Kaspersky Security Center

Configuring a device selection

14 April 2024

ID 209943

Expand all | Collapse all

To configure a device selection:

  1. In the main menu, go to Devices → Device selections.

    A page with a list of device selections is displayed.

  2. Select the relevant user-defined device selection, and click the Properties button.

    The Device selection settings window opens.

  3. On the General tab, click the New condition link.
  4. Specify conditions that must be met for including devices in this selection.
  5. Click the Save button.

The settings are applied and saved.

Below are descriptions of the conditions for assigning devices to a selection. Conditions are combined by using the OR logical operator: the selection will contain devices that comply with at least one of the listed conditions.

General

In the General section, you can change the name of the selection condition and specify whether that condition must be inverted:

Invert selection condition

Network infrastructure

In the Network subsection, you can specify the criteria that will be used to include devices in the selection according to their network data:

  • Device name
  • Windows domain
  • Administration group
  • Description
  • IP range
  • Managed by a different Administration Server

In the Active Directory subsection, you can configure criteria for including devices into a selection based on their Active Directory data:

In the Network activity subsection, you can specify the criteria that will be used to include devices in the selection according to their network activity:

  • Acts as a distribution point
  • Do not disconnect from the Administration Server
  • Connection profile switched
  • Last connected to Administration Server
  • New devices detected by network poll
  • Device is visible

In the Cloud segments subsection, you can configure criteria for including devices in a selection according to their respective cloud segments:

  • Device is in a cloud segment
  • Device discovered by using the API

Device statuses

In the Managed device status subsection, you can configure criteria for including devices into a selection based on the description of the devices status from a managed application:

  • Device status
  • Real-time protection status
  • Device status description

In the Status of components in managed applications subsection, you can configure criteria for including devices in a selection according to the statuses of components in managed applications:

In the Status-affecting problems in managed applications subsection, you can specify the criteria that will be used to include devices in the selection according to the list of possible problems detected by a managed application. If at least one problem that you select exists on a device, the device will be included in the selection. When you select a problem listed for several applications, you have the option to select this problem in all of the lists automatically.

You can select check boxes for descriptions of statuses from the managed application; upon receipt of these statuses, the devices will be included in the selection. When you select a status listed for several applications, you have the option to select this status in all of the lists automatically.

System details

In the Operating system section, you can specify the criteria that will be used to include devices in the selection according to their operating system type.

  • Platform type
  • Operating system service pack version
  • Operating system bit size
  • Operating system build
  • Operating system release number

In the Virtual machines section, you can set up the criteria to include devices in the selection according to whether these are virtual machines or part of virtual desktop infrastructure (VDI):

  • This is a virtual machine
  • Virtual machine type
  • Part of Virtual Desktop Infrastructure

In the Hardware registry subsection, you can configure criteria for including devices into a selection based on their installed hardware:

Ensure that the lshw utility is installed on Linux devices from which you want to fetch hardware details. Hardware details fetched from virtual machines may be incomplete depending on the hypervisor used.

  • Device
  • Vendor
  • Device name
  • Description
  • Device vendor
  • Serial number
  • Inventory number
  • User
  • Location
  • CPU clock rate, in MHz, from
  • CPU clock rate, in MHz, to
  • Number of virtual CPU cores, from
  • Number of virtual CPU cores, to
  • Hard drive volume, in GB, from
  • Hard drive volume, in GB, to
  • RAM size, in MB, from
  • RAM size, in MB, to

Third-party software details

In the Applications registry subsection, you can set up the criteria to search for devices according to applications installed on them:

  • Application name
  • Application version
  • Vendor
  • Application status
  • Find by update
  • Name of incompatible security application
  • Application tag
  • Apply to devices without the specified tags

In the Vulnerabilities and updates subsection, you can specify the criteria that will be used to include devices in the selection according to their Windows Update source:

WUA is switched to Administration Server

Details of Kaspersky applications

In the Kaspersky applications subsection, you can configure criteria for including devices in a selection based on the selected managed application:

  • Application name
  • Application version
  • Critical update name
  • Application status
  • Modules last updated
  • Device is managed through Kaspersky Security Center 14.2
  • Security application is installed

In the Anti-virus protection subsection, you can set up the criteria for including devices in a selection based on their protection status:

  • Databases released
  • Database records count
  • Last scanned
  • Threats detected

In the Encryption subsection, you can configure the criterion for including devices in a selection based on the selected encryption algorithm:

Encryption algorithm

The Application components subsection contains the list of components of those applications that have corresponding management plug-ins installed in Kaspersky Security Center Web Console.

In the Application components subsection, you can specify criteria for including devices in a selection according to the statuses and version numbers of the components that refer to the application that you select:

  • Status
  • Version

Tags

In the Tags section, you can configure criteria for including devices into a selection based on key words (tags) that were previously added to the descriptions of managed devices:

Apply if at least one specified tag matches

To add tags to the criterion, click the Add button, and select tags by clicking the Tag entry field. Specify whether to include or exclude the devices with the selected tags in the device selection.

  • Must be included
  • Must be excluded

Users

In the Users section, you can set up the criteria to include devices in the selection according to the accounts of users who have logged in to the operating system.

  • Last user who logged in to the system
  • User who logged in to the system at least once

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.