To restore the ePO - On-prem servers installed on server clusters with Microsoft Cluster Server (MSCS) software, reinstall the ePO - On-prem software on all servers in the server cluster.
Gather this information and complete these steps before beginning your installation. These steps ensure that your ePO - On-prem software can communicate with the SQL Server hosting the ePO - On-prem database.
If you are using dynamic ports for your SQL Server, verify that the SQL Browser Service is running.
If you are not using dynamic ports for your SQL Server, ensure that you know the ports that your SQL instance is using.
Make sure that the TCP/IP Protocol is enabled in the SQL Server Configuration Manager.
Restoring the ePO - On-prem software in a Microsoft Cluster Server environment is similar to installing the software initially.
Tip
Monitor the Restore installation process. You might need to restart your system.
If you have Agent Handlers configured, log on to the systems where the Agent Handlers are installed, then open the Windows Services panel and stop the Trellix Event Parser and Trellix Apache services.
See your Microsoft software product documentation for more information about using the Windows Services panel.
Using an account with local administrator permissions, log on to the Windows Server (the first node of the cluster) used as the restore ePO - On-prem server.
If needed, in the Failover Cluster Manager, create the ePO - On-prem application role, Client Access Point, and shared data drive resources.
For more information, see Installing Software in a Cluster environment .
Extract the files to a temporary location, and double-click Setup.exe.
The version of ePO - On-prem being restored must be the same as the version used to create the snapshot in the database. You can download the correct version from the Trellix website.
Important
If you try to run Setup.exe without first extracting the contents of the .zip file, the installation fails.
The Trellix ePolicy Orchestrator - On-prem - InstallShield Wizard starts.
Select Restore ePO from an existing database snapshot and click Next to begin the installation process.
In the Install additional software step, any remaining prerequisites are listed. To install them, click Next.
In the Destination Folder step, click Change to specify a custom destination location for your ePO - On-prem software. When the Change Current Destination Folder window opens, browse to the destination and create folders as needed. When finished, click OK.
Important
Make sure that you specify a destination folder that is accessible from all nodes of the cluster.
In the Set Virtual Server Settings step, provide the Virtual Server IP address, ePO - On-prem Virtual Cluster Name, ePO - On-prem Virtual Cluster FQDN, and Cluster Configuration Passphrase, then click Next.
In the Database Information step, either select the SQL Server name from the Database Server drop-down list or manually enter the name of the SQL Server.
In the Database Name field, enter the name of the existing ePO - On-prem database containing the snapshot, specify the type of Database Server Credentials to use, then click Next.
Windows authentication — From the Domain menu, enter the domain of the user account you're going to use to access the SQL Server. Enter the user name and password for an account with sufficient permissions to access the SQL Server hosting the ePO - On-prem database.
SQL authentication — Enter the user name and password for an account with sufficient permissions to access the SQL Server hosting the ePO - On-prem database.
The Domain menu is grayed out when using SQL authentication.
You might need to specify the SQL Server TCP port to use for communication between your ePO - On-prem server and database server. The ePO - On-prem installation tries to connect using the default TCP port 1433, and to determine if a dynamic port is in use by querying the SQL Browser service on UDP port 1434. If those ports fail, you are prompted to provide a SQL Server TCP port.
In the HTTP Port Information step, review the default port assignments, then click Next to verify that the ports are not already in use on this system.
In the Administrator Information step, type the user name and password you used for your existing ePO - On-prem global administrator account.
Type the Keystore Encryption passphrase (also known as the Snapshot passphrase) for the snapshot in the ePO - On-prem database.
Click Install to begin the installation.
When the installation has completed on the first node, click Finish, and move the ePO Application role to the second node.
Note
You can also shut down the first note, forcing the role to move to the second node.
On the second node, run the ePO - On-prem installer.
Important
Do not select the Restore ePO from an existing database snapshot option.
In the Destination Folder step, click Change, browse to the destination on the shared data drive where ePO - On-prem is installed, and click OK → Next.
In the Set Virtual Server Settings step, the Virtual Server IP address, ePO - On-prem Virtual Cluster Name, and ePO - On-prem Virtual Cluster FQDN fields are automatically populated. Type the Cluster Configuration Passphrase and click Next.
Click Install to start the installation on the second node, then click Finish.
This process takes much less time than the installation on the first node.
Create the three Generic Service resources. When finished, bring the ePO Application Role online.
For more information, see Installing software in a cluster environment.
If you stopped the Agent Handlers in step 1, log on to the systems where the Agent Handlers are installed, then open the Windows Services panel and start the Trellix Event Parser and Trellix Apache services.
Confirm that ePO - On-prem is functioning correctly, and test the cluster function by moving the ePO Application Role to the other node.
After completing these steps, your ePO - On-prem software is restored.