Application backup and recovery

The backup and recovery procedures provide disaster recovery options so you can restore an engine back to its state at the time of the backup. The procedures let you back up, restore, and recover your anomaly scan software configuration files, indexes, databases, log files, and license files. This is largely achieved via commonly used third party commercial backup and restore software, with the final recovery phase accomplished through the IBM® Storage Defender Sentinel anomaly scan software graphical user interface.

Once you restore a backup image to /opt/ie/backup using a backup tool, open the freshly installed anomaly scan software and use the graphical user interface to recover the anomaly scan software system configuration, database, and index data.
Note: Requirements for a Successful Recovery:
  • Stop or cancel any indexing, querying, extraction, or archive jobs before attempting a recovery. Otherwise, the recovery procedure will stop all anomaly scan software services and any running jobs, which may have a negative impact.

  • The hardware must have the same MAC address as the Backup.
  • The installed anomaly scan software version must be the same or newer than the Backup version.

  • The restore from the backup server must have successfully completed, with the backed-up files now residing on the client system with the anomaly scan software.

  • Anomaly scan software systems depend on the ability to resolve host names to IP addresses. The recommended and normal way to accomplish this is to use the Domain Name System (DNS). If, however, you are not using DNS, then the /etc/hosts file on each appliance must have the hostnames/IP addresses of the manager.