Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Commvault: Automate AWS Backup with Clumio Terraform Provider

Commvault
06/29/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


And that you could typically do it in less time than it takes to make a cup of coffee? Let me show you how Clumio's Terraform provider makes this possible. Traditionally, you'd first need to connect your AWS accounts, then configure policies, create protection rules and groups, and apply protection. But with Terraform, here's all we need. Four simple files. Let me show you what's inside. First, we tell Terraform we want to use Clumio and AWS. Think of these as the apps we're connecting together. The API token is stored securely in a separate file. Next, we establish the connection between Clumio and AWS. Similar to CloudFormation, the Clumio module is designed to handle the complex IAM roles and permissions automatically. Notice we're enabling protection for EC2, EBS, RDS databases, DynamoDB tables, and S3 buckets. It can help protect your critical data, all in one go. Here's where we define our backup policy. Notice how we can set different RPOs and retention for different resource types. Moreover, for DynamoDB, we've defined multiple retention tiers, 3 days and 30 days, giving us flexibility for different recovery scenarios. This single policy will automatically apply to all resources of each type, based on a condition that we will shortly set up. Now here's where it gets really powerful. This protection rule is designed to automatically find and protect any supported resource tagged with the key createdBy and the value demoscript, whether it exists now or gets created tomorrow. The protection group specifically manages all our production S3 buckets as a single unit, designed to make it easy to adjust policies for hundreds of buckets at once. Now the deployment begins. First, we initialize Terraform. Then, we preview what Terraform will do. Resources from both the Clumio module and the provider are planned out. And finally, Terraform is applied. Terraform automatically instantiates all the previously planned resources from both the Clumio module and the provider. Dependencies are also respected, meaning that everything is created in the correct order. Once complete, Terraform confirms success. And there we have it. All resources across four different AWS services are now protected according to the defined backup policy. The protection rule is active and the S3 protection group is managing our buckets. But here's what's really great. This entire configuration is now in code. Tomorrow, when your team adds more S3 buckets or spins up new databases with the same tag, they're automatically protected. But look at this. Our entire protection strategy is reusable and easily describable, all in one place. It's designed so anyone can understand what's protected and how, just by reading this single file. No clicking through multiple screens. No documentation drift. No guesswork. From zero to protected in minutes. Clumio's Terraform provider is designed so that your AWS infrastructure can be protected by one simple Terraform configuration. Complete with automatic protection for future resources. Ready to see how this scales to your environment? Microsoft Mechanics www.microsoft-mechanics.com

TL;DR

  • Clumio's Terraform provider enables automated backup protection for EC2, EBS, RDS, DynamoDB, and S3 using infrastructure-as-code, deployable in minutes with just four configuration files.
  • Tag-based resource discovery automatically protects existing and future AWS workloads without manual intervention, ensuring new resources are immediately covered by backup policies.
  • The solution handles IAM roles and permissions automatically through a Clumio module, eliminating complex manual configuration and reducing deployment time from hours to minutes.

Summary

This technical demonstration showcases Clumio's Terraform provider for automating AWS backup and data protection across multiple services including EC2, EBS, RDS, DynamoDB, and S3. The demo walks through a complete infrastructure-as-code implementation using just four Terraform configuration files, demonstrating how organizations can deploy enterprise-grade backup policies in minutes rather than hours. The approach eliminates manual configuration by automating IAM role creation, policy definition, and resource protection through tag-based discovery. A key feature highlighted is the automatic protection of future resources—any new AWS workload tagged appropriately is immediately covered by the defined backup policies without additional configuration. The demonstration emphasizes operational efficiency by consolidating the entire data protection strategy into version-controlled code, eliminating configuration drift and providing a single source of truth for backup policies. The solution is positioned as particularly valuable for DevOps teams and cloud architects who need to scale protection across large AWS environments while maintaining consistency and compliance.

Chapters

0:00 - Introduction and Value Proposition
0:32 - Terraform Configuration Overview
1:20 - Backup Policy Definition
2:15 - Deployment Process

Key Quotes

0:12 "And that you could typically do it in less time than it takes to make a cup of coffee? ..."
1:47 "This protection rule is designed to automatically find and protect any supported resource tagged with the key createdBy and the value demoscript, whether it exists now or gets created tomorrow."
3:21 "Our entire protection strategy is reusable and easily describable, all in one place."

