04-23-2014 07:50 AM
As the 52xx Appliances do not support iSCSI attach I am just wondering what is seen as best practice for securing VMware data when the datastores reside on an iSCSI attached SAN.
I guess there are two options:
1. Create 1 or more VMware Proxy Backup Servers (Hot-Add) within the ESX environment
2. Install 1 or more physical Proxy Backup Servers (Hot-Add) which have an iSCSI connection to the SAN
Are there any more preferable ways to do this, or if not which of the above is best in terms of functionality and performance ?
Thanks,
AJ.
Solved! Go to Solution.
04-24-2014 02:35 AM
There are two ways of doing this so dont confuse the two...
1. hotadd - where the vmware backup host is virtual and can backup anything in the same datastore as itself .. this has some restrictions and licensing (ESX) requirements as per the NBU VMware Admin Guide
2. Physical vmware backup host - no real restrictions - just needs the datastores mapping via iSCSI
Both need only NBU Client software installing but could be media servers if you wished
I prefer a physical Windows server with a NBU client and forced to do client side de-dupe - but just a preference to avoid the restrictions of the hotadd
Hope this helps
04-23-2014 08:44 AM
04-23-2014 01:22 PM
Thanks for that Mark.
Do I simply install the NBU Client software on the Hot-Add VM server and mark it as a VMware Access Host on the Master Server properties or do I need to install the Media Server software on the Hot-Add Server ?
Thanks,
AJ
04-24-2014 02:35 AM
There are two ways of doing this so dont confuse the two...
1. hotadd - where the vmware backup host is virtual and can backup anything in the same datastore as itself .. this has some restrictions and licensing (ESX) requirements as per the NBU VMware Admin Guide
2. Physical vmware backup host - no real restrictions - just needs the datastores mapping via iSCSI
Both need only NBU Client software installing but could be media servers if you wished
I prefer a physical Windows server with a NBU client and forced to do client side de-dupe - but just a preference to avoid the restrictions of the hotadd
Hope this helps
04-29-2014 02:07 AM
You might also can consider the NBDSSL transport mode if you are concerned about the security of your data. If you are having thin disks - restoration through NBDSSL is faster compared to SAN .
For more information - please view the following page :-
06-06-2014 05:31 AM
Another option I am aware of that has been used by a number of customers in the UK is to use an iSCSI-FC bridge. Not endorsed or supported by Symantec but does work.
See http://www.4bridgeworks.com/products/bridges/oresund-iscsi-to-fibre-channel-bridge/ for more information.
Claire Buchanan at BridgeWorks, ClaireB@4bridgeworks.com, can be provide further information and details of Symantec partners that are familiar with the bridge and its implementation with NBU applainces.