Skip to main content
Migration Notice
We're migrating documentation from the old portal into this one. Some things may look a little different or out of place in the meantime — we know, and we're working to get it right. If something's unclear or doesn't look right, let us know.
Version: 2.15.0

Prerequisites for AirGap for Dell

Introduction

This section covers what to confirm and plan for before deploying AirGap: platform and release compatibility, system requirements for the Eyeglass/Vault Agent appliances, licensing, network requirements, and the vault and production cluster requirements specific to an AirGap deployment. For the higher-level concepts these requirements support, see the AirGap Overview; for deployment topology and hardening guidance, see the Design Guide.

Release Compatibility

Platform Support

info

Platform and version compatibility is maintained on a single page. See Platform Support for the supported OneFS, ECS, hypervisor, and operating system versions.

System Requirements

Virtualization Platforms

  • VMware vSphere: Version 6.0 ESX host or higher is required. The AirGap Vault Agent deployment steps in the Installation Guide are written for VMware/OVF.
  • Microsoft Hyper-V: Appliance deployment requires support for the VHDX format. Contact Superna Support for guidance deploying the AirGap Vault Agent on Hyper-V.
  • Nutanix AHV: Contact Superna Support for guidance deploying the AirGap Vault Agent on Nutanix AHV.

VMware vCenter Deployment

vCenter 7 and vCenter 8 are supported.

System Resources

  • CPU: 4 vCPU
  • Memory: 24 GB RAM (Memory may need to be upgraded based on scalability requirements.)
  • Disk Space:
    • Operating System Partition: 38 GB
    • Additional Disk Space: 140 GB
    • Total Disk Size in VMware: 178 GB

Network Requirements

  • Latency: The latency between the administration PC and the Eyeglass VM GUI must be less than 15 ms (measured by ping).

Authentication and User Management

  • Active Directory (AD) Authentication: An AD authentication provider must be available in the system zone for Role-Based Access Control (RBAC) and SID-to-user resolution API requirements.

Browser Requirements

  • Supported Browser: Google Chrome is required. The browser must support WebSockets.
  • Unsupported Browsers: Internet Explorer is not supported.
  • Cookie Settings: Third-party cookies must not be disabled, as they are required for authentication sessions and file downloads.

Licensing

AirGap requires an Enterprise AirGap license for inside-the-vault (Enterprise AirGap) mode; outside-the-vault (Virtual AirGap) automation is included with the base Ransomware Defender license and does not require the Enterprise AirGap license — see Virtual AirGap (outside-the-vault).

note

The name "Airgap Basic" was deprecated effective August 1, 2022 — this was an old product name, not a statement that outside-the-vault automation moved behind a paywall. The functionality it referred to is what's described above as Virtual AirGap, still included with the base Ransomware Defender license. See Release Notes for details.

The 2.15.0 GUI's Managed by Vault Agent toggle still labels a policy "Basic AirGap" when that option is disabled (see AirGap Jobs) — that's this same Virtual AirGap functionality, not a return of the retired product tier above. The two uses of "Basic AirGap"/"Airgap Basic" name the same underlying feature; only the product-tier/licensing distinction was retired, not the term itself.

Enterprise AirGap license keys are retrieved and applied the same way as other Eyeglass-licensed products — see License Keys for the retrieval and application procedure.

AirGap-Specific Requirements

Vault Cluster Requirements

  • Dedicated Host for Vault Agent VM: A dedicated host server is required within the Vault environment to deploy the Vault Agent VM.
    • Hardware Recommendations:
      • Dual-socket server with 512 GB RAM.
      • 1G and 10G Ethernet interface options.
      • 2–4 TB local flash storage.
      • Future-proof for additional VMs supporting cybersecurity solutions and Windows desktops.
      • Ensure secure OS desktop for recovery operations and Isilon hardware, firmware, and software upgrades.
  • Management and AirGap Replication Pool: The Vault PowerScale system must have a Management pool and an AirGap replication pool within the System zone. Nodes must be shared between the pools, but different network interfaces are required for each pool to ensure isolation.
  • Network Subnet Segregation: Use a segregated subnet for all Vault environment components to ensure network isolation.
  • Network Connectivity for Replication: Establish network connectivity between the replication pool of the Vault PowerScale system and the replication pool of the Source PowerScale system. No password should be required for this communication to ensure successful SyncIQ replication.
  • Firewall and Traffic Control: Install a firewall or use a dedicated switch to restrict traffic between the production and the Vault environment.
  • Dedicated Switch for Vault Agent VM Connectivity: Connect the Vault Agent VM to the Management pool of the Vault PowerScale system using a dedicated switch.

Production/Source Cluster Requirements

  • AirGap Replication Pool: Create a separate AirGap replication pool on the Source PowerScale system within the System zone.
  • Dedicated Subnet for AirGap Replication: Assign a dedicated subnet specifically for the AirGap replication pool on the Source PowerScale system.
  • Node Availability for High Availability: Use at least two nodes with separate network interfaces for the AirGap replication pool to ensure high availability. Single-node setups are allowed but will introduce a single point of failure for SyncIQ replication.
  • Optional Dedicated Nodes for AirGap Replication: You may deploy dedicated nodes specifically for the AirGap replication pools to enhance system isolation and availability.

See Also

  • Design Guide – Deployment topology, vault placement, and hardening guidance that builds on these requirements.
  • Installation – Deploy Eyeglass, the ECA, and the Vault Agent once these prerequisites are confirmed.
  • Use Cases – Common recovery and vault-access scenarios for AirGap.