Protecting large infrastructures
If the solution is used to protect a large infrastructure (more than 50,000 protected virtual machines), the solution components' interaction with the virtual infrastructure as information about the SVMs is sent to Light Agents can increase the load on the virtual infrastructure.
To optimize the solution's performance in large infrastructures, it is recommended to configure the solution settings as follows:
If a Light Agent uses the extended SVM selection algorithm, a list of SVM addresses is selected as the SVM discovery method, and large infrastructure protection mode is enabled on an SVM, then connecting a Light Agent to this SVM is only possible if Light Agent ignores the SVM path.
You can use the Web Console or the Administration Console to enable or disable the large infrastructure protection mode when creating or editing a Protection Server policy.
Expand all | Collapse all
How to enable large infrastructure protection mode in Kaspersky Security Center Web Console
To enable Large infrastructure protection mode:
- In the main window of Kaspersky Security Center Web Console, select Assets (Devices) → Policies and policy profiles.
A list of policies opens.
- Select the administration group containing the SVM with the Protection Server whose settings you want to configure. To do so, click the link in the Current path field located above the list of policies and policy profiles, and select an administration group in the window that opens.
The list displays only the policies configured for the selected administration group.
- Click on the name of the desired policy in the list.
- In the policy properties window that opens, select the Application settings tab and go to the Large infrastructure protection settings section.
- On the right side of the window, configure the Enable optimization for protection of large infrastructures option.
Enabling/disabling large infrastructure protection mode.
This mode lets you optimize the operation of the Protection Server in order to reduce the load on the virtual infrastructure.
If the mode is enabled, it is recommended to use the extended SVM selection algorithm.
This check box is cleared by default.
- Click the Save button.
How to enable large infrastructure protection mode in Kaspersky Security Center Administration Console
To enable Large infrastructure protection mode:
- In the Kaspersky Security Center Administration Console tree, in the Managed devices folder, select the administration group containing the SVM with the Protection Server whose settings you want to configure.
- In the workspace, select the Policies tab.
- Select a Protection Server policy in the list of policies and right-click to open the Properties: <Policy name> window.
- In the policy properties window, in the list on the left, select the Large infrastructure protection settings section.
- On the right side of the window, configure the Enable optimization for protection of large infrastructures option.
Enabling/disabling large infrastructure protection mode.
This mode lets you optimize the operation of the Protection Server in order to reduce the load on the virtual infrastructure.
If the mode is enabled, it is recommended to use the extended SVM selection algorithm.
This check box is cleared by default.
- Click the Apply button.
Page top
[Topic 74322]