File restore prerequisites

Before you restore files with the IBM Storage Protect file restore interface, ensure that your environment meets the minimum prerequisites.

To enable the file restore feature, IBM Storage Protect for Virtual Environments: Data Protection for Microsoft Hyper-V must be installed on a Hyper-V host system.

The file restore web service and the underlying Data Protection for Microsoft Hyper-V environment must be installed, configured, and operational, including the mount proxy data movers and ISCI services.

Hyper-V administrators must provide file owners with a URL to connect to the file restore web interface. When you use the configuration wizard to configure Data Protection for Microsoft Hyper-V and enable the file restore feature, the URL is provided at the conclusion of the wizard. For more information, see Configuring Data Protection for Microsoft Hyper-V with the wizard.

Hyper-V virtual machine prerequisites

The following prerequisites apply to the Hyper-V virtual machine (VM) that contains the files to be restored:
  • The VM must be running during the file restore operation.
  • The Windows VM must belong to the same Windows domain as the Hyper-V host where the IBM Storage Protect backup-archive client is installed.
  • When a VM is deleted from a Windows domain and restored later, the VM must rejoin the domain to ensure that the domain trust relationship is reestablished. Do not attempt a file restore from the VM until the domain trust relationship is restored.
  • If the user does not own the file to be restored, the Microsoft Windows Restore Files and Directories privilege must be assigned to the user for that virtual machine.
  • For Linux® guest VMs, local user authentication is required for the VM. Authentication is not available through Windows domain, Lightweight Directory Access Protocol (LDAP), Kerberos, or other network authentication methods.
  • For Linux guest VMs on a Red Hat Enterprise Linux 6 operating system, the ChallengeResponseAuthentication option in the sshd daemon configuration file (/etc/ssh/sshd_config) must specify YES or be commented out. You can specify either of the following statements:
    ChallengeResponseAuthentication yes
    #ChallengeResponseAuthentication no
    Restart the sshd daemon after you modify this option.

Data mover prerequisites

A specific data mover (backup-archive client) is installed on the Hyper-V host system that "moves data" from one system to another.

Windows operating systemsThe Hyper-V host system must belong to the same Windows domain as the VM that contains the files to be restored.

Mount proxy prerequisites

The mount proxy system represents the Linux or Windows proxy system that accesses the mounted virtual machine disks through an iSCSI connection. This system enables the file systems on the mounted VM disks to be accessible as restore points to the file restore interface.

Linux operating systems provide a daemon that activates Logical Volume Manager (LVM) volume groups as these groups become available to the system. Set this daemon on the Linux mount proxy system so that LVM volume groups are not activated as they become available to the system. For instructions about how to set this daemon, see the appropriate Linux documentation.

The Windows mount proxy system and Linux mount proxy system must be on the same subnet.

Microsoft Windows domain account prerequisites

The following prerequisites apply to Windows domain accounts:
  • A Windows domain user with local administrator authority is required to create and access the network share. The administrator enters these credentials in the Data Protection for Microsoft Hyper-V configuration wizard to enable the environment for file restore operations.
  • A file owner accesses the remote VM that contains the files to be restored with Windows domain user credentials. These credentials are entered in the file restore interface during login. Domain user credentials verify that the file owner has permission to log in to the remote VM and restore files into the remote VM. These credentials do not require any special permissions.
  • If a file owner uses a Windows domain user account that limits access to specific computers (instead of access to all computers within the domain), ensure that the mount proxy system is included in the list of computers that are accessible to this domain user account. Otherwise, the file owner is unable to log in to the file restore interface.

Tape media prerequisites

File restore operations from tape media are not supported. The preferred method is to restore files from disk storage.