<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Kaspersky Security for Storage Server Base?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Storage protection engine</strong> – Scans NAS files on access and on demand.<br /> <strong>Kaspersky Security Center</strong> – Central console for installation, policies, updates and reports.<br /> <strong>Multi-protocol NAS integration</strong> – Connects through the CAVA agent, RPC and ICAP.<br /> <strong>Anti-Cryptor for NetApp</strong> – Blocks a host that starts encrypting NetApp shares.<br /> <strong>Quarantine and backup</strong> – Unmodified copy stored before any action on an object.<br /> <strong>Important</strong> – No EDR, patch management, encryption or mobile components.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Kaspersky Security for Storage Server Base?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Security for Storage is a dedicated anti-malware layer for network attached storage and Windows file servers, delivered as Kaspersky Security for Windows Server together with the Kaspersky Security Center console. The earlier generation was sold as Kaspersky Anti-Virus for Storage, and Base here means a new stand-alone licence rather than a renewal or an add-on to an existing licence.<br /><br /> <strong>Scanning off the endpoint</strong> – NAS files checked without an agent per client.<br /> <strong>Ransomware host blocking</strong> – Encrypting hosts are blocked, then unblocked after 30 minutes.<br /> <strong>Scan load control</strong> – Trusted zones and iSwift or iChecker reduce rescans.<br /> <strong>Fault tolerant operation</strong> – The service restarts automatically after a forced shutdown.<br /> <strong>Role based administration</strong> – Privilege levels assigned per server administrator account.<br /> <strong>Evidence capable reporting</strong> – Graphical reports plus Windows and console event logs.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains where the built-in Windows protection stops and why shared storage needs its own scanning layer.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Kaspersky Security for Storage Server Base suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The deciding factor is not headcount but whether a NAS appliance or a central file server actually holds your working data. A company with ten staff and a NetApp or Hitachi appliance has a stronger case for this product than a company with two hundred staff whose files sit entirely in a cloud service.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Usually</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Usually</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Dedicated NAS or central file server in use</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Sometimes</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Only with NAS</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Security for Storage Server Base meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The Swiss reporting obligation applies to operators of critical infrastructure, not to every company: energy and drinking water suppliers, transport operators, listed hospitals, data centre and cloud providers, and cantonal or communal administrations are the typical addressees, with thresholds in the Cybersecurity Ordinance exempting smaller organisations. Since 1 April 2025 those organisations must report a significant cyberattack to the Federal Office for Cybersecurity (BACS) within 24 hours of discovery, with a further 14 days to complete the report. What this product contributes to that deadline is detection evidence: an encryption attempt on a protected NetApp share raises a critical event, blocks the originating host and writes a timestamped entry to the Kaspersky Security Center log, which is exactly the material a first report needs within one day. What it does not contribute is the process around it, because it does not determine whether you are subject to the obligation, does not produce the report, and does not see endpoints, mail or identity systems where most incidents actually begin. It also gives no attack timeline beyond file operations on storage, so root cause work still depends on other logs. This text is not legal advice, and whether your organisation falls under the reporting obligation should be assessed with your own legal counsel.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Security for Storage Server Base meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No product makes an organisation NIS 2 compliant, because the directive places obligations on entities and their management, not on software. NIS 2 requires categories of measure including risk analysis and security policies for information systems, incident handling, business continuity and backup management, supply chain security, and procedures to assess whether the measures are effective. This product maps to two of those: it is a technical protection measure for stored data, and its logging and host blocking feed incident handling. It contributes nothing to backup and recovery, nothing to supply chain assessment of your own suppliers, nothing to governance or management training, and nothing to vulnerability handling. For an entity in scope, storage anti-malware is one control in a much larger set, and the gaps above have to be closed with separate tooling and documented processes.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What should you know about official assessments of Kaspersky?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">On 15 March 2022 the German Federal Office for Information Security (BSI) published a product warning against the use of Kaspersky antivirus software, reasoning that antivirus products hold deep system rights and therefore require trust in the manufacturer's reliability and independent capacity to act. The warning is still in force in 2026 and is now governed by Section 13 of the amended BSI Act, which took effect on 6 December 2025. Kaspersky rejects the assessment, states that it rests on political rather than technical grounds, has formally asked the BSI to withdraw it, and reserves the right to take legal steps. Separately, the United States Bureau of Industry and Security prohibited new sales in 2024 and antivirus updates from 29 September 2024, and added Kaspersky entities to the Entity List, which is why the product is neither sold nor updatable there. In Germany and Switzerland this is a recommendation rather than a ban, so the practical question is contractual: public sector tenders, critical infrastructure operators and supplier questionnaires from large customers increasingly ask about vendor country of origin, and a company facing those clauses will find this product hard to defend regardless of its technical merits. A company without such clauses is under no legal restriction, and the decision belongs to the buyer.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="norton-vs-kaspersky-2025"><strong>Norton vs. Kaspersky – Which antivirus program offers the best protection in 2025?</strong><br />Compares detection performance and product scope between the two vendors if you are weighing an alternative.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Security for Storage Server Base help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Partly, and the gaps are as important as the answers. It answers questions on malware protection for storage systems, on ransomware protection for network shares, on centrally enforced policies, on role-based administrator rights, on automatic signature updates, and on logging and reporting, because reports can be exported from Kaspersky Security Center and from the Windows event log. It does not answer questions on endpoint detection and response, on vulnerability and patch management, on encryption at rest and key custody, on multi-factor authentication, on backup and restore testing, on mobile device management, on email security, or on structured SIEM integration. It also does not answer the vendor origin question, which is the one item where moving up within the same family does not help. For the technical gaps, a higher tier in the Kaspersky Next range that adds detection and response is normally cheaper and simpler to operate than mixing vendors; for the origin question, no edition change closes it, and that is worth knowing before you fill in the form.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Regional availability is the first limitation: following the United States prohibition, the product cannot be sold or updated there, so it is not an option for a US site of an international group. The scanning component runs on Windows Server, which means a Windows node has to exist even when the storage itself is a Linux-based appliance. Encryption blocking is also not uniform across platforms, because the FPolicy-based Anti-Cryptor is a NetApp feature and is not supported on FlexGroup volumes, Windows shared folders are covered by the general Anti-Cryptor component, and other NAS platforms receive malware scanning over ICAP or RPC without that blocking layer. The components that most often trigger a follow-up purchase are simply absent: there is no EDR, no patch management, no encryption management, no mobile coverage and no mail server scanning, and storage protection does not replace endpoint protection. Finally, Base is a new stand-alone licence and is not the correct article for extending an existing licence of the same product.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="data-loss-backups-avoid-outages"><strong>Data loss is expensive: How backups help you avoid outages</strong><br />Covers why blocking an encryption attempt is only half the answer and what a restore plan has to provide.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Kaspersky Security for Storage Server Base</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Is the management console cloud based or installed on your own server?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Security Center runs in your own infrastructure and is operated through its administration console or web console. The protected server can additionally be managed locally through the application console or from the command line.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does the software run on the NAS device itself?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. The scanning component runs on a Windows server, and the storage system talks to it through the CAVA agent, RPC or ICAP. The appliance sends each file operation for a verdict and then applies the answer it receives.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What if we already hold Kaspersky Endpoint Security for Business?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Security for Windows Server is also offered within Kaspersky Endpoint Security for Business, so check what your existing agreement already covers before ordering. This article is a new stand-alone licence for the storage product and does not extend an existing one.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-server,sec-console" data-audience="b2b" data-count="3"> </div>