Ransomware attackers specifically target and attempt to destroy backup systems to increase the probability of payment. Hardening your system is critical. Please ensure you have reviewed your platform security using the Security Hardening Checklist
Cohesity

COHESITY Documentation

Explore our documentation to get started, discover products & new features, access troubleshooting guides, register sources, platforms support.

Products
Data Security Alliance
Visit Cohesity.com
Demos
Support
Blogs
Developers
Partner Portals
Cohesity Community
© 2026 Cohesity, Inc. All Rights Reserved.
Terms of Use|
Privacy Policy|
Legal|
  1. Home
  2. Veritas NetBackup™ Cloud Administrator's Guide
  3. Troubleshooting
  4. Troubleshooting cloud storage configuration issues
  5. Cannot create a cloud storage
Veritas NetBackup™ Cloud Administrator's Guide

Cannot create a cloud storage

If you cannot create a cloud storage in NetBackup, verify the following:

  • The cacert.pem file is present on both NetBackup master and media server in following locations:

    • UNIX/Linux - /usr/openv/var/webtruststore

    • Windows - <install_path>/var/webtruststore

    On media server versions 7.7.x to 8.1.2, if the cacert.pem file is not present, run the nbcertcmd -getCACertificate on the master server. After running this command, restart the NetBackup CloudStore Service Container.

    See the NetBackup Commands Reference Guide for a complete description of the command.

    Note:

    This cacert.pem file is a NetBackup-specific file. This file includes the CA certificates generated by the NetBackup authorization service.

  • The cacert.pem file is same on the NetBackup master and media server.

  • For media server versions 7.7.x to 8.1.2, the machine certificate is present in following locations:

    • UNIX/Linux - /usr/openv/var/vxss/credentials

    • Windows - <install_path>/var/vxss/credentials

    If the security certificate is not present, run the bpnbaz -ProvisionCert on the master server. After running this command, restart the NetBackup CloudStore Service Container on the master and media server.

    See Deploying host name-based certificates.

  • For media server versions 7.7.x to 8.1.2, the NetBackup CloudStore Service Container is active.

    See Stopping and starting the NetBackup CloudStore Service Container.

  • The Enable insecure communication with 8.0 and earlier hosts option on the NetBackup master server is selected if the media server is of the version 8.0 or earlier. The option is available in the NetBackup Administration Console on the Security Management > Global Security Settings > Secure Communication tab.

  • On the media server, if the certificate deployment security level if set to Very High, automatic certificate deployment is disabled. An authorization token must accompany every new certificate request. Therefore, you must create an authorization token before deploying the certificates.

    See the 'Creating authorization tokens' topic in the NetBackup™ Security and Encryption Guide for detailed steps.

Feedback

Was this page helpful?
Previous

Cannot create a cloud storage disk pool

Next

Data transfer to cloud storage server fails in the SSL mode

Feedback

Was this page helpful?