2.15.0 New User Experience for Data Security for Dell
What changed in the Cyberstorage for Dell 2.15.0 interface redesign, where common tasks moved, and a walkthrough of the redesigned Data Security experience
What changed in the Cyberstorage for Dell 2.15.0 interface redesign, where common tasks moved, and a walkthrough of the redesigned Data Security experience
How the Everyone group and multi-domain Active Directory trust relationships affect SMB lockout scope, and what to review before enabling enforcement.
API Guide
How to safely onboard a new application or workflow onto a monitored cluster that is already running in Enforcement or Critical mode with lockout enabled.
The five closing states a security event can reach, and the Close Event wizard used to classify and close one manually.
Configuration
Placing honeypot bait files (PowerScale) and bait objects (ECS) as tripwires to accelerate ransomware detection, and changing the default honeypot naming pattern.
Technical documentation for deploying, configuring, and operating Superna Data Security Edition for Dell PowerScale and ECS environments. Learn how to enable threat detection, implement data protection policies, and respond effectively to cybersecurity incidents.
Design Guide
Disclaimers
Planning considerations specific to Easy Auditor, including the built-in auditor account used for separation of duties.
How a security event moves from detection through to closure, the actions available at each stage, and the Investigate & Recover tabs used to review it.
Forward raw PowerScale audit events from the ECA to an external syslog server, or archive them to an S3 bucket via Data Orchestration, independent of Data Auditing's own query database
Adding an ECS cluster to Eyeglass inventory, licensing it for Ransomware Defender, configuring Security Guard on ECS, and common ECS data protection use cases.
Frequently asked how-to questions for Ransomware Defense, Active Auditor, Data Auditing, and Integrations
License Keys
How user lockout works across SMB, NFS, and ECS when a security event reaches Major or Critical severity, and how to restore access afterward.
Platform compatibility, system requirements, licensing, and network port requirements before deploying Data Security for Dell PowerScale and Dell ECS.
Required PowerScale OneFS audit success events for Ransomware Defender, and the recommended Easy Auditor audit event configuration.
Deploy and configure Ransomware Defender for AWS to protect S3 buckets and FSx for Windows File Server, including real-time triggers, Security Guard, automated backup, and multi-region DR
Using Recovery Manager to restore data affected by a confirmed ransomware event.
Deep-reference material for Recovery Manager -- snapshot-selection logic, quarantine forensics, and ECS-specific behavior. Covers both PowerScale and ECS.
Reference
Known issues for Data Security for Dell version 2.15.0, covering Active Auditor, Threat Hunting, Investigate & Recover, Threat Detections, and Robo Audit reporting
Every state a security event can be in, when it occurs, and the actions available at each one.
PowerScale OneFS storage-platform-side audit and agent configuration steps required before the ECA cluster can ingest audit data. See Dell ECS Configuration for the ECS equivalent.
How the Suspicious Extensions master list is maintained and updated, and the CLI commands to control update mode and roll back a version.
How Data Security responds to a security event -- user lockout across SMB, NFS, and ECS, and the protective snapshots taken alongside it.
Diagnose and resolve Threat Hunting issues for Data Security
Use Cases
User Help
Data Security's completely redesigned 2.15.0 user interface, spanning Threat Detections, Detection Controls, Data Auditing, and Health Check