2 environments that don't share physical networking switches, but share back-end SAN storage over fiber channel (FC) and compute in a blade chassis.
Environment A and Environment B have a firewall between them. Environment A will have VMware vCenter, vSphere management traffic, and Veeam Backup and Replication in it.
I am planning to get 1 physical "Landing Zone" server (LZ) as a backup repository and it will be connected to the FC to allow for hotadd of the SANs VM Datastores and be able to backup both environments VMs from their shared storage.
What I am trying to ascertain is what would be needed to do a File Level Restore (FLR) from the Environment A LZ to VM servers in Environment B.
As I understand I need a mount server that can reach the LZ, but talk to Env. B's restore location (Original or new location).
I am looking to make this happen in the most secure fashion.
Potential Options:
- I have a Mount server in Env. A with the Backup Console installed, that isn't on domain in Env. A, it is a VM that has Virtual NICs to both environments and can thus talk to Env. B and perform the backups. My concern is I'm now bridging networks and I really don't want to do that.
- I put a mount server with the backup console in Env. B., It has ports open through the firewall to reach the VBR and LZ.I think this may be better, I'm just concerned if it's doable.