Skip to content

Commit c2692c2

Browse files
authored
Merge pull request #232125 from batamig/release-maintenance-only-2
Deployment guide release: maintenance section take 2
2 parents 2337a0f + 6076738 commit c2692c2

36 files changed

+1723
-1002
lines changed

articles/defender-for-iot/organizations/TOC.yml

Lines changed: 78 additions & 115 deletions
Original file line numberDiff line numberDiff line change
@@ -135,7 +135,7 @@
135135
- name: Forward on-premises alert data
136136
href: how-to-forward-alert-information-to-partners.md
137137
displayName: alerts
138-
- name: Visualize and monitor data
138+
- name: Monitor network data
139139
items:
140140
- name: Visualize data with workbooks
141141
href: workbooks.md
@@ -150,8 +150,9 @@
150150
href: how-to-create-trends-and-statistics-reports.md
151151
- name: Create attack vector reports
152152
href: how-to-create-attack-vector-reports.md
153-
- name: View OT threats by location from an OT sensor
154-
href: how-to-gain-insight-into-global-regional-and-local-threats.md
153+
- name: Track OT network and sensor activity
154+
href: how-to-track-sensor-activity.md
155+
displayName: event timeline
155156
- name: Analyze OT programming details and changes
156157
href: how-to-analyze-programming-details-changes.md
157158
- name: Enhance security posture
@@ -192,130 +193,92 @@
192193
href: tutorial-servicenow.md
193194
- name: Legacy integration
194195
href: integrations/service-now-legacy.md
195-
- name: Set up OT network monitoring
196+
- name: Maintain your Defender for IoT system
196197
items:
197-
- name: Prepare your network
198-
href: how-to-set-up-your-network.md
199-
- name: Configure traffic mirroring
198+
- name: Manage plans on your Azure subscription
200199
items:
201-
- name: Overview
202-
href: best-practices/traffic-mirroring-methods.md
203-
displayName: traffic mirroring, SPAN port
204-
- name: Configure a switch SPAN port
205-
href: traffic-mirroring/configure-mirror-span.md
206-
- name: Configure a remote SPAN (RSPAN)
207-
href: traffic-mirroring/configure-mirror-rspan.md
208-
- name: Configure active and passive aggregation (TAP)
209-
href: traffic-mirroring/configure-mirror-tap.md
210-
- name: Configure ERSPAN mirroring
211-
href: traffic-mirroring/configure-mirror-erspan.md
212-
- name: Configure mirroring with an ESXi vSwitch
213-
href: traffic-mirroring/configure-mirror-esxi.md
214-
- name: Configure mirroring with a Hyper-V vSwitch
215-
href: traffic-mirroring/configure-mirror-hyper-v.md
216-
- name: Manage OT plans on Azure subscriptions
217-
href: how-to-manage-subscriptions.md
218-
displayName: onboard
219-
- name: Onboard OT sensors
220-
href: onboard-sensors.md
221-
- name: Install OT monitoring software
200+
- name: Manage OT plans
201+
href: how-to-manage-subscriptions.md
202+
- name: Manage Enterprise IoT plans
203+
href: manage-subscriptions-enterprise.md
204+
- name: Manage sensors from the Azure portal
205+
href: how-to-manage-sensors-on-the-cloud.md
206+
- name: Create and manage users
222207
items:
223-
- name: Install OT sensor software
224-
href: ot-deploy/install-software-ot-sensor.md
225-
- name: Install on-premises management console software
226-
href: ot-deploy/install-software-on-premises-management-console.md
227-
- name: Validate after installation
228-
href: ot-deploy/post-install-validation-ot-software.md
229-
- name: Activate and set up your sensor
230-
href: how-to-activate-and-set-up-your-sensor.md
231-
- name: Deploy OT certificates
232-
href: how-to-deploy-certificates.md
233-
displayName: SSL, TLS
234-
- name: Connect OT sensors to the cloud
235-
items:
236-
- name: Connect OT sensors to Defender for IoT
237-
href: connect-sensors.md
238-
- name: Activate and set up your on-premises management console
239-
href: how-to-activate-and-set-up-your-on-premises-management-console.md
240-
displayName: sites, zones
241-
- name: Configure on-premises sites and zones
242-
href: ot-deploy/sites-and-zones-on-premises.md
243-
- name: Add support for proprietary protocols
244-
href: resources-manage-proprietary-protocols.md
245-
- name: Set up Enterprise IoT network monitoring
246-
items:
247-
- name: Manage Enterprise IoT plans on Azure subscriptions
248-
href: manage-subscriptions-enterprise.md
249-
displayName: onboard
250-
- name: Discover Enterprise IoT devices
251-
href: eiot-sensor.md
252-
displayName: Enterprise IoT sensor
253-
- name: Extra deployment steps and samples
254-
href: extra-deploy-enterprise-iot.md
255-
displayName: Enterprise IoT sensor
256-
- name: Manage sensors from the Azure portal
257-
href: how-to-manage-sensors-on-the-cloud.md
258-
