To set up a recovery group for cleanroom recovery, add a recovery group, and then add entities to the recovery group.
A recovery group is a logical container of entities to recover into the cleanroom. Recovery groups can be utilized to group entities together that make up an application to ensure they are recovered in the correct sequence and to the same point in time. All entities in a recovery group will inherit the recovery settings of the recovery group.
Adding a Recovery Group When the Recovery Target Is Pre-Created
1. From the Command Center navigation pane, go to Service Catalog.
2. On the Cleanroom Recovery tile, click Configure.
The Select Cleanroom page appears.
3. Select Microsoft Azure, and then click Next.
4. In the Recovery group name box, enter a name for the recovery group.
5. If you have a pre-created target and a hypervisor, from the Target list, select the recovery target.
For instructions about creating a recovery target, see Creating a Cleanroom Recovery Target.
6. From the Default recovery point list, select the recovery point for the recovery group.
Selecting Automatic recovery points streamlines the cyber recovery process by integrating with external security tools such as SIEM/SOARs. These tools pinpoint compromised servers and their exact time of infection, allowing Commvault Cloud to automatically rewind to the last known good state. In lieu of external tools, you can use blast radius reports or delimited files to determine last known good state, instead of manually picking the point in time for every server. Finally, Commvault Cloud software has anomaly detection capabilities that ensure infected backups are excluded, further safeguarding recovered data. If no such exclusions exist, the most recent recovery point is selected.
7. Click Save.
The details page for the recovery group you created appears.
Adding a Recovery Group When the Recovery Target Is Not Pre-Created
-
From the Command Center navigation pane, go to Service Catalog.
-
On the Cleanroom Recovery tile, click Configure.
The Select Cleanroom page appears.
-
Select Microsoft Azure, and then click Next.
The General page of the Add recovery group wizard appears.
-
In the Recovery group name box, enter a name for the recovery group.
-
Beside Target list, click the add button
.
The General page of the Add Microsoft Azure Target wizard appears.
For instructions about creating an Azure target, see Creating an Azure Cleanroom Recovery Target.
-
From the Default recovery point list, select the recovery point for the recovery group.
-
Click Save. The details page for the recovery group you created appears.
Adding Entities to a Recovery Group
You can add VMs and files to a recovery group.
Adding Virtual Machines
-
On the recovery group details page, on the Entities tab, click Add, and then select Virtual machines.
The Add virtual machines page appears.
-
From the Browse and select VMs list, select By hypervisor or By VMs.
-
Select the VMs to add.
-
If you are recovering Azure VMs, VMware VMs, or Nutanix AHV to an Azure Cleanroom, you can rebuild the VMs with a secure image:
-
Move the Repave VM with new secure image toggle key to the right.
-
From the Image option list, select the OS image to create the new VMs from.
-
Enter the credentials for the VM's OS.
-
If you don't want to attach the OS disk to the new VM, select Skip attaching OS disk.
If you leave this setting unselected, the OS disk is attached to the new VM, as a data disk.
Note
In Nutanix, all selected disks will be attached as data disks, even if the Skip OS Disk option is selected.
-
-
Click Add.
Adding Files
You can add files at the sub-client level to the recovery group.
-
On the recovery group details page, on the Entities tab, click Add, and then select Files.
The Add files page appears.
-
From the Browse by list, select All or choose a particular file server, such as Windows, NAS and Nutanix files.
-
Select the subclients that you want to add to the recovery group.
-
Click Add.