KESL

The following are recommendations for configuring Kaspersky Endpoint Security for Linux (KESL) to ensure that it operates smoothly with Deckhouse Kubernetes Platform (whatever edition you choose).

To ensure compatibility with DKP, the following tasks must be disabled on the KESL side:

  • Firewall_Management (ID: 12).
  • Web Threat Protection (ID: 14).
  • Network Threat Protection (ID: 17).
  • Web Control (ID: 26).

Note that the task list may be different in future KESL versions.

Ensure that your Kubernetes nodes meet the minimum resource requirements specified for DKP and KESL.

If KESL and DKP are run together, you may be required to do some performance tuning as per Kaspersky recommendations.