not configured between the head and the local (remote) offices, then to manage remotely Kaspersky Lab's anti-virus applications installed on the computers of the remote office, the following requirements must be met:
1. Administration Server in the head office should have an external IP-address and 13000 and 14000 incoming ports should be opened on it.
In order to increase the security it is recommended to enable Port forwarding on the server which helped to realize NAT (Network Address Translation).
2. An external IP-address of the master Administration Server should be specified when a Network Agent is being installed on client computers of the remote office. If the installation package is used to install a Network Agent, then an external IP-address is defined manually in the package properties on the Settings tab.
3. Network Agent should be installed on the computers in the remote office.
The Agent can be installed one of the following ways:
1. install in a remote office an Administration Server and connect it to the Administration Server in the head office as slave one – i.e. create the server hierarchy.
2. on the slave Server create an installation package for the Network Agent.
3. create the remote install task based on the package and run this task on all computers of the remote office.
Once the Network Agent is installed on client computers, one product deployment task can be created on the master Server and in the task settings check Send to slave Administration Servers – and the task will be performed automatically on all computers of the head and remote offices.
1. temporarily install an Administration Server in the local office
2. on a slave Server create an installation package for the Network Agent and change in it connection settings of the Administration Server – define parameters of the Server in the head office.
3. create the remote install task based on the package and run this task on all computers of the remote office. Client computers will be connected to the Server in the head office.
4. After the installation process is complete, the slave Administration Server can be deleted.
You can use the following methods for it:
In this case check if Server is running on the computer and the Simple File Sharing is disabled.
If you manage client computers remotely via Internet and without VPN:
1. you do not need access to any shared folders on the Administration Server or a client computer.
2. access to the admin$ shared folder on a client computer is needed to install a Network Agent remotely
Once Network Agent is installed:
|