To give the Commvault Cloud software access to the Azure VMs that you want to back up, you need an Azure application. If you want to create an Azure application manually or if you already have an Azure application that you use for Commvault Cloud, use the custom configuration wizard.
If you want the Commvault Cloud software to create an Azure application for you, use the express configuration wizard.
Before You Begin
-
If you do not have an Azure app, register the Azure app. For instructions, see Configuring Access to Azure Resources.
-
To access Azure resources using a managed identity, see Configuring a Managed Identity.
Procedure
-
To create a cloud account, click +.
The Add cloud account dialog box appears.
-
In the Name box, enter a name for the cloud account.
-
In the Subscription ID box, enter the subscription ID.
To connect using a managed identity, you can assign a Contributor role or a custom role to the subscription.
-
To enter a credential, do one of the following:
-
From the Credential list, select an Azure IAM application credential for the account.
-
Click + to create a new Azure IAM application credential and enter or select the following information:
-
From the Credential Vault list, select the credential vault where you want to store the new credential.
-
In the Credential name box, enter a name for the credential.
-
In the Tenant ID box, enter the tenant ID.
-
In the Application ID box, enter the application ID.
-
In the Application secret box, enter the application secret.
-
From the Environment list, select the environment.
-
To display or modify the endpoints, move the Show endpoints toggle to the right.
The endpoint includes the DNS name or the IP address, a colon, and the port number.
-
Click Save.
-
-
-
Click Save.
-
To define a custom role, do the following:
-
Log on to the public Azure portal with service administrator credentials.
-
Use CommvaultCloudAzureDBBackupRole.json and assign it to back up Azure databases.
For more information about creating a custom role, go to Custom roles for Azure resources on the Microsoft Azure documentation website.
-
On the Access Control (IAM) tab, click Add, and then select Add role assignment.
The Add role assignment pane appears.
-
Specify the following:
-
From the Role list, select the custom role that you created.
-
From the Assign access to list, select User, group, or service principal.
-
In the Select box, enter the application name, and then select the application.
-
-
Click Save.
-