Ask questions, give answers, get good karma
- 3,463 Topics
- 15,943 Replies
Intellisnap for Oracle
Hello All,I need a clarity on proxy client system requirements - IntelliSnap for oracle.As per the documentation, Its mentioned the FS copy don't need oracle software to be installed in this case what should be the server compute resourcesfor RMAN copy - Its mentioned we need Oracle license as we will installing the oracle software along with our Oracle IDA and Media agent, in this case what should be the server compute resources.Also when we say oracle software to be installed and the server will be used as proxy whether the proxy will auto create the instance on it during the backup copy or do we need to set up the dummy oracle instance same as source client on proxy? how does it work?The IntelliSnap configuration is same for Oracle RAC as well?RegardsAnanth
Encrypting network traffic at the CommServe.
Hi Community,Was exploring this setting from security point , had few doubts.https://documentation.commvault.com/11.24/expert/125170_encrypting_network_traffic_at_commcell_level.htmlDoes Encrypt network traffic at the CommCell level means we are encrypting communication which is happening within Commserve ( i guess communication with CS database ) and this setting doesn't concern about the communication between CS and Media agents or Clients ? if this is not the case , what type traffic actually we are encrypting using this setting and how can i check if my current traffic within CS is not encrypted ? An real example if i dont enable this setting , what could be the possible impact to my CS . What changes will happen to my CS after enabling this settings , any impact to backups and restores , dedupe , aux copies etc ? If i enable this setting and do not perform next steps which are Enforcing and Encrypting Automatic Tunneling to clients and encrypt backup data , does enabling this se
Information extraction from log files for SIEM/SOC
Hi,I'm looking for documentation around the ability to index logging related security events for SIEM/SOC purposes. Commvault software by default generates tons of log files and for me (and I suppose a lot of other customers) it is hard to get specific information from the Commvault logs for different purposes then troubleshooting. Besides that I'm looking for guidance on this, just to make sure the information can be collected in a consistent way so you are safeguarded that a future update will not break this. I'm especially looking for information how to get all information from the logs that gives me insights in things like:Activity via REST API, Command Center, CommCell console, Apps, etc. Activity towards (and through) network gateways. Activity to/from functionality with external components like external REST API's, Key Vaults. Communication between client computers. Data retrieval e.g. who is retrieving data from the platform via a restore, download functionality in Comman
How to get rid of WORM copy in primary DR policy
Hi all!as time went by, the disk space on the disk library associated with CommServerDR policy is full. Unfortunately, on the Primary copy of the CommServerDR policy WORM Copy settings has been enabled. Even worse, the retention period has been set to infinite.Would it be feasible to move the mount path/the disk library to the different disk and then concurrently create new policy copy in CommServerDR policy, that could be set as primary instead of current one?Or is just the only solution either reinstall all CV environment (as it is DR policy) or to ask support for eliminating the WORM copy?Any suggestions would be greatly appreciated!
Hi,According to the docs, https://documentation.commvault.com/commvault/v11/article?p=5430.htm , the following needs to be done in order to send alerts to SCOM:==From the CommCell Console ribbon, click the Home tab, and then click Control Panel. Click SCOM. In the SCOM Configuration dialog box, type the fully qualified host name of the SCOM Server. Type the credentials required to connect to the SCOM Server and click Apply. Note: The credentials must be for a user who has administrator rights to the SCOM Server == The problem is: Our scom administrator don’t want to give admin permissions to an external tool which they don’t manage. (neither do I).Is there a way to implement the scom monitoring without that part? (the management pack can be loaded on the scom of course)
HyperScale 1.5 Reference Architecture Upgrade
Hi All,We are running the HyperScale 1.5 Reference Architecture with RHEL on top of HP Apollo 4200 Gen9 servers. Now we planning to upgrade the OS to 7.9 through CV FR upgrade. I have few quries and would like to hear from people who did the upgrade already. As per CV, the upgrade takes around 60-90 min. What would be expected duration per node in real world. Is there any firmware pre-request required for this upgrade? Does anyone reverted the change successfully ? If yes, how long it takes per node Do we have any check point to validate the upgradation once completed for first node? instaed waiting till 6th Node upgrade. Thanks in Advance Mani
Any way to avoid 17:11 errors?
Hi, I’m wondering if there is any reg key that can be set for the subclients, in my case a Cloud Apps virtual client where the content rarely changes, so almost every day we get multiple 17:11 errors. Isn’t there some way to set a key that says “I don’t care if you didn’t find any content in the scan?”thanks
Recover of mailboxes to PST
Hi, I will be very appreciate for help. Backup Office 365, it's about recovering mailboxes, e.g. to PST The backup itself is performedCommunication between servers is.https://documentation.commvault.com/hitachivantara/v11/essential/7102_port_requirements_for_commvault.htmlBut I noticed something wrong.I mean the proxy server - CVINDEX:From ps it follows that there is no service installed on the CVINDEX server - index was previously, the operation with generating pst mailboxes was performed many times.Currently I cannot install it manually, it shows a problem with IIS,And in Windows IIS it works.
