Ransomware attackers specifically target and attempt to destroy backup systems to increase the probability of payment. Hardening your system is critical. Please ensure you have reviewed your platform security using the Security Hardening Checklist
Cohesity

COHESITY Documentation

Explore our documentation to get started, discover products & new features, access troubleshooting guides, register sources, platforms support.

Products
Data Security Alliance
Visit Cohesity.com
Demos
Support
Blogs
Developers
Partner Portals
Cohesity Community
© 2026 Cohesity, Inc. All Rights Reserved.
Terms of Use|
Privacy Policy|
Legal|
  1. Home
  2. Veritas NetBackup™ Deduplication Guide
  3. MSDP cloud support
  4. Creating a cloud storage unit
Veritas NetBackup™ Deduplication Guide

Creating a cloud storage unit

Use the NetBackup Web UI or the command line to create a cloud storage unit.

The following steps describe the method to create a cloud storage unit using the command line:

  1. Create an MSDP storage server.

    See Configuring MSDP server-side deduplication.

  2. Create a cloud instance alias.

    For example:

    Example 1: Creating an Amazon S3 cloud instance alias

    # /usr/openv/netbackup/bin/admincmd/csconfig cldinstance -as -in amazon.com -sts <storage server> -lsu_name <lsu name>

    Example 2: Creating an Amazon Glacier cloud instance alias

    # /usr/openv/netbackup/bin/admincmd/csconfig cldinstance -as -in amazon.com -sts <storage server> -lsu_name <lsu name> -storage_class GLACIER

    Example 3: Creating an Microsoft Azure Archive cloud instance alias

    # /usr/openv/netbackup/bin/admincmd/csconfig cldinstance -as -in my -azure -sts <storage server> -lsu_name <lsu name> -storage_tier ARCHIVE -post_rehydration_period 3

    The cloud alias name is <storage server>_<lsu name>, and is used to create a bucket.

  3. Create a new bucket (Optional)

    For example:

    # /usr/openv/netbackup/bin/nbcldutil -createbucket -storage_server <storage server>_<lsu name> -username <cloud user> -bucket_name <bucket name>

  4. Create a configuration file, then run nbdevconfig command.

    Configuration file content for adding a new cloud LSU:

    Configuration setting

    Description

    V7.5 "operation" "add-lsu-cloud" string

    Specifies the value "add-lsu-cloud" for adding a new cloud LSU.

    V7.5 "lsuName" " " string

    Specifies the LSU name.

    V7.5 "lsuCloudUser" " " string

    Specifies the cloud user name.

    V7.5 "lsuCloudPassword" " " string

    Specifies the cloud password.

    V7.5 "lsuCloudBucketName" " " string

    Specifies the cloud bucket name.

    V7.5 "lsuCloudBucketSubName" " " string

    Multiple cloud LSUs can use the same cloud bucket, this value distinguishes different cloud LSUs.

    V7.5 "lsuEncryption" " " string

    Optional value, default is NO.

    Sets the encryption property for current LSU.

    V7.5 "lsuKmsEnable" " " string

    Optional value, default is NO.

    Enables KMS for current LSU.

    V7.5 "lsuKmsKeyGroupName" " " string

    Optional value.

    Key group name is shared among all LSUs.

    Key group name must have valid characters: A-Z, a-z, 0-9, _ (underscore), - (hyphen), : (colon), . (period), and space.

    V7.5 "lsuKmsServerName" " " string

    Optional value.

    KMS server name is shared among all LSUs.

    V7.5 "lsuKmsServerType" " " string

    Optional value.

    Example 1: Configuration file with encryption disabled

    V7.5 "operation" "add-lsu-cloud" string
    V7.5 "lsuName" "s3amazon1" string
    V7.5 "lsuCloudUser" "CUCU" string
    V7.5 "lsuCloudPassword" "cpcp" string
    V7.5 "lsuCloudBucketName" "bucket1" string
    V7.5 "lsuCloudBucketSubName" "sub1" string

    Example 2: Configuration file with encryption enabled

    V7.5 "operation" "add-lsu-cloud" string
    V7.5 "lsuName" "s3amazon2" string
    V7.5 "lsuCloudUser" "CUCU" string
    V7.5 "lsuCloudPassword" "cpcp" string
    V7.5 "lsuCloudBucketName" "bucket1" string
    V7.5 "lsuCloudBucketSubName" "sub2" string
    V7.5 "lsuEncryption" "YES" string
    V7.5 "lsuKmsEnable" "YES" string
    V7.5 "lsuKmsKeyGroupName" "test" string
    V7.5 "lsuKmsServerName" "test" string

    Note:

    All encrypted LSUs in one storage server must use the same keygroupname and kmsservername. If you use the nbdevconfig command to add a new encrypted cloud Logical storage unit (LSU) and an encrypted LSU exists in this MSDP, the keygroupname must be the same as the keygroupname in the previous encrypted LSU.

    For more information, See About MSDP Encryption using NetBackup KMS service.

    Create a configuration file and then run the following nbdevconfig command:

    # /usr/openv/netbackup/bin/admincmd/nbdevconfig -setconfig -storage_server <storage server> -stype PureDisk -configlist <configuration file path>

    Note:

    The parameter <storage server> must be the same as the parameter <storage server> in Step 2.

  5. Create disk pool by using the nbdevconfig command.

    For example:

    # /usr/openv/netbackup/bin/admincmd/nbdevconfig -previewdv -storage_servers <storage server name> -stype PureDisk | grep <LSU name> > /tmp/dvlist

    # /usr/openv/netbackup/bin/admincmd/nbdevconfig -createdp -dp <disk pool name> -stype PureDisk -dvlist /tmp/dvlist -storage_servers <storage server name>

    Note:

    You can also create the disk pool can from the NetBackup Web UI or NetBackup Administration Console.

  6. Create storage unit by using bpstuadd command.

    For example:

    # /usr/openv/netbackup/bin/admincmd/bpstuadd -label <storage unit name> -odo 0 -dt 6 -dp <disk pool name> -nodevhost

    Note:

    You can also create the storage unit from the NetBackup Web UI or NetBackup Administration Console.

Feedback

Was this page helpful?
Previous

Limitations

Next

Updating cloud credentials for a cloud LSU

Feedback

Was this page helpful?