- name: Configure OT sensor settings from the Azure portal
259-
href: configure-sensor-settings-portal.md
260-
- name: Create and manage users
261-
items:
262-
- name: Azure portal
263-
href: manage-users-portal.md
264-
displayName: users, user
265-
- name: OT sensor console
266-
href: manage-users-sensor.md
267-
displayName: users, user
268-
- name: On-premises management console
269-
href: manage-users-on-premises-management-console.md
270-
displayName: users, user
271-
- name: Audit user activity
272-
href: track-user-activity.md
273-
- name: OT system maintenance
274-
items:
275-
- name: Maintain threat intelligence packages
276-
href: how-to-work-with-threat-intelligence-packages.md
277-
- name: Update OT monitoring software
278-
href: update-ot-software.md
279-
displayName: upgrade
280-
- name: Manage OT sensors
208+
- name: Azure portal
209+
href: manage-users-portal.md
210+
displayName: users, user
211+
- name: OT sensor console
212+
href: manage-users-sensor.md
213+
displayName: users, user
214+
- name: On-premises management console
215+
href: manage-users-on-premises-management-console.md
216+
displayName: users, user
217+
- name: Audit user activity
218+
href: track-user-activity.md
219+
- name: Maintain OT on-premises resources
281220
items:
282-
- name: Manage individual sensors
283-
href: how-to-manage-individual-sensors.md
284-
- name: Control OT traffic monitoring
285-
href: how-to-control-what-traffic-is-monitored.md
286-
- name: Detect Windows workstations and servers by script
287-
href: detect-windows-endpoints-script.md
221+
- name: Enhance device data and detection
222+
items:
223+
- name: Import extra data for detected OT devices
224+
href: how-to-import-device-information.md
225+
- name: Detect Windows workstations and servers by script
226+
href: detect-windows-endpoints-script.md
288227
- name: Configure active monitoring
289228
items:
290229
- name: Planning and prerequisites
291230
href: configure-active-monitoring.md
231+
displayName: active monitoring
292232
- name: Configure Windows Endpoint Monitoring
293233
href: configure-windows-endpoint-monitoring.md
294234
- name: Configure reverse DNS lookup
295235
href: configure-reverse-dns-lookup.md
296-
- name: Manage sensors from the on-premises management console
297-
href: how-to-manage-sensors-from-the-on-premises-management-console.md
298-
- name: Enrich device information
299-
items:
300-
- name: Enhance port and VLAN name resolution
301-
href: how-to-enhance-port-and-vlan-name-resolution.md
302-
- name: Import device information
303-
href: how-to-import-device-information.md
304-
- name: Track OT network and sensor activity
305-
href: how-to-track-sensor-activity.md
306-
displayName: event timeline
307-
- name: Set up SNMP MIB monitoring
308-
href: how-to-set-up-snmp-mib-monitoring.md
309-
- name: Manage proprietary protocols (Horizon)
310-
href: resources-manage-proprietary-protocols.md
311-
- name: Manage an OT on-premises management console
312-
items:
313-
- name: Set up high availability
314-
href: how-to-set-up-high-availability.md
315-
- name: Manage the on-premises management console
316-
href: how-to-manage-the-on-premises-management-console.md
317-
- name: Troubleshoot the sensor and on-premises management console
318-
href: how-to-troubleshoot-the-sensor-and-on-premises-management-console.md
236+
- name: Update OT monitoring software
237+
items:
238+
- name: Update from a recent version
239+
href: update-ot-software.md
240+
displayName: upgrade
241+
- name: Update from legacy versions
242+
href: update-legacy-ot-software.md
243+
displayName: upgrade
244+
- name: Backup and restore
245+
items:
246+
- name: OT sensors from the sensor console
247+
href: back-up-restore-sensor.md
248+
displayName: backup, restore, back up
249+
- name: OT sensors from an on-premises management console
250+
href: back-up-sensors-from-management.md
251+
displayName: backup, back up
252+
- name: On-premises management console
253+
href: back-up-restore-management.md
254+
displayName: backup, restore, back up
255+
- name: OT sensor maintenance
256+
items:
257+
- name: Configure OT sensor settings from the Azure portal
258+
href: configure-sensor-settings-portal.md
259+
- name: Maintain an OT sensor from the sensor console
260+
href: how-to-manage-individual-sensors.md
261+
displayName: activation, time zone, SMTP, PCAP
262+
- name: Configure SNMP monitoring
263+
href: how-to-set-up-snmp-mib-monitoring.md
264+
- name: Add support for proprietary protocols
265+
href: resources-manage-proprietary-protocols.md
266+
displayName: Horizon
267+
- name: Maintain threat intelligence packages
268+
