Configuring Permissions for Amazon S3 Object Storage Backups Using the Hosted Infrastructure

You can back up your Amazon S3 data directly to the cloud, without configuring or installing access nodes, using the hosted infrastructure.

Procedure

  1. On the Configure Permissions page, click Use hosted infrastructure.

  2. Click the Launch CloudFormation Stack link to open the AWS account in the AWS console.

    Note

    If you do not have permission to create a role in the AWS account, copy the Launch CloudFormation Stack link and share it with your AWS IAM administrator.

  3. Log on to the AWS console.

    The Quick create stack page appears.

  4. Under Capabilities, read the information about the template, and then select the acknowledgment check box.

  5. Click Create stack.

    Wait for the CloudFormation Stack to finish creating the MetallicTenantRole IAM role.

    The CloudFormation Stack creates the following policies, and then attaches the policies to MetallicTenantRole:

    • MetallicTenantRole-DocDBPolicy

    • MetallicTenantRole-EC2Policy

    • MetallicTenantRole-RDSPolicy

    • MetallicTenantRole-RedshiftPolicy

    • MetallicTenantRole-S3Policy

    • MetallicTenantRole-VPCPolicy

  6. After the stack is created, on the Outputs tab of the AWS console, copy the ExternalID and IAMRole key values.

  7. Return to the Commvault Cloud configuration wizard.

  8. For Credentials, select existing credentials or create new credentials.

    Important

    The credentials must have an external ID and an IAM role ARN - the values that you copied from the Outputs tab of the AWS console in a preceding step:

    • If you select existing credentials, to verify that the credentials have an external ID and an IAM role ARN, click the edit button edit button outline grey/gray pencil.

    • If you create new credentials, make sure to enter the external ID and the IAM role ARN.

  9. Click Next.

×

Loading...