Google Workspace support
Hello Team As far as I can see “Google Mail and Google Drive” (known as G Suite/Google Workspace nowadays) is deprecated within FR26. Is that really true? Google Workspace is getting more and more popular, companies use not only Microsoft 365, but Google bundle as well so I am really surprised that Google Mail backup is will not be supported anymore.Do you have some other info or news from roadmap? I am wondering if I can still use this “deprecated” agent to protect G Suite or it’s not good idea as support is finishing. Kind regards,M.
hardware Intellisnap with arrays
Hello ! Today I’m trying to dig the doc about Intellisnap hardware features.I mean that I have storage arrays that can be used for hardware snapshots using Intellisnap.I have setup my array(s) and am able to perform hardware snaps and make backup copies of the data : no problem on that part.But, I’ve been challenged to see if Commvault would be able to browse (and IE to potentially recover) hardware snapshots that were not initiated by Commvault itself. Like the array-scheduled hardware snapshots of some LUNs.This is something that I tried to look for in the documentation, but could not find it.I only came to that part, which is very short : https://documentation.commvault.com/11.25/expert/36953_viewing_snapshots_or_clones_of_storage_array_using_array_management.html But this does not provides the expected result.It only provides the list of commvault-initiated snapshots (when there are). Are you aware of a hidden secret feature/extended attribute to setup, only available to the best c
Token Criteria does not work with criteria selection : Backup of subclient failed consecutively for X attempts
Hello team, We want to filter out a group from a backup alert, and it works fine with other options. However, we noticed a strange behavior that as long as we select the option “Backup for subclient failed consecutively for n attempts”, Commvault will never evaluate the “Group Token” or any other Token that we set in the Token Criteria to filter out a particular group from being alerted. Rather keeps sending an alert for the particular group that we want to be excluded. I have tested this in different ways, but it does not evaluate any Token Criteria that I defined at all, rather ignore whatever Token Criteria that I set and send an alert right away when job status including (job killed, the job failed, job completed with errors, killed by the system ) I suspected it's expected behavior as long as failed backup job status falls in the above failed backup job status. But our customer wants me to check with Commvault to see if this's expected or that is something that Commvault needs to
Hello guys,I have received the following message from the Customer: Hello,We observe following alerts on SLES 15.3 servers where Commvault agent is installed (please see below). We observe those alerts in log /var/log/warn .Commvault Kill-mode set to none in system configuration by default by installer.Could you please provide requirements of commvault agent regarding this setting, is it allowed to change it? Which Kill-mode values are allowed?Is this something we should fix/address?Thank you!Error examplesystemd1: /etc/systemd/system/commvault.Instance001.service:14: Unit configured to use KillMode=none. This is unsafe, as it disables systemd’s process lifecycle management for the service. Please update your service to use a safer KillMode=, such as 'mixed' or 'control-group'.Support for KillMode=none is deprecated and will eventually be removed.Service configuration/etc/systemd/system> cat commvault.Instance001.service[Unit]Description=commvault ServiceRequisite=cvunlock.servic
Commvault role for Splunk app?
Hello, I installed and configured the Commvault Splunk plugin available at: https://splunkbase.splunk.com/app/5718/ To respect the “least privilege” rule, I created a service account with the role “Report Management” on the Commcell to allow Splunk to retrieve the logs and jobs information. But it doesn’t work, here are the Splunk logs generated from the plugin:“2021-11-23 10:03:05.040906 click_result Attempting to login2021-11-23 10:03:05.598242 click_result ERROR 106 'NoneType' object is not subscriptable” First, I thought it was a password issue but when inserting a false password, I have another log:“2021-11-23 10:23:08.698105 click_result Password not entered. Please give a password2021-11-23 10:23:23.800388 click_result Attempting to login2021-11-23 10:23:23.880586 click_result ERROR Login Failed” I think I don’t gave enough rights to the Splunk service account to access the required information on the Commcell but I don’t want to give the “master” role to this account. I’ve trie
Questions on Ransomware on Linux Media Agents
Hi All, I have enabled ransomeware protection for Linux MA servers, i can see a context has been added to all the NFS mounts in fstab. entry. so if i want to add new NFS shares then do i have to manually add the same context to the new NAS share or i have to execute the same command which is mentioned in below link and then reboot the server ? https://documentation.commvault.com/11.24/expert/122761_ransomware_protection_for_disk_libraries_on_linux_mediaagent_01.html
Increase the session timeout for web command center?
Hello - I would like to extend the session timeout of the command center. I believe the default is 30 minutes. We’d like it to be longer. The only page I can find that mentions this is quite old. What are the current methods of increasing the timeout?
Create a role with Permissions to Delegate a Mailbox
Hello,Id like to give my team permissions to delegate a mailbox to a user. I currently have Tenant Admin permissions and would like to start setting up some Permission Roles instead of granting top level access.Does anyone know which permissions are needed to complete the delegate action?
Already have an account? Login
Login to the community
Enter your username or e-mail address. We'll send you an e-mail with instructions to reset your password.