You can add a cloud account for backing up and restoring Azure Blob Storage.
Before You Begin
If you do not have a registered Azure app, configure access to Azure resources.
Procedure
-
To create a cloud account, click +.
The Add cloud account dialog box appears.
-
In the Name box, enter a name for the cloud account.
-
In the Subscription ID box, enter the subscription ID.
To connect using a managed identity, you can assign a Contributor role or a custom role to the subscription.
-
To enter a credential, do one of the following:
-
From the Credential list, select an Azure IAM application credential for the account.
-
Click + to create a new Azure IAM application credential and enter or select the following information:
-
From the Credential Vault list, select the credential vault where you want to store the new credential.
-
In the Credential name box, enter a name for the credential.
-
In the Tenant ID box, enter the tenant ID.
-
In the Application ID box, enter the application ID.
-
In the Application secret box, enter the application secret.
-
From the Environment list, select the environment.
-
To display or modify the endpoints, move the Show endpoints toggle to the right.
The endpoint includes the DNS name or the IP address, a colon, and the port number.
-
Click Save.
-
-
-
Click Save.
-
To define a custom role, do the following:
-
Log on to the public Azure portal with service administrator credentials.
-
Use CommvaultCloudAzureDBBackupRole.json and assign it to back up Azure databases.
For more information about creating a custom role, go to Custom roles for Azure resources on the Microsoft Azure documentation website.
-
On the Access Control (IAM) tab, click Add, and then select Add role assignment.
The Add role assignment pane appears.
-
Specify the following:
-
From the Role list, select the custom role that you created.
-
From the Assign access to list, select User, group, or service principal.
-
In the Select box, enter the application name, and then select the application.
-
-
Click Save.
-