This design implements Azure Backup.
Topology: A centralized Recovery Services Vault in the Hub VNet (logically) protects resources in all Spokes.
+--------------+ +--------------------------+ +--------------+
| Spoke VM | | HUB VNet | | Secondary |
| (Agent) | | (Backup Mgmt) | | Region |
+------+-------+ +------------+-------------+ +------+-------+
| | |
v | (Mgmt Traffic) |
+------+-------+ v v
| VMSnapshot | +------------+-------------+ +------+-------+
| Extension |---------->| Recovery Services |---------->| Backup |
+--------------+ | Vault | | Replica |
+--------------------------+ +--------------+
PRIMARY REGION (East US)
+-----------------------------------------------------------------------+
| HUB VNet: vnet-hub (10.0.0.0/16) |
| +-----------------------+ |
| | Recovery Services | |
| | Vault | |
| | (GRS) | |
| +-----------|-----------+ |
| | |
| v (Backup Traffic) |
+---------------|-------------------------------------------------------+
|
+---------------|-------------------------------------------------------+
| SPOKE VNet: vnet-app-spoke (10.1.0.0/16) |
| +-----------------------+ |
| | VM | |
| | [Snapshot] | |
| +-----------------------+ |
+-----------------------------------------------------------------------+
SECONDARY REGION (West US)
+-----------------------------------------------------------------------+
| DR STRATEGY |
| +-----------------------+ |
| | Cross-Region Restore | |
| | (Enabled) | |
| +-----------------------+ |
+-----------------------------------------------------------------------+
1. Trigger: 11 PM.
2. Snapshot: Azure takes disk snapshot (VSS).
3. Transfer: Data transferred to Vault.
4. Replicate: Data replicated to West US.
1. Create Resource Group: rg-design14-backup. Region: East US.
1. Search: "Recovery Services vaults" -> + Create.
2. Resource Group: rg-design14-backup.
3. Name: rsv-hub-prod.
4. Region: East US.
5. Create.
1. Go to the new Vault rsv-hub-prod.
2. Properties (left menu).
3. Backup Configuration -> Update.
4. Storage replication type: Geo-redundant.
5. Cross Region Restore: Enable (This allows restoring to West US).
6. Save.
1. Backup (left menu) -> + Backup.
2. Where is your workload running?: Azure.
3. What do you want to backup?: Virtual machine.
4. Backup:
* Policy: Select DefaultPolicy or create new (Daily, 11 PM).
* Virtual machines: Add.
* Select a VM (e.g., vm-hr-01 or any available VM).
* OK.
5. Enable backup.
1. Go to Backup items -> Azure Virtual Machine.
2. Click the VM name.
3. Backup now.
4. Retain backup till: Accept default.
5. OK.
1. Wait for backup to complete (and replicate - can take time).
2. Go to Backup items -> Azure Virtual Machine -> Select VM.
3. Restore VM.
4. Restore Point: Select latest.
5. Restore Configuration:
* Restore Region: Secondary Region (West US).
* Storage Account: Select/Create one in West US.
* Resource Group: Select/Create one in West US.
6. Restore.