For some Azure resources, the Commvault Cloud software supports the use of a managed identity on your Commvault Cloud access nodes, to give Commvault Cloud access to the resources. Using a managed identity is the securest and simplest way to give Commvault Cloud access to your Azure resources.
The type of managed identity that is supported—system assigned, user assigned, or both—depends on the type of Azure resource.
After you configure the managed identity, to the managed identity, assign Commvault Cloud custom roles or Azure built-in roles for the types of resources that you want to protect.
Procedure
-
Configure a system-assigned maanged identity or a user-assigned managed identity on the Azure VMs that you will use as Commvault Cloud access nodes.
For instructions, see Configure managed identities on Azure virtual machines (VMs).
-
To the managed identity, assign the required roles.
For instructions, see Assign Azure roles to a managed identity.