Important Update: Cohesity Products Documentation
All Cohesity product documentation are now managed via the Cohesity Docs Portal: https://docs.cohesity.com/HomePage/Content/home.htm. Some documentation available here may not reflect the latest information or may no longer be accessible.
Arctera Insight Information Governance Installation Guide
- Understanding the Arctera Insight Information Governance architecture
- About Arctera Insight Information Governance
- About the Management Server
- About the Collector worker node
- About the Indexer worker node
- About the Classification worker node
- About the Self-Service Portal node
- About Communication Service
- About the DataInsightWatchdog service
- About the DataInsightWorkflow service
- About Arctera Insight Information Governance installation tiers
- Preinstallation
- Installing Arctera Insight Information Governance
- About installing Arctera Insight Information Governance
- Federal Information Processing Standards (FIPS)
- Performing a single-tier installation
- Performing a two-tier installation
- Performing a three-tier installation
- Installing the Management Server
- Installing the worker node
- Installing the Classification Server
- Installing the Self-Service Portal
- Installing a Linux Classification Server or Collector worker node
- Installing Arctera Insight Information Governance in Azure Cloud Environment
- Installing Arctera Insight Information Governance in AWS Cloud Environment
- Upgrading Arctera Insight Information Governance
- Post-installation configuration
- Installing Windows File Server agent
- Getting started with Information Governance
- Uninstalling Arctera Insight Information Governance
- Appendix A. Installing Information Governance using response files
Upgrading Information Governance to 7.2.2
You can upgrade an existing Information Governance Server with Information Governance versions 7.0, 7.1 (including their minor releases) to 7.2. If the server is installed with a version before 6.6, you must upgrade to at least version 7.0 before you can upgrade to 7.2.
All Information Governance worker nodes must be at the same version as the Management Server. Management Server version is compatible with the 7.0 and 7.1 versions of Windows File Server agents in FIPS disable mode.
When you are upgrading to Information Governance, you will get an option to enable FIPS mode. Make sure you read all the information before enabling the FIPS mode.
Note:
If you are upgrading to 7.1 and enabling FIPS mode, make sure Windows File Servers are upgraded minimum to 6.6 version. Management Server 6.6.2 is not compatible with the 5.0, 5.1, 5.2, 6.0, 6.1, 6.2, 6.3 and 6.4 versions of Windows File Server agents in FIPS enable mode. Also note that if FIPS is enabled, connection to other Information Governance components will be lost until all components are running on same version.
Note that due to security vulnerabilities, Information Governance turned off SSL and TLSv1 protocols. However, Windows File Server agents version 4.5 are not compatible with TLSv1.1 and TLSv1.2 protocols. Thus, Windows File Server agents stop communicating with the collectors that are upgraded to Information Governance 7.2.2. To resume this communication, perform the following on each Windows File Server agent node before or after upgrading the collectors to 7.2.2:
- Obtain the latest 32-bit Java Runtime Environment (JRE) binaries from the Windows File Server agent version 7.2.2. Typically, they are located in the
jrefolder of the agent 7.2.2 installation. The default location is C:\Program Files\DataInsight\jre. - Log on to the Windows File Server agent computer with the Administrator privileges.
- Stop the DataInsightComm and DataInsightWatchdog services on the agent.
- Replace the old jre binaries on the agent with the ones obtained from the Windows File Server agent node version 7.2.2. By default, the agent version 4.5 JRE is located at C:\Program Files\DataInsight\jre.
- Start the DataInsightComm and DataInsightWatchdog services.
- After few minutes, verify that the node's status is ONLINE on the Information Governance console. The status is displayed at Settings > Servers page.
Before you begin to upgrade Information Governance to 7.2.2, note the following:
As a best-practice measure, Arctera recommends that you take a backup of the server's
datafolder.In case of a multi-node setup, the upgrade setup must be run first on the Management Server, then on the Indexer nodes, followed by the Collector nodes. You can upgrade the Windows File Server agent only after upgrading the Collector nodes.
If you are upgrading the server using a Remote Desktop Connection (RDC), ensure that you do not set automatic log-off for the session.
Ensure that you complete the following tasks after the upgrade:
Configure the primary attributes that are used to classify users for the purpose of generating advanced analytics data.
Configure the time period for computing advanced analytics.
Refresh the Information Governance Dashboard data.
