Kaspersky Endpoint Security 12 for Windows

EDRKATA. Integration with EDR (KATA)

25 April 2024

ID 236765

Commands for managing the Endpoint Detection and Response component (KATA):

  • Enable or disable the EDR (KATA) component.

    The EDR component (KATA) provides interoperability with the Kaspersky Anti Targeted Attack Platform solution.

  • Configure the connection to Kaspersky Anti Targeted Attack Platform servers.
  • Display the current settings of the component.

Command syntax

avp.com START EDRKATA

avp.com STOP EDRKATA

avp.com edrkata /set /servers=<server address>:<port> /server-certificate=<path to the TLS certificate> [/timeout=<Central Node server connection timeout (s)>] [/sync-period=<Central Node server synchronization period (min)>]

avp.com edrkata /show

Operation

 

stop

Disable the EDR (KATA) component.

start

Enable the EDR (KATA) component.

set

Configure the EDR (KATA) component. You can modify the following settings:

  • Add Central Node servers (servers=<server address>:<port>).
  • Add a TLS certificate(server-certificate=<path to the TLS certificate>).
  • Set the Central Node server connection timeout (/timeout=<Central Node server connection timeout (seconds)>).
  • Set the period for synchronization with the Central Node server (/sync-period=<Central Node server synchronization period (minutes)>).

show

Display the current settings of the component.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.