Skip to main content

Backup

We recommend that you prepare backup copies of the database, the configuration files, and the registry settings after you have deployed Axidian Access and verified that it works correctly.

The backup frequency depends on how you operate Axidian Access. For example, we recommend that you create backup copies of the configuration files if the parameters in the configuration files have been changed, and monthly after that.

We recommend that you create backup copies of the Axidian Access database after the deployment and debugging period. During the period when users register authenticators, we recommend that you create database backup copies daily, because the database changes when policies and authenticator settings are modified, and when users register or modify authenticators.

We recommend that you create backup copies of the following components:

Databases
  • The Core Server database
  • The Key Server database (if any)
  • The Log Server event database (if any)
Component configuration files
  • Log Server configuration files:
    • C:\inetpub\wwwroot\ls\clientApps.config
    • C:\inetpub\wwwroot\ls\targetConfigs\sampleDb.config, if the logs are stored in Microsoft SQL
    • C:\inetpub\wwwroot\ls\targetConfigs\postgresDb.config, if the logs are stored in PostgreSQL
    • C:\inetpub\wwwroot\ls\targetConfigs\sampleSyslog.config, if the logs are stored in SysLog
Note

Before creating a backup copy, decrypt the configuration file with the EA.Config.Encryptor.exe utility (located in the Axidian Access Manager Server/<version number>/Misc/EA.Config.Encryptor distribution directory). For detailed information about decryption, see the Manual Core Server configuration section. If backup databases were used for the logs, save all the configured files.

  • The administrator console configuration file C:\inetpub\wwwroot\am\mc\Web.config
  • The User Console configuration file (if any) C:\inetpub\wwwroot\am\uc\Web.config
  • The Identity Provider configuration file (if any):
    • For Axidian Access 8.1.4 and lower, the file to back up is C:\inetpub\wwwroot\am\idp\Web.config
    • For Axidian Access 8.1.5 and higher, the file to back up is C:\inetpub\wwwroot\am\idp\app-settings.json
  • The Key Server configuration file (if any):
    • For Axidian Access 8.1.x and lower, the file to back up is C:\inetpub\wwwroot\airkeycloud\Web.config
    • For Axidian Access 8.2 and higher, the file to back up is C:\inetpub\wwwroot\axidiankey\Web.config
Registry settings
  • The registry settings from Core Server located in the HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Axidian-ID section
  • The registry settings from the servers with the integration modules installed, located in the HKEY_LOCAL_MACHINE\SOFTWARE\Axidian-ID and HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Axidian-ID sections
  • The registry settings from the client machines where the Windows Logon and/or ESSO Agent modules are used, located in the HKEY_LOCAL_MACHINE\SOFTWARE\Axidian-ID and HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Axidian-ID sections
Configuration wizard settings

To create a backup copy of the configuration wizard settings, run the configuration wizard (located in the Axidian Access Manager Server/<version number>/Misc/EA.Server.Wizard.exe distribution directory). Go to the Confirmation step, make sure that the Save a backup copy of the configuration parameters option is selected, and click Apply. Save the created backup copy.