sk180259 - How to create AWS snapshot for CloudGuard Network Security Gateway

How to create AWS snapshot for CloudGuard Network Security Gateway

Product

Version

OS

Platform

Last Modified

Solution

Instructions to create AWS snapshot for CloudGuard Network Security Gateway:

  1. Navigate to AWS console > EC2 > Instances and select CloudGuard EC2 instance.

  2. Click on Storage tab.

  3. Click on the Volume ID of the selected instance.

  4. Select the volume and on the right bar select Actions > Create snapshot and wait until snapshot creation is completed.

Instructions to restore from AWS snapshot for CloudGuard Network Security Gateway:

  1. Navigate to AWS console > EC2 > Snapshots.

  2. Select your snapshot and on the right bar select Actions > Create volume from snapshot.

  3. Change the Volume settings (Volume type, Size, IOPS, Throughput and Availability Zone) as your original volume then click on Create volume.

  4. Navigate to AWS console > EC2 > Instances, select your target CloudGuard EC2 instance and stop it.

  5. Click on Storage tab of the EC2 instance.

  6. Copy the Volume ID of the CloudGuard EC2 instance’s original volume.

  7. Navigate to AWS console > EC2 > Volumes, search and select the copied volume id Volume ID and then detach it from the CloudGuard EC2 instance.

  8. Select the newly created volume and click Attach volume.

  9. Select:

    1. CloudGuard Network Gateway server as the target EC2 instance.
    2. Device name: /dev/xvda and click Attach volume.
  10. Start the CloudGuard Network Gateway.

Reference: Create Amazon EBS snapshots

Notes:

Risks

There is a risk of trying to restore from an "unclean" source. If you try to that a snapshot when some process is writing to the volume, write requests in the instance's kernel cache may not be written to disk or may only be partially written. These files would look corrupted on a volume made from the snapshot.

AWS recommends unmounting all volumes before taking a snapshot for this reason. See Create Amazon EBS snapshots.

If you cannot unmount / on a running instance, you can stop the instance from making the snapshot and we recommend to backup the volume.