Ask the Community
Groups
How To Setup: Hot Backup Copy on version 10.x - Connect IT Community | Kaseya
<main> <article class="userContent"> <h2 data-id="summary"><strong>SUMMARY</strong></h2> <p>Hot Backup Copy (Replication) on version 10.0.0</p> <h2 data-id="tasks"><strong>TASKS</strong></h2> <p> </p> <h1 data-id="prepare-target-for-hot-backup-copy-capabilities"><strong>Prepare Target for Hot Backup Copy capabilities.</strong></h1> <p>These steps will setup and start the OpenVPN server function. Log into the Target Unitrends Appliance (this is the computer receiving the copies of the data:</p> <ol><li>You must ensure the ports and needs listed in <a href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Fkaseya.vanillacommunities.com%2Fkb%2Farticles%2Faliases%2Funitrends%2Fhc%2Fen-us%2Farticles%2F360013278638" rel="noopener nofollow"><strong>KB 3372</strong></a> have been met including ICMP. This is temporary and only for the setup process. Once the Hot Backup Copy is successful, you only need UDP port 1194 bidirectional.</li> <li> <p>Click <strong>CONFIGURE</strong>.</p> </li> <li> <p>Click the <strong>Appliances</strong> (tab) and select the Unitrends Appliance.</p> </li> <li> <p>Click <strong>Edit</strong>.</p> </li> <li>Click on the <strong>Backup Copy</strong> tab.</li> <li> <p>Click on the <strong>Enable this appliance as a Backup Copy Target</strong>. Do not save this yet.</p> <ol></ol><ul><li>Perform this step on all Source appliances and the Target appliance:<br>To find out what IP address are currently used by your Unitrends Appliance, connect to the Unitrends appliance using SSH (<a href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Fthe.earth.li%2F%7Esgtatham%2Fputty%2Flatest%2Fw64%2Fputty.exe" rel="noopener nofollow">PuTTY</a>). Once authenticated execute this command:<br> <strong>ifconfig<br></strong>Take note of IP Addresses for each network interfaces listed. (including <strong>docker0</strong> and any current <strong>tun#</strong>).</li> <li>Perform this step on the Target appliance only:<br>In the <strong>Enable this appliance as a Backup Copy Target</strong> section, change the <strong>Secure Network</strong> value from <strong>172.17.3.0</strong> to a value that is not used in any of the network interfaces or local networks where the Unitrends Source Appliances or Target appliance is located. (e.g.: 172.20.1.0). Use a <strong><a href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Fwww.arin.net%2Freference%2Fresearch%2Fstatistics%2Faddress_filters%2F" rel="noopener nofollow">Private IP Address range</a></strong> to maximize security.<br>NOTE: The <strong>Secure Network</strong> IP always ends in a zero. The <strong>Secure Network</strong> subnet of 255.255.255.0 is sufficient.</li> </ul></li> </ol><p>Click Save</p> <h2><img src="https://us.v-cdn.net/6032361/uploads/migrated/PEWWYWWNCIHD/eid-ka83r000000k9ne-feoid-00n40000003czok-refid-0em1w000000rb9n." alt="User-added image" width="500" height="428" class="embedImage-img importedEmbed-img"></img></h2> <p> </p> <h1 data-id="temporarily-disable-the-built-in-firewall-of-the-source-and-target"><strong>Temporarily disable the built in Firewall of the Source and Target:</strong></h1> <ol><li>Please use an SSH terminal client (e.g. PuTTY) to connect to the Console of the Source and Target Unitrends system.</li> <li>Once connected, authenticate as the user <strong>root</strong> and then execute this command to stop the internal firewall:<br>CentOS 6: <strong>service iptables stop<br></strong>CentOS 7: <strong>systemctl stop firewalld</strong> </li> <li>If this is the first time you are setting it up, please configure your network and security to ALLOW complete communication between the Source and the Target Unitrends system. Once it has been set up correctly, please reduce the ALLOW rule to only port 1194 UDP. You can now complete the setup on the Source DPU.