href: how-to-work-with-threat-intelligence-packages.md
269+
- name: Troubleshoot OT sensors
270+
href: how-to-troubleshoot-sensor.md
271+
- name: System maintenance with an on-premises management console
272+
items:
273+
- name: Set up high availability
274+
href: how-to-set-up-high-availability.md
275+
- name: Manage sensors from the on-premises management console
276+
href: how-to-manage-sensors-from-the-on-premises-management-console.md
277+
- name: Maintain an on-premises management console
278+
displayName: activation, SMTP, VLAN, hostname
279+
href: how-to-manage-the-on-premises-management-console.md
280+
- name: Troubleshoot on-premises management consoles
281+
href: how-to-troubleshoot-on-premises-management-console.md
319282
- name: Reference
320283
items:
321284
- name: Sample connectivity models
Lines changed: 102 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,102 @@
1+
---
2+
title: Back up and restore the on-premises management console - Microsoft Defender for IoT
3+
description: Learn how to back up and restore the Microsoft Defender for IoT on-premises management console.
4+
ms.date: 03/09/2023
5+
ms.topic: how-to
6+
---
7+
8+
# Back up and restore the on-premises management console
9+
10+
Back up and restore your on-premises management console to help protect against hard drive failures and data loss. In this article, learn how to:
11+
12+
- Define backup and restore settings
13+
- Run an unscheduled backup via CLI
14+
- Use an SMB server to save your backup files to an external server
15+
- Restore the on-premises management console from the latest backup via CLI
16+
17+
## Define backup and restore settings
18+
19+
The on-premises management console is automatically backed up daily to the `/var/cyberx/backups` directory. Backup files do *not* include PCAP or log files, which must be manually backed up if needed.
20+
21+
We recommend that you configure your on-premises management console to automatically transfer backup files to your own, internal network.
22+
23+
> [!NOTE]
24+
> Backup files can be used to restore an on-premises management console only if the on-premises management console's current software version is the same as the version in the backup file.
25+
26+
## Start an immediate, unscheduled backup via CLI
27+
28+
You may want to create a manual backup file, such as just after updating your OT sensor software.
29+
30+
To run a manual backup from the CLI:
31+
32+
1. Sign into the on-premises management console as a privileged user via SSH/Telnet.
33+
34+
1. Run:
35+
36+
```bash
37+
sudo cyberx-management-backup -full
38+
```
39+
40+
## Save your backup file to an external server (SMB)
41+
42+
We recommend saving your on-premises management console sensor backup files on your internal network. To do this, you may want to use an SMB server. For example:
43+
44+
1. Create a shared folder on the external SMB server, and make sure that you have the folder's path and the credentials required to access the SMB server.
45+
46+
1. Sign into your on-premises management console via SFTP and create a directory for your backup files. Run:
47+
48+
```bash
49+
sudo mkdir /<backup_folder_name_on_ server>
50+
sudo chmod 777 /<backup_folder_name_on_c_server>/
51+
```
52+
53+
1. Edit the `fstab` file with details about your backup folder. Run:
54+
55+
```bash
56+
sudo nano /etc/fstab
57+
58+
add - //<server_IP>/<folder_path> /<backup_folder_name_on_server> cifs rw,credentials=/etc/samba/user,vers=3.0,uid=cyberx,gid=cyberx,file_mode=0777,dir_mode=0777 0 0
59+
```
60+
61+
1. Edit and create credentials to share for the SMB server. Run:
62+
63+
```bash
64+
sudo nano /etc/samba/user
65+
```
66+
67+
1. Add your credentials as follows:
68+
69+
```bash
70+
username=<user name>
71+
password=<password>
72+
```
73+
74+
1. Mount the backup directory. Run:
75+
76+
```bash
77+
sudo mount -a
78+
```
79+
80+
1. Configure your backup directory on the SMB server to use the shared file on the OT sensor. Run:
81+
82+
```bash
83+
sudo nano /var/cyberx/properties/backup.properties`
84+
```
85+
86+
Set the `backup_directory_path` to the folder on your OT sensor where you want to save your backup files.
87+
88+
## Restore from the latest backup via CLI
89+
90+
To restore your OT sensor from the latest backup file via CLI:
91+
92+
1. Sign into the on-premises management console as a privileged user via SSH/Telnet.
93+
94+
1. Run:
95+
96+
```bash
97+
$ sudo cyberx-management-system-restore
98+
```
99+
100+
## Next steps
101+
102+
[Maintain the on-premises management console](how-to-manage-the-on-premises-management-console.md)

0 commit comments

Comments
 (0)