NetBackup™ Web UI Cloud Administrator's Guide

Last Published:
Product(s): NetBackup (10.2)
  1. Managing and protecting cloud assets
    1.  
      About protecting cloud assets
    2.  
      Limitations and considerations
    3. Configure Snapshot Manager's in NetBackup
      1.  
        Configure a third-party CA certificate
      2.  
        Add a Snapshot Manager
      3. Add a cloud provider for a Snapshot Manager
        1.  
          IAM Role for AWS Configuration
      4.  
        Associate media servers with a Snapshot Manager
      5.  
        Discover assets on Snapshot Manager
      6.  
        Edit a Snapshot Manager
      7.  
        Enable or disable a Snapshot Manager
      8.  
        (Optional) Add the Snapshot Manager extension
    4. Managing intelligent cloud groups
      1.  
        Create an intelligent cloud group
      2.  
        Delete an intelligent cloud group
    5. Protecting cloud assets or intelligent cloud groups
      1.  
        Customize or edit protection for cloud assets or intelligent groups
      2.  
        Remove protection from cloud assets or intelligent groups
    6.  
      Cloud asset cleanup
    7.  
      Cloud asset filtering
    8.  
      AWS and Azure government cloud support
    9. About protecting Microsoft Azure resources using resource groups
      1.  
        Before you begin
      2.  
        Limitations and considerations
      3. About resource group configurations and outcome
        1.  
          Examples of resource group configurations
      4.  
        Troubleshoot resource group permissions
    10. About the NetBackup Accelerator for cloud workloads
      1.  
        How the NetBackup Accelerator works with virtual machines
      2.  
        Accelerator forced rescan for virtual machines (schedule attribute)
      3.  
        Accelerator backups and the NetBackup catalog
      4.  
        Accelerator messages in the backup job details log
    11.  
      Configuring backup schedule for cloud workloads
    12.  
      Backup options for cloud workloads
    13.  
      Snapshot replication
    14.  
      Configure AWS snapshot replication
    15.  
      Using AWS snapshot replication
    16.  
      Support matrix for account replication
    17.  
      Protect applications in-cloud with application consistent snapshots
    18. Protecting PaaS assets
      1.  
        Prerequisites for protecting PaaS assets
      2. Installing the native client utilities
        1.  
          Installing the MySQL client utility
        2.  
          Installing sqlpackage client utility
        3.  
          Installing Postgres client utility
      3.  
        Configuring the storage server for instant access
      4.  
        About incremental backup for PaaS workloads
      5.  
        Limitations and considerations
      6.  
        Discovering PaaS assets
      7.  
        Viewing PaaS assets
      8.  
        Managing PaaS credentials
      9.  
        View the credential name that is applied to a database
      10. Add credentials to a database
        1.  
          Creating an IAM database username
        2.  
          Creating a system or user managed identity username
      11.  
        Add protection to PaaS assets
      12.  
        Perform backup now
  2. Recovering cloud assets
    1.  
      Recovering cloud assets
    2.  
      Perform rollback recovery of cloud assets
    3. Recovering PaaS assets
      1.  
        Recovering non-RDS PaaS assets
      2.  
        Recovering RDS-based PaaS asset
      3.  
        Recovering Azure protected assets
      4.  
        Recovering duplicate images from AdvancedDisk
  3. Performing granular restore
    1.  
      About granular restore
    2.  
      Supported environment list
    3.  
      List of supported file systems
    4.  
      Before you begin
    5.  
      Limitations and considerations
    6.  
      Restoring files and folders from cloud virtual machines
    7.  
      Restoring volumes on cloud virtual machines
    8.  
      Troubleshooting
  4. Troubleshooting protection and recovery of cloud assets
    1.  
      Troubleshoot cloud workload protection issues
    2.  
      Troubleshoot PaaS workload protection and recovery issues

Add a cloud provider for a Snapshot Manager

You can protect the assets on the Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure, and Microsoft Azure Stack Hub cloud providers. Starting with 9.0, the Snapshot Manager can discover Amazon Web Services and Microsoft Azure US Government cloud workloads.

To add a cloud provider for Snapshot Manager

  1. On the left, click Cloud.
  2. Click the Providers tab or click Add under the cloud provider for which you want to add a configuration.
  3. Enter a value in the Configuration Name field, in the Add configuration pane.
  4. Select the preferred Snapshot Manager.
  5. Enter the required details.

    Cloud provider

    Parameter

    Description

    Microsoft Azure

    Credential type: Application service principal

    Tenant ID

    The ID of the AAD directory in which you created the application.

    Client ID

    The application ID.

    Secret key

    The secret key of the application.

    Credential type: System managed identity

    Enable system managed identity on Snapshot Manager host in Azure.

    Note:

    Assign a role to the system managed identity.

    Credential type: User managed identity

    Client ID

    The ID of the user managed identity connected to the Snapshot Manager host.

    Following parameters are applicable for all the above credential type's

    Regions

    One or more regions in which to discover cloud assets.

    Note:

    If you configure a government cloud, select US Gov Arizona, US Gov Texas US, or Gov Virginia.

    Resource Group prefix

    The string with which you want to append all the resources in a resource group.

    Protect assets even if prefixed Resource Groups are not found

    The check box determines whether the assets are protected if they are not associated to any resource groups.

    Microsoft Azure Stack Hub

    Using AAD:

    Azure Stack Hub Resource Manager endpoint URL

    The endpoint URL in the following format, that allows Snapshot Manager to connect with your Azure resources.

    https://management.<location>.<FQDN>

    Tenant ID

    The ID of the AAD directory in which you created the application.

    Client ID

    The application ID.

    Secret Key

    The secret key of the application.

    Authentication Resource URL (optional)

    The URL where the authentication token is sent to.

    Using ADFS:

    Azure Stack Hub Resource Manager endpoint URL

    The endpoint URL in the following format, that allows Snapshot Manager to connect with your Azure resources.

    https://management.<location>.<FQDN>

    Tenant ID

    The ID of the AAD directory in which you created the application.

    Client ID

    The application ID.

    Secret Key

    The secret key of the application.

    Authentication Resource URL (optional)

    The URL where the authentication token is sent to.

    Amazon AWS

    Note:

    If the Snapshot Manager is configured with IAM Config, the Access Key and Secret Key options are not available.

    Access Key

    The access key ID, when specified with the secret access key, authorizes Snapshot Manager to interact with the AWS APIs.

    Secret Key

    The secret key of the application.

    Regions

    One or more AWS regions in which to discover cloud assets.

    Note:

    If you configure a government cloud, select us-gov-east-1 or us-gov-west-1.

    Google Cloud Platform

    Project ID

    The ID of the project from which the resources are managed. Listed as in the project_id JSON file.

    Client Email

    The email address of the Client ID. Listed as client_email in the JSON file.

    Private Key

    The private key. Listed as private_key in the JSON file.

    Note:

    You must enter this key without quotes. Do not enter any spaces or return characters at the beginning or end of the key.

    Regions

    A list of regions in which the provider operates.

  6. Enter the connection and authentication details in the Add Configuration pane.
  7. Click Save.

The assets on the cloud providers are automatically discovered.