Veritas NetBackup™ Cloud Administrator's Guide
- About NetBackup cloud storage
- About the cloud storage
- About the Amazon S3 cloud storage API type
- About protecting data in Amazon for long-term retention
- Protecting data using Amazon's cloud tiering
- About using Amazon IAM roles with NetBackup
- Protecting data with Amazon Snowball and Amazon Snowball Edge
- About Microsoft Azure cloud storage API type
- About OpenStack Swift cloud storage API type
- Configuring cloud storage in NetBackup
- Scalable Storage properties
- Cloud Storage properties
- About the NetBackup CloudStore Service Container
- About the NetBackup media servers for cloud storage
- Configuring a storage server for cloud storage
- NetBackup cloud storage server properties
- Configuring a storage unit for cloud storage
- Changing cloud storage disk pool properties
- Monitoring and Reporting
- Operational notes
- Troubleshooting
- About unified logging
- About legacy logging
- Troubleshooting cloud storage configuration issues
- Troubleshooting cloud storage operational issues
About external KMS for encryption of NetBackup cloud storage
NetBackup supports keys from external key management service (external KMS) server in case of cloud storage.
If external KMS is configured on the master server, note the following:
No extra steps are required to configure external KMS in the Cloud Storage Server Configuration Wizard.
No extra steps are required to provide inputs for key passphrase in the Disk Pool Configuration Wizard.
Symmetric encryption key is required for each storage server and volume combination. Symmetric encryption key is not created on the external KMS server for each storage server and volume combination. You need to ensure that a Symmetric encryption key already exists on the external KMS server with a custom attribute with value of key group in the 'storage_server_name:volume_name' format.
More information about external KMS is available in the NetBackup Security and Encryption Guide.