Restoring backups on replacement hardware restores the Secure SD-WAN Manager configurations to the state they were in when you took the backup.
Steps
-
Restore the Management Server configurations on replacement hardware.
-
Install the Management Server software.
The same exact version is not required for recovery, but all Secure SD-WAN Manager components must run the same version to work together.
-
Restore the Management Server backup.
-
Restore Log Server configurations on replacement hardware.
-
Install the Log Server software, if not installed together with the Management Server software.
The same exact version is not required for recovery, but all Secure SD-WAN Manager components must run the same version to work together.
-
Restore the Log Server backup.
-
Restore engine configurations on replacement hardware.
-
Generate an initial configuration for the engine in the Secure SD-WAN Manager.
-
Add the hardware to the network and configure it in the same way as a new installation.
-
When contact with the Management Server is established, install the policy.
The full working configuration is transferred to the engine.
Note: In some cases, the IPsec VPN certificate information can be lost and the policy installation fails. If VPN certificate information is lost, delete the old VPN certificates in the Management Client and create new VPN certificates for the engine. When you use the same CA and certificate details, the other components accept the new certificates. Policy installation is also possible if you disable the invalid configurations (for example, by disabling all VPN-specific Access rules in the policy).