Enabling Autonomous Ransomware Protection
The following procedures explain how to use the ONTAP CLI to enable Autonomous Ransomware Protection (ARP) active mode as well as how to verify that ARP is enabled. For more information about ARP, see How ARP works.
To enable ARP in active mode on an existing volume using the ONTAP CLI
-
Run the following command. Replace
vol_nameandsvm_namewith your own information.security anti-ransomware volume enable -volumevol_name-vserversvm_nameFor more information about this command, see
security anti-ransomware volume enablein the NetApp documentation center.
To enable ARP by default on an existing SVM using the ONTAP CLI
-
Run the following command. Replace
svm_namewith your own information.vserver modify -vserversvm_name-anti-ransomware-default-volume-state dry-runFor more information about this command, see
vserver modifyin the NetApp documentation center.
To verify the status of ARP using the ONTAP CLI
-
Run the following command.
security anti-ransomware volume showFor more information about this command, see
security anti-ransomware volume showin the NetApp documentation center.
You can temporarily suspend (and then resume) ARP if you're anticipating heavy workload events. For more information, see
Pause ONTAP Autonomous Ransomware Protection to exclude workload events from analysis