</li> </ol><h2 data-id="n-a"> </h2> <h1 data-id="configure-the-source-to-communicate-with-the-target">Configure the Source to communicate with the Target</h1> <p>These steps will setup and start the OpenVPN server function:</p> <ol><li>Click <strong>CONFIGURE</strong>.</li> <li>Click the <strong>Appliances</strong> (tab) and select the Unitrends Appliance for Target.</li> <li>Click on the <strong>Backup Copy Targets</strong> (tab at the bottom).</li> <li>Click <strong>Add Target</strong> </li> <li>Click on <strong>Unitrends</strong> > <strong>Unitrends appliance</strong> </li> </ol><div><img src="https://us.v-cdn.net/6032361/uploads/migrated/FO0NHHGB1GS1/eid-ka83r000000k9ne-feoid-00n40000003czok-refid-0em1w000000rb9s." alt="User-added image" class="embedImage-img importedEmbed-img"></img></div> <ol start="6"><li>Enter the Host Name, IP Address of the Target and click <strong>Save</strong>. Username and Password are not required.</li> <li>If you receive a dialogue box with the exact error of '<strong>Connection Could Not Be Verified</strong>' it can be ignored by clicking on click <strong>Continue</strong>. For other errors, review the logs in your Firewall at the Source and Target location. This includes Layer 7 and Web Filter logs.<br><strong>See <a href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Fkaseya.vanillacommunities.com%2Fkb%2Farticles%2Faliases%2Funitrends%2Fhc%2Fen-us%2Farticles%2F360013278638" rel="noopener nofollow">KB 3372</a></strong> for help.</li> <li>Once completed, you will receive an Information dialogue box. Please read it and click <strong>OK</strong>.</li> <li>The Source appliance is now in a PENDING status with the Target.</li> </ol><h2 data-id="approve-the-source-for-replication">Approve the Source for Replication:</h2> <p>These steps will approve and finalize the setup:</p> <ol><li>Log into the Web /ui/</li> <li>Click CONFIGURE.</li> <li>Click the Appliances (tab)</li> <li>You will see that Source DPU listed, with a Status of <img src="https://us.v-cdn.net/6032361/uploads/migrated/G96BTY6NWHM6/eid-ka83r000000k9ne-feoid-00n40000003czok-refid-0em1w000000rb9x." alt="User-added image" class="embedImage-img importedEmbed-img"></img>. Click the Pending button.</li> <li>Click on Allow Backup Copies to be sent from...</li> <li>Click on the arrow for Select target storage to use and choose the Storage Device that backup copy data will reside (Internal is default).</li> </ol><div><img src="https://us.v-cdn.net/6032361/uploads/migrated/E3GMSU3VL0CI/eid-ka83r000000k9ne-feoid-00n40000003czok-refid-0em1w000000rb9c." alt="User-added image" class="embedImage-img importedEmbed-img"></img></div> <ol start="7"><li>Click <strong>Save</strong>, then click OK after reading the Information box: Backup Copies from this appliance have been approved.</li> </ol><div><img src="https://us.v-cdn.net/6032361/uploads/migrated/N7FXGPF6CVJF/eid-ka83r000000k9ne-feoid-00n40000003czok-refid-0em1w000000rb9r." alt="User-added image" width="500" height="90" class="embedImage-img importedEmbed-img"></img></div> <p><br>Your setup can be confirmed completed once you see the line item in the Backup Copy Target tab, that shows the Target's hostname and the entry of "Online" next to it. It is normal not to see the other values to the right, as those required elevated privileges which is not necessary for replication.<br><br><img src="https://us.v-cdn.net/6032361/uploads/migrated/DJCWHMRD7891/mceclip0.png" alt="mceclip0.png" class="embedImage-img importedEmbed-img"></img><br><br>Once you have verified that the Replication and/or Management has been established, you can restart the iptables by executing this command:</p> <p>CentOS 6: <strong>service iptables start<br></strong>CentOS 7: <strong>systemctl start firewalld</strong><br> </p> </article> </main>