Kaspersky
Solved

redstone feature upgarade in kes11


Badge
  • Junior Helper
  • 33 replies
Hi,

Is it possible after installing kes11 latest version 11.1.0.15919 then perform Full disk encryption. After that execute window update manually from the client system from internet. whether automatic feature upgrade is possible in this scenario. from 1809 to 1903 feature upgrade.
I dont want to use reflect drivers for feature upgrade on a encrypted system where kes 11.1.0.15919
is installed.
waiting for your expert level solution.

BR
icon

Best answer by Nikolay arinchev 23 May 2019, 08:56

Unfortunately, there is no way to update OS without decryption.
Sorry for inconvenience caused.
View original

14 replies

Userlevel 4
Badge +2
Hi,

You have to decrypt HDD before you can install Windows updates.
Badge
hi,

i have 120 machines fde is running with kes11. its not possible to decrypt then do windows update again then again encrypt them. its a hectic process. again microsoft will release another redstone update. then again i have to repeat the same process. its not possible in so many machines everytime. so there should be a process for feature upgrade without decrypting. symantec, sophos, trend micro already do the same without decrypting. so you should have also. please help.


BR
Userlevel 4
Badge +2
Unfortunately, there is no way to update OS without decryption.
Sorry for inconvenience caused.
Badge
Hi,

after using reflect driver command successfully os gets upgraded from 1809 to 1903. but all the software already installed gets corrupted , even kes11.1 & network agent gets corrupted.
I have followed this article for reference:
https://support.kaspersky.com/14209

I have attached the policy & GSI of the client system.

Download link
https://wetransfer.com/downloads/bb2f5933a92271f2459629e539dd19f620190527125941/b84276d3ce07b5f958759bb1c5882f0e20190527125941/25e6b4
2 files
GSI6_EDFX-LAPTOP-84_AbhishekP_05_27_2019_18_14_51.zip
kes11.1.klp

Please help to resolve the issue with high priority.

BR
Badge
Hi,

Still waiting for your positive response. Kindly provide proper resolution.

BR
Badge
hi

please reply. It's a serious issue. Customer is in pressure.
BR
Userlevel 2
Badge +1
Hello!
Please create an incident tot your company account and attach this log into it.
Thank you!
I was in the same situation.
HDD decryption is also must before each KES 11 upgrade to the newer version.
Therefore we decided switch to MS Bitlocker. It's far more better solution for big companies.
Badge
H,
As you said windows 10 feature upgrade is possible without decryption in ms bitlocker. So kaspersky already have bitlocker encryption. Can we try this option. Will it work please confirm.
So we can proceed accordingly.

BR
Badge
Hi,

Still waiting for your quick response.

Thank You
Userlevel 4
Badge +2
If bitlocker encryption is used there is no need to decrypt data before OS update.
Badge
Hi,

I have tried fde with bitlocker encryption provided by kaspersky. Still asking to decrypt data before OS update.

BR
Badge
Hi,

Still waiting for your positive resposne.

Thank You
Badge
Hi,

Is it possible Single-Sign-On in Bitlocker FDE from KSC11. Kindly reply.

BR

Reply / Ответить