Prerequisites for Data Security for Dell
Introduction
This section covers what to confirm and plan for before deploying Data Security: platform and release compatibility, system requirements for the Eyeglass appliance and ECA cluster, licensing, network port requirements, and the storage-platform-side agent configuration needed before the ECA can ingest audit data. For a conceptual introduction to Data Security, see the Data Security landing page; for ECA cluster and Threat Hunting ML VM sizing and topology, see the Design Guide.
Release Compatibility
Platform Support
Platform and version compatibility is maintained on a single page. See Platform Support for the supported OneFS, ECS, hypervisor, and operating system versions.
System Requirements
Virtualization Platforms
- VMware vSphere: Version 6.0 ESX host or higher is required.
- Microsoft Hyper-V: Appliance deployment requires support for the VHDX format.
- Nutanix AHV: A deployment procedure is available for Superna appliances, but Nutanix AHV is not a formally supported platform — contact Superna Support before deploying to Nutanix AHV in production.
VMware vCenter Deployment
vCenter 7 and vCenter 8 are supported.
System Resources (Eyeglass Appliance)
- CPU: 4 vCPU
- Memory: 24 GB RAM
- Disk Space:
- Operating System Partition: 52 GB
- Additional Disk Space: 120 GB
- Total Disk Size in VMware: 172 GB
These figures are for the Eyeglass appliance itself. ECA cluster sizing and Threat Hunting ML VM sizing scale with deployment size — see Deployments below.
Scalability Limits
Eyeglass Scalability Limits and Appliance Memory Minimum Requirements
| Scaling Limit Area | Tested Scaling Limits | Notes |
|---|---|---|
| Number of Managed Clusters (1 appliance) | Manages up to 22 clusters | Contact Support for RAM requirements |
| Access Zones | Handles > 10 zones with 32 GB RAM; > 30 zones with 64 GB RAM; > 50 zones with 84 GB RAM | Requires 32–84 GB of RAM |
| Total Object Count (shares + exports + quotas) | < 5,000 objects: 16 GB RAM; 5,000–10,000: 32–48 GB RAM; > 10,000: 64 GB RAM; > 20,000: 84 GB RAM | |
| Clusters Added to the Appliance | 4 clusters: 32 GB RAM; 4–8 clusters: 64 GB RAM; > 10 clusters: 84 GB RAM | |
| Performance Auditor | Requires a minimum of 32 GB RAM when licensed | Minimum 32 GB RAM |
| Concurrent Administrators (3 or more) | Adds 8 GB RAM per additional logged-in administrator |
Each software release may adjust memory requirements, and alarm code SCA0094 recommends memory for your specific configuration. The recommendation from SCA0094 takes priority over this table.
Network Requirements
- Latency: The latency between the administration PC and the Eyeglass VM GUI must be less than 15 ms (measured by ping).
Authentication and User Management
- Active Directory (AD) Authentication: An AD authentication provider must be available in the system zone for Role-Based Access Control (RBAC) and SID-to-user resolution API requirements.
Browser Requirements
- Supported Browser: Google Chrome is required. The browser must support WebSockets.
- Unsupported Browsers: Internet Explorer is not supported.
- Cookie Settings: Third-party cookies must not be disabled, as they are required for authentication sessions and file downloads.
Licensing
Each writable PowerScale or ECS cluster you plan to monitor requires an agent license (and agent maintenance), assigned through the Eyeglass License Manager. Cold/DR (non-writable) clusters can be monitored without consuming a license. Threat Hunting is included in your subscription license for Data Security Edition as an add-on module — no separate license is required, and it will show up in the menu once installed.
Plan license counts for all writable clusters you intend to onboard, including future additions, before deployment. See Eyeglass, ECA, and Mini-ECA Installation for the license activation steps.
Network Ports
Eyeglass, the ECA cluster, Mini-ECA, and the Threat Hunting ML VM each require specific firewall ports to be open between components (and to PowerScale/ECS, NTP, DNS, and SMTP where applicable). See Firewall Configurations for the complete port matrix.
Storage Platform Agent Configuration
Before the ECA cluster can ingest audit data, PowerScale OneFS (or ECS) requires storage-platform-side configuration: enabling protocol and configuration change auditing, disabling high-rate audit events, creating the NFS export used for audit log delivery, and enabling REST API audit ingestion. See Storage Platform Agent Configuration for the full procedure, and Dell ECS Configuration for the ECS equivalent.
See Also
Once you've reviewed the foundational material above and completed deployment planning, continue to Installation to deploy the ECA cluster, license your environment, and complete initial configuration.
- Design Guide – ECA cluster and Threat Hunting ML VM sizing and topology considerations.
- Deployments – Per-component deployment topics: Eyeglass, ECAs, Mini-ECAs, and the Threat Hunting ML VM.
- Storage Platform Agent Configuration – Required PowerScale-side audit configuration before ECA deployment.
- Installation – Deploy the Eyeglass Clustered Agent (ECA) cluster, upload your Data Security license(s), and complete initial configuration.