Kaspersky Embedded Systems Security 3.x

Configuring the File Integrity Monitor task

10 March 2023

ID 149503

To configure general File Integrity Monitor task settings:

  1. Expand the Managed devices node in the Kaspersky Security Center Administration Console tree.
  2. Select the administration group for which you want to configure application settings.
  3. Perform one of the following actions in the details pane of the selected administration group:
    • To configure application settings for a group of protected devices, select the Policies tab and open the Properties: <Policy name> window.
    • To configure the application for a single protected device, select the Devices tab and open the Application settings window.

      If an active Kaspersky Security Center policy is applied to a device and blocks changes to application settings, then these settings cannot be edited in the Application settings window.

  4. In the System inspection section in the File Integrity Monitor subsection, click the Settings button.

    The File Integrity Monitor window opens.

  5. In the File operations monitoring settings tab in the window that appears, configure the following settings:
    • Clear or select the Log information about file operations that appear during the monitoring interruption period check box.
    • Clear or select the Block attempts to compromise the USN log check box.
    • Select or clear the Apply Trusted Zone check box as applicable.
    • Add the monitoring scopes to be monitored by the task.
  6. On the Task management tab, configure the task settings for starting the task on a schedule.
  7. Click OK to save the changes.

Kaspersky Embedded Systems Security immediately applies the new settings to the running task. Information about the date and time of settings modification are saved in the system audit log.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.