Solved

Ransomware Honeypot detection

  • 10 February 2022
  • 1 reply
  • 713 views

Badge

i only have about 50 physical servers - all have CV agents - whereas i have about 500 virtual machines that get backed up via a vcenter vm backup.  Question about the honeypot detection … do the 500 virtual machines get detected for ransomware in any sort of fashion or what is the guidance there?  Thanks!

icon

Best answer by Mike Struening RETIRED 10 February 2022, 22:49

View original

If you have a question or comment, please create a topic

1 reply

Userlevel 7
Badge +23

@JamesLincoln , directly through the VSA on the roadmap.

However, you can install the File System agent and it will work with agent present.

From the docs:

https://documentation.commvault.com/11.24/expert/7879_monitoring_file_anomalies_on_client_computers_01.html

Note: Anomaly detection can be enabled on virtualized environments by installing the base Windows file system restore-only client in the virtual machine guest host. For more information, see Installation of Restore Only Agents.