102
Maintaining your security gateway
Backing up and restoring configurations
Performing a local command line backup
A local command line backup uses a backup utility that is installed on the security gateway whose
configuration you want to back up. You run the backup utility through an SSH connection to the
security gateway.
The advantages of doing a local backup are:
■
Certificate handling is not required, since performing the back up on the local machine is secure.
■
The Tomcat server is not required to run, which makes the backup process run more quickly.
Prerequisite
Complete the following task before beginning this procedure:
■
“Enabling SSH for command-line access to the appliance”
To perform a local back up
◆
On the security gateway, navigate to usr/raptor/bin/tools and run the following command:
BackupUtil.sh backup|extract backupFile backupPassword [<destDir>]
Where:
Related information
For further information related to this topic, see the following:
■
“Performing a remote command line backup”
■
“Restoring security gateway configuration files from the SGMI”
Performing a remote command line backup
If you cannot access the appliance directly, you can use the remote backup utility to perform a back up
from a remote computer. Operating system-specific versions of the remote backup utility are provided
on the restore CD-ROM.
When you perform a remote back up, you could be working on a computer that is outside the trusted
environment. Because accessing your security gateway from an outside (untrusted) network can be a
security risk, the remote backup utility checks the certificate of the security gateway.
gives the location, file name, and backup command for the platforms on which you can use
the remote backup utility.
backup|extract
Specifies whether to perform a backup or to optionally extract the file to examine the
internal contents.
You cannot restore an extracted file.
backupFile
Specifies the backup file name.
You must specify a backup file name, or DEFAULT_BACKUP_FILE, which uses the
security gateway backup file naming convention.
The backup file name is required to prevent administrators from overwriting previous
backups.
backupPassword
The password used to encrypt/decrypt the backup file.
If you do not provide a backup password, the backup file cannot be restored.
destDir
Specifies the location to which XML files should be extracted.
The default is current working directory.
Only use this option if you are extracting the file.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...