User's Manual
24 Kaspersky Administration Kit
Select isolated sections within the network and determine the number of
Administration servers that must be installed. It is recommended to ensure
interaction between the main and the slave Administration servers using fast
communication channels that will allow to considerably decrease the load on the
communication channels and increase the system reliability.
Which computers in the corporate network structure will function as the main
Administration server, the slave servers administrator workstations, and client
computers? Note that all computers on which Kaspersky Lab applications are
installed will act as client computers.
What criteria will be used to organize client computers in groups? What will be
the group hierarchy?
What deployment scenario will be used: remote or local installation?
In the next stage, the administrator has to build a logical network, i.e., install the
following Kaspersky Administration Kit components on networked computers:
Install the Administration Server on computers within the corporate network.
Install the Administration Console on computers from which the administration
will be provided.
Make decision regarding assigning of the logical network administrators,
determine which other user categories will interact with the system and assign a
list of functions to be performed to each category.
Create lists of users and grant to each group access rights required to perform
access rights functions assigned to this group.
After this, it is required to create a hierarchy of the Administration servers and for
each Server create a logical network structure as follows: create a hierarchy of
the administration groups and distribute computers among the corresponding
groups.
In the next stage, you should install the Network Agent and selected Kaspersky
Lab applications on client computers and install the corresponding Console Plug-
ins on the administrator workstation
If you use the remote installation option, the Network agent may be installed
together with any application, in this case no separate installation of the Network
agent is required.
Finally, you should configure the installed applications by assigning and applying
group policies (see section Chapter 4 on page 47) and creating tasks (see
section 4.1.2 on page 51).
Using Initial Configuration Wizard, the administrator can easily build an anti-virus
protection system for his/her network and briefly configure it (for the detailed
description of the wizard, see 3.2 on page 34). Briefly configuring the anti-virus
protection system means creating a logical network identical to the domain
structure of the Windows network and rolling out the protection system based on
Versions 5.0 and 6.0 of Kaspersky Anti-Virus 5.0 for Windows Workstations.