Skip to main content
Answer

Ransomware Honeypot detection

  • February 10, 2022
  • 1 reply
  • 901 views

i only have about 50 physical servers - all have CV agents - whereas i have about 500 virtual machines that get backed up via a vcenter vm backup.  Question about the honeypot detection … do the 500 virtual machines get detected for ransomware in any sort of fashion or what is the guidance there?  Thanks!

Best answer by Mike Struening

@JamesLincoln , directly through the VSA on the roadmap.

However, you can install the File System agent and it will work with agent present.

From the docs:

https://documentation.commvault.com/11.24/expert/7879_monitoring_file_anomalies_on_client_computers_01.html

Note: Anomaly detection can be enabled on virtualized environments by installing the base Windows file system restore-only client in the virtual machine guest host. For more information, see Installation of Restore Only Agents.

 

If you have a question or comment, please create a topic

1 reply

Mike Struening
Vaulter
Forum|alt.badge.img+22

@JamesLincoln , directly through the VSA on the roadmap.

However, you can install the File System agent and it will work with agent present.

From the docs:

https://documentation.commvault.com/11.24/expert/7879_monitoring_file_anomalies_on_client_computers_01.html

Note: Anomaly detection can be enabled on virtualized environments by installing the base Windows file system restore-only client in the virtual machine guest host. For more information, see Installation of Restore Only Agents.