Backup
We recommend that you prepare backup copies of the database, the configuration files, and the registry settings after you have deployed Axidian Access and verified that it works correctly.
The backup frequency depends on how you operate Axidian Access. For example, we recommend that you create backup copies of the configuration files if the parameters in the configuration files have been changed, and monthly after that.
We recommend that you create backup copies of the Axidian Access database after the deployment and debugging period. During the period when users register authenticators, we recommend that you create database backup copies daily, because the database changes when policies and authenticator settings are modified, and when users register or modify authenticators.
We recommend that you create backup copies of the following components:
Databases
- The Core Server database
- The Key Server database (if any)
- The Log Server event database (if any)
Component configuration files
- Log Server configuration files:
C:\inetpub\wwwroot\ls\clientApps.configC:\inetpub\wwwroot\ls\targetConfigs\sampleDb.config, if the logs are stored in Microsoft SQLC:\inetpub\wwwroot\ls\targetConfigs\postgresDb.config, if the logs are stored in PostgreSQLC:\inetpub\wwwroot\ls\targetConfigs\sampleSyslog.config, if the logs are stored in SysLog
Before creating a backup copy, decrypt the configuration file with the EA.Config.Encryptor.exe utility (located in the Axidian Access Manager Server/<version number>/Misc/EA.Config.Encryptor distribution directory). For detailed information about decryption, see the Manual Core Server configuration section. If backup databases were used for the logs, save all the configured files.
- The administrator console configuration file
C:\inetpub\wwwroot\am\mc\Web.config - The User Console configuration file (if any)
C:\inetpub\wwwroot\am\uc\Web.config - The Identity Provider configuration file (if any):
- For Axidian Access 8.1.4 and lower, the file to back up is
C:\inetpub\wwwroot\am\idp\Web.config - For Axidian Access 8.1.5 and higher, the file to back up is
C:\inetpub\wwwroot\am\idp\app-settings.json
- For Axidian Access 8.1.4 and lower, the file to back up is
- The Key Server configuration file (if any):
- For Axidian Access 8.1.x and lower, the file to back up is
C:\inetpub\wwwroot\airkeycloud\Web.config - For Axidian Access 8.2 and higher, the file to back up is
C:\inetpub\wwwroot\axidiankey\Web.config
- For Axidian Access 8.1.x and lower, the file to back up is
Registry settings
- The registry settings from Core Server located in the
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Axidian-IDsection - The registry settings from the servers with the integration modules installed, located in the
HKEY_LOCAL_MACHINE\SOFTWARE\Axidian-IDandHKEY_LOCAL_MACHINE\SOFTWARE\Policies\Axidian-IDsections - The registry settings from the client machines where the Windows Logon and/or ESSO Agent modules are used, located in the
HKEY_LOCAL_MACHINE\SOFTWARE\Axidian-IDandHKEY_LOCAL_MACHINE\SOFTWARE\Policies\Axidian-IDsections
Configuration wizard settings
To create a backup copy of the configuration wizard settings, run the configuration wizard (located in the Axidian Access Manager Server/<version number>/Misc/EA.Server.Wizard.exe distribution directory). Go to the Confirmation step, make sure that the Save a backup copy of the configuration parameters option is selected, and click Apply. Save the created backup copy.