Kaspersky Anti Targeted Attack (KATA) Platform

Managing user-defined Sandbox rules

8 November 2023

ID 246747

Users with the Senior security officer and Administrator roles can create rules for scanning files and URLs in their user environments. If no rules are added, objects are not sent for scanning.

You can create, edit, delete, enable, or disable rules. File scanning rules can also be imported and exported.

You do not need to create rules to send objects for scanning in preset images: by default, Kaspersky Anti Targeted Attack Platform sends objects for scanning.

In distributed solution mode, you must create rules for scanning files in custom environments on each PCN and SCN server from which you want to send files for scanning.

Users with the Security auditor role can view the list of rules. Users with the Security officer role cannot view this section.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.