Verify that the .Net Framework version 4.5 is installed on the following:
Collector nodes monitoring the Windows SharePoint servers and the EMC Isilon filers.
The Management Server communicating with an Enterprise Vault server.
To upgrade Information Governance to 7.2.2
- Log in as Administrator to the server that you want to upgrade.
- Right click
InformationGovernance_windows_7_2_0_N_x64.exeand select Run as administrator. - When the setup prompts you to upgrade from current version to 7.2.2, click Yes.
- In the Welcome to the Arctera Insight Information Governance Setup Wizard window, click Next.
- In the License Agreement window, select I accept the agreement, and click Next.
- You must upgrade the product data before you start Information Governance services. In the Completing the Information Governance 7.2.2 Upgrade Wizard window, select the Launch the Upgrade Data Wizard check box.
- Check the box if you want to enable Federal Information Processing Standards (FIPS) mode.
Note:
If you enable FIPS mode, you will not be able to change this setting in future.
- Click Next
- Click Finish to exit the setup.
Note:
After upgrading to 7.2.2, expect a delay in first index writer run. Information Governance will need extra time to process the incoming scan and audit events.
To upgrade a Linux Indexer
- In case of a Linux indexer, log in as the appropriate user (root or non-root) configured to run the product.
Note that if you had earlier installed the Linux Indexer as root and later switched to using a non-root user, you must perform the following steps before you start the Linux installer for upgrade. If you do not perform these steps, the installer you launch with non-root credentials cannot detect the previous version of Information Governance on the server.
Log in to the machine as root user.
Copy the following file to a temporary location:
~/.java/.userPrefs/com/install4j/installations/prefs.xml.Log out and log back in as the non-root user.
Create the following directory:
~/.java/.userPrefs/com/install4j/installations/Change to the directory you have created.
Take a backup of
prefs.xml.Overwrite
prefs.xmlin this folder with theprefs.xmlthat was copied to the temporary location.
- When the setup prompts you to upgrade from current version to 7.2.2, click Yes.
Note:
On Linux, if the installer does not prompt you for upgrade because it does not detect the earlier version of Information Governance on the machine, ensure that you first follow the instructions in 1.
- Enable FIPS Mode? Yes [y], No [n]
FIPS are standards and guidelines for federal computer systems that are developed by National Institute of Standards and Technology (NIST) in accordance with the Federal Information Security Management Act (FISMA) and approved by the Secretary of Commerce. Choice of FIPS mode should be same for Management server and Worker nodes. You can enable FIPS mode only during fresh product installation or upgrade. You will not be able to make any changes post product installation or upgrade.
Note:
If you enable FIPS mode, you will not be able to change this setting in future. See Federal Information Processing Standards (FIPS) .
See Upgrading the product data using the Upgrade Data Wizard.
Note:
After upgrading to 7.2.2, expect a delay in first index writer run. Information Governance will need extra time to process the incoming scan and audit events. You can also upgrade the Windows File Server agent and Collector nodes using the Management Console. For more details, see the Arctera Insight Information Governance Administration Guide
After upgrading to 7.2.2, Information Governance does not support Discovery, Scan, and Audits for the SharePoint Online accounts that were added prior to Information Governance 6.1.4. If you want to retain the audit events from existing SharePoint Online accounts, follow the instructions below to take a backup.
Note:
You can avoid steps 1 and 2, and directly perform step 3 if you do not want existing audit events.
To back-up contents from existing SharePoint Online accounts
- Run the following reports on your existing SharePoint Online Account:
Activity Details for Path
Activity Details for Users/Groups
Activity Summary for Paths
Activity Summary for Users/Groups
- Take a backup of the reports folders on the Management Server from the following directory:
<data_dir>/console/reports/reportruns/<report_run_id>.You can get the
report_run_idfrom Reports >Select Action > View > Id (Column).After you have a backup, you can delete existing SharePoint Online accounts.
- Click Settings > Share Point Sources > <account > > Select Action > Delete to delete existing SharePoint Online accounts.
- Add a new Share Point Online Account. See Adding SharePoint Online accounts in the Arctera Insight Information Governance Administrator's Guide.
While upgrading to 7.2 and above using a non-administrator user for Isilon discovery, run the following command to add the required NFS privilege to the Information Governance role on the Isilon Cluster: isi auth roles modify dirole --add-priv-ro=ISI_PRIV_NFS