User accounts for installing and using the application

25 March 2022

ID 58064

To install the Kaspersky Security administration plug-in and Integration Server, you need a user account that belongs to the group of local administrators on the computer where installation is performed.

If the computer hosting the Kaspersky Security Center Administration Console belongs to a Microsoft Windows domain, connection to the Integration Server requires a domain account that belongs to the KLAdmins group or an account that belongs to the group of local administrators.

To prevent unauthorized access, it is recommended to ensure the security of the account that is used to connect to the Integration Server.

Deployment and removal of SVMs with Kaspersky Security components requires a VMware NSX Manager account that has been assigned the Enterprise Administrator role.

The name and password of the administrator account are not saved in the application settings.

For proper operation of the application, it is recommended to use a VMware vCenter server account that has been assigned the preset ReadOnly system role. To ensure that powered off virtual machines can be scanned, the following privileges need to be assigned to this account:

  • Virtual machine.Change Configuration.Add existing disk
  • Virtual machine.Change Configuration.Add or remove device
  • Virtual machine.Change Configuration.Remove disk
  • ESX Agent Manager.Modify

The user account username and password are stored on the Integration Server in an encrypted format.

Roles should be assigned to user accounts at the top level of the hierarchy of VMware inventory objects, that is, at the level of VMware vCenter Server.

For information on how to create user accounts in a VMware infrastructure, please refer to VMware documentation.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.