We’re currently in the process of doing a major upgrade of our Commvault setup - both software version and hardware, and are looking at ways to improve things. None of us are seasoned Commvault admins - I did a course before starting a couple of years ago, only to find that much was irrelevant as the course focused on the webGUI and Plans, while the existing setup turned out to be “old style”. I’ve also had a lot of other stuff on my plate, so there has been little time to do much self study...
So we’re taking this opportunity to build the setup from scratch. One of the areas we want to improve is protection against malicious or accidental deletion. The old setup does create aux copies to an offsite disk library, but as both primary and secondary libraries are permanently mounted via iSCSI it would be trivial to obliterate everything… an “interesting” fact here is that the previous incarnation of the setup used NetApp for storage, and SnapMirror to create offsite replicas - so in some ways the current setup was a downgrade.
Now my initial thought was to go back to the storage-based replication, and to make the replica available read-only as an “external replica”, but I am unsure if that is the best solution. We’re running dedup, and are getting roughly 4:1 ratios, so that’s not something we want to switch off - not least with respect to capacity licensing. How well does an external replica setup work with respect to the DDB though? How can the DDB and external replica be kept in sync; how to best keep an offsite copy of the DDB… and what would it look like if we did lose the Commserve/primary MA?
Our new storage does have WORM capability (Linux-based NAS), so one alternative is to use that and create the replica using the MA at the “offsite” location; this MA will also (eventually) be connected to a tape library. It is my understanding that this would eliminate DDB synchronisation issues, though the isolation of the secondary copy will rely on the WORM capability alone. I should also mention that for the new setup we will be using SMB instead of iSCSI, since iSCSI performance turned out to be quite bad compared to SMB, and Windows CacheManager would gladly cache 200GB of data and report the writes as complete, with data trickling out for several minutes before the write was *actually* completed...
Right now I’m starting to lean towards the offsite MA/WORM alternative, but I would really like some advice on pros and cons, and if there are other alternatives that should be considered. Note that this is all in an “OT” environment (“Operational Technology”), so anything requiring internet access is a no-go.

