Hello Commvault Team,
We are designing a Commvault backup architecture for an OpenShift GPU environment and would like to confirm the supported network architecture.
Our environment has the following network connectivity:
-
The CommServe and MediaAgent can communicate with the Access Node.
-
The Access Node can communicate with the CommServe/MediaAgent, OpenShift API Server, and OpenShift Worker Nodes.
-
The OpenShift Worker Nodes cannot directly communicate with the CommServe or MediaAgent.
-
The Worker Nodes are connected only to the OpenShift Service Network and do not have connectivity to the Backup Network.
-
The Access Node has connectivity to both the OpenShift Service Network and the Backup Network.
We are considering using the Commvault Command Center Network Topology feature to control the backup communication path.
Our desired backup data flow is:
OpenShift Worker Node / Backup Pod → Access Node → MediaAgent → Backup Storage
In this architecture, we would like to avoid requiring direct network connectivity between the OpenShift Worker Nodes and the MediaAgent.
Could you please confirm the following?
-
Can the Access Node act as an intermediate data path or gateway for OpenShift backup data between the Worker Nodes and the MediaAgent?
-
Can the OpenShift backup data generated from namespaces/PVCs on the Worker Nodes be transferred through the Access Node to the MediaAgent?
-
Can the Network Topology feature be used to enforce or control this communication path?
-
If the Worker Nodes do not have direct connectivity to the MediaAgent or Backup Network, are there any additional network or configuration requirements?
-
Does this architecture work for both CSI-based PV backups and file-system-based PV backups?
Our goal is to keep the OpenShift Worker Nodes isolated from the Backup Network while using the Access Node as the communication point between the OpenShift environment and the MediaAgent.
Thank you in advance for your guidance.