FAQ

How does automatic protection work for new AWS resources?

Resources are automatically discovered and protected based on tags. Any new EC2 instance, database, DynamoDB table, or S3 bucket created with the specified tag (such as 'createdBy: demoscript') is immediately covered by the defined backup policies without additional configuration.

What happens to IAM roles and permissions during deployment?

The Clumio Terraform module automatically handles all IAM role creation and permission configuration, similar to CloudFormation. Users don't need to manually configure complex AWS permissions—the module manages this automatically during the Terraform apply process.


Categories:
  • » Webinar Library » Commvault
  • » Data Protection » Backup & Recovery
  • » Cybersecurity » Application Security
  • » Data Management » DevOps
  • » Cybersecurity » Cloud Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Data Protection
  • Cloud Security
  • DevSecOps
  • Demo
  • Technical Deep Dive
  • Infrastructure as Code
  • AWS Backup Automation
  • Terraform Provider
  • Cloud Data Protection
  • Multi-Service Backup
  • Tag-Based Resource Discovery
  • Policy-Driven Protection
  • DevOps Automation
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Commvault: Automate AWS Backup with Clumio Terraform Provider

              Industry Events (Sponsor Hosted)

              • Sep
                29

                Embracing AI Adoption While Ensuring Robust Security Measures

                09/29/202612:00 PM ET
                • Oct
                  01

                  Meta Muse 101: Embracing the Agentic Internet and Its Next Steps.

                  10/01/202601:00 PM ET
                  • Oct
                    13

                    Your Questions Answered: Insights on DatasecAI 2026

                    10/13/202602:00 PM ET
                    More events

                    Upcoming Webinar Calendar

                    • 09/29/2026
                      12:00 PM
                      09/29/2026
                      Embracing AI Adoption While Ensuring Robust Security Measures
                      https://www.truthinit.com/index.php/channel/2092/embracing-ai-adoption-while-ensuring-robust-security-measures/
                    • 09/30/2026
                      04:00 AM
                      09/30/2026
                      AI Command Center: Enhanced Visibility and Control in Your Operations
                      https://www.truthinit.com/index.php/channel/2024/ai-command-center-enhanced-visibility-and-control-in-your-operations/
                    • 10/01/2026
                      01:00 PM
                      10/01/2026
                      Meta Muse 101: Embracing the Agentic Internet and Its Next Steps.
                      https://www.truthinit.com/index.php/channel/2144/meta-muse-101-embracing-the-agentic-internet-and-its-next-steps/
                    • 10/13/2026
                      02:00 PM
                      10/13/2026
                      Your Questions Answered: Insights on DatasecAI 2026
                      https://www.truthinit.com/index.php/channel/2141/your-questions-answered-insights-on-datasecai-2026/
                    • 10/15/2026
                      11:00 AM
                      10/15/2026
                      Risk in Real Time Demo Series: Virtual Patching: Protection at the Speed of Exploitation
                      https://www.truthinit.com/index.php/channel/1372/risk-in-real-time-demo-series-the-autonomous-era-orchestrating-a-resilient-enterprise/
                    • 10/20/2026
                      11:00 AM
                      10/20/2026
                      Harnessing Data Governance for AI with Cyera and Snowflake
                      https://www.truthinit.com/index.php/channel/2137/harnessing-data-governance-for-ai-with-cyera-and-snowflake/
                    • 10/27/2026
                      01:00 PM
                      10/27/2026
                      The HUMAN Experience: Real-Time Insights into Page Intelligence
                      https://www.truthinit.com/index.php/channel/2139/the-human-experience-real-time-insights-into-page-intelligence/
                    • 11/19/2026
                      01:00 PM
                      11/19/2026
                      360View: Govern, Secure & Recover Your Microsoft 365 Environment
                      https://www.truthinit.com/index.php/channel/2076/360view-govern-secure-recover-your-microsoft-365-environment/
                    Truth in IT
                    • Sponsor
                    • About Us
                    • Terms of Service
                    • Privacy Policy
                    • Contact Us
                    • Preference Management
                    Desktop version
                    Standard version