You can configure an access node directly, without configuring a workload.
Prerequisites
Before configuring the access nodes, subscribe to the following images (CIS hardened AMIs) on AWS Marketplace:
Enable authcode to Validate CFT
-
From the Command Center navigation pane, go to Manage > CommCell.
-
In the General tile, move the Requires authcode for installation toggle key to the right.
-
Click the authcode and save it in a safe location.
Add Access Node
-
From the Command Center navigation pane, go to Manage > Infrastructure.
-
Click the Access nodes tile.
-
In the upper-right area of the page, click Add.
-
From the Vendor list, select Amazon Web Services.
-
From the Deployment type list, select any of the following:
-
Vendor native deployment
-
From Authentication list, select any of the following:
-
AWS STS AssumeRole (recommended)
-
IAM Role
-
Access keys for IAM users (not recommended)
-
-
From the Platform list, select the operating system.
-
From the Region list, select a region to deploy the access node in.
-
Click the Launch The CloudFormation Stack link to open the AWS console.
Note
If AWS EBS encryption is enabled for your region in your AWS account, to use the stack, you must be a key user for the default encryption key. If you are not a key user for the default encryption key, copy the Launch The CloudFormation Stack link and share it with someone who is a key user, such as your security administrator.
-
Log on to the AWS console.
-
Under Parameters, specify the following information:
-
For EC2 Instance Type, select the type of EC2 instance to use for the access node.
-
For EC2 Key Pair, select a key pair to use to access the Commvault Cloud access node.
-
For VPC ID, select an Amazon Virtual Private Cloud (VPC).
-
For Subnet ID, select a subnet.
-
For VPC CIDR, select a VPC CIDR.
Note
Port 8403 opens on access nodes only when the request comes from the IP ranges that are listed in the VPC CIDR.
-
-
Click Create stack.
-
-
Manual deployment
-
Based on the OS type, download the access node packages and perform an interactive installation.
-
Copy the provided Auth code, as it will be required during the installation.
-
-