|
Concerning to Kaspersky Anti-Virus 6.0 for Windows Servers Enterprise Edition
In Kaspersky Anti-Virus 6.0 for Windows Servers Enterprise Edition an administrator of the protected server can see Anti-Virus SNMP counters and traps. These counters and traps can be displayed by any software which supports such possibility.
The following should be installed to provide such functional:
1. Simple Network Management Protocol (SNMP) support must be installed on the server before the anti-virus application.
2. The application component SNMP protocol support should be installed with Kaspersky Anti-Virus 6.0 for Windows Servers Enterprise Edition.
3. SNMP Service should be configured correctly and launched on the protected server.
4. On the administrator’s workstation with the data processing software installed the following services should be configured correctly and launched for the data received by SNMP:
Perform the following actions to install the software:
1. To install SNMP support on the server where you want to install Kaspersky Anti-Virus 6.0 for Windows Servers Enterprise Edition, do the following:
1.1. Open Control Panel>Add or Remove Programs> Add/Remove Windows Components.
1. 2. Select Management and Monitoring Tools and click the Details button.

1. 3. In the open window check the box Simple Network Management Protocol.

Click OK. Click Next.
2. Install Kaspersky Anti-Virus 6.0 for Windows Servers Enterprise Edition on the same server.
During installation make sure that SNMP protocol support is selected for installation.

3. On the protected server open the Services console: go to Start > Run > enter services.msc > click OK.
4. Right-click SNMP Service and select Properties.
5. Go to the Traps tab and configure the following:
-
in the field Community name either choose or add a community name (in the figure my_community);
-
In the Trap destinations field enter a name or an IP-address of the administrator’s workstation with the data processing software installed.

6. Go to the Security tab and configure the following:
-
check the box Send authentication trap;
-
in the field Accepted community names add the community defined on the Traps tab and give this community the rights READ ONLY and NOTIFY.
-
at the bottom of the window select the value Accept SNMP packets from these hosts and in the field add a name or an IP-address of the administrator’s workstation with the data processing software installed
Click OK.
7. Make sure SNMP Service has been started.
8. On the administrator’s workstations with the data processing software installed open the Services console: go to Start > Run > enter services.msc > click OK.
9. Right-click SNMP Service and select Properties.
10. Go to the Security tab and configure the following:
-
in the field Accepted community names add the community defined on the server and give it the NOTIFY right.
-
at the bottom of the window define the value of Accept SNMP packets from these hosts and in the field add the name or the IP-address of the protected server.
11. Make sure SNMP Service and SNMP Trap Service have been launched
12. To make sure that SNMP Service works on the server, install the sniffer (utility to analyze the network traffic) and copy the test Eicar virus onto the protected server.
The results of the network sniffing should look like the following:
The MIB files are located in the following directory by default: %programfiles%\Kaspersky Lab\Kaspersky Anti-Virus 6.0 For Windows Servers Enterprise Edition\mibs.
|