BlueXP is now NetApp Console
Monitor and run hybrid cloud data services
Let's see how NetApp Clean Recovery isn't just possible. It's faster, smarter, and built for today's challenges. The storage admin can recover workloads after an attack. In the recovery tab, they select workload X or recovery. In this demo, we are selecting a workload to restore. The storage admin chooses to recover using the new clean restore option which can find and remove malware and minimize the chance of reinfection after recovery. The storage admin observes the creation of a clean room to recover impacted workload within the isolated recovery environment. Multiple impacted workloads can be recovered at the same time. Each workload gets its own isolated clean room within the isolated recovery environment. Once the setup step is complete, the storage admin moves on to the analysis stage. The storage admin reviews the list of recovery points that will be analyzed and starts the analysis.In the analysis stage, clean restore runs advanced ransomware detection or ARD on each recovery point to identify the latest unencrypted restore point. ARD is a powerful detection feature powered by AI that accurately detects partial encryption. Clean Restore also builds a catalog of modified files and identifies the latest unencrypted copy of each impacted file. At the end of the analysis, the storage admin can see the results for each restore point analyzed, the number of modified files that were scanned to detect encryption and how many files were impacted. Clean restore also identifies any files that were deleted since the previous restore point. He also notices that some restore points were skipped. That's because clean restore already found the latest unencrypted restore point and decided there was no need to analyze any older restore points. He is now ready to select the recovery plan. The storage admin sees two recovery options, one with the least amount of data loss or fast recovery with one recommended by clean restore. Clean restore recommends lowest data loss option. Here, clean restore will curate a new restore point with the latest clean copy of every file, maximizing recovered data. When he feels confident in the restoration plan, he returns to the plan and is now ready to create the curated restore point. The latest unencrypted copy of each impacted file is added to the latest unencrypted restore point to build the curated restore point. Once completed, the curated restore point is then passed to Microsoft Defender to find and remove malware from any infected files. Upon completion, the admin can review the results from this cleaning process. In this case, all files were cleaned. Had any failed, they would have been quarantined. The admin can recover the clean curated restore point to either the production or an alternate site without worrying about any reinfection. The admin can review a summary of each stage of the clean restore process and exits the clean room for the workload.
The NetApp Ransomware Resilience Isolated Recovery Environment isolates infected workloads, removes malware, creates a recovery point using the latest file versions from snapshots, and guides the user through the restoration process.