Skip to main content

Veeam Backup & Replication REST API

This Integration is part of the Veeam App Pack.#

Supported versions

Available on Cortex XSOAR (versions 6.10.0 and later) and Cortex XSIAM.

Veeam Backup & Replication REST API allows you to query information about Veeam Backup & Replication entities and perform operations with these entities using HTTP requests and standard HTTP methods. This integration was integrated and tested with version 1.1-rev2 of VBR REST API.

Configure Veeam Backup & Replication REST API in Cortex#

ParameterDescriptionRequired
UsernameTrue
PasswordTrue
Resource URLTrue
Trust any certificate (not secure)False
Use system proxy settingsFalse
Fetch incidentsFalse
First Fetch TimeFalse
Fetch configuration backup eventsFalse
Days Since Last Configuration BackupAn incident will be created If the last successful configuration backup is older than the specified value.False
Fetch backup repository eventsFalse
Backup Repository Free Space (GB)An incident will be created If the backup repository free space is less than the specified value.False
Backup Repository Events Per RequestThe maximum number of backup repository events that can be fetched during command execution.False
Fetch malware eventsFalse
Malware Events Per RequestThe maximum number of malware events that can be fetched during command execution.False
API Request Timeout (Seconds)False
Fetch Security & Compliance Analyzer eventsFalse
Fetch SureBackup job eventsFalse
Incidents Fetch IntervalFalse
Incident typeFalse
API VersionAPI version and revision used by the Veeam Backup & Replication instance. Supported values for version 12: 1.2-rev0, 1.2-rev1. Supported values for version 13: 1.3-rev0, 1.3-rev1.False

Commands#

You can execute these commands from the CLI, as part of an automation, or in a playbook. After you successfully execute a command, a DBot message appears in the War Room with the command details.

veeam-vbr-create-malware-event#


Create Malware Event.

Base Command#

veeam-vbr-create-malware-event

Input#

Argument NameDescriptionRequired
detectiontimeutcDetection date and time, in UTC.Required
machine_fqdnMachine FQDN.Optional
machine_ipv4Machine IPv4 address.Optional
machine_ipv6Machine IPv6 address.Optional
machine_uuidMachine BIOS UUID in the 8-4-4-4-12 format: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx.Optional
detailsEvent description.Required
engineDetection engine.Required

Context Output#

There is no context output for this command.

veeam-vbr-get-all-malware-events#


Get All Malware Events

Base Command#

veeam-vbr-get-malware-events

Input#

Argument NameDescriptionRequired
skipNumber of events to skip.Optional
limitMaximum number of events to return. Default is 100.Optional
orderColumnSorts events by event meter.Optional
orderAscSorts events in the ascending order by the orderColumn meter.Optional
typeFilterFilters events by event type.Optional
detectedAfterTimeUtcFilterReturns events created after the specified time, in UTC.Optional
detectedBeforeTimeUtcFilterReturns events created before the specified time, in UTC.Optional
backupObjectIdFilterFilters events by backup object ID.Optional
stateFilterFilters events by state.Optional
sourceFilterFilters events by source type.Optional
severityFilterFilters events by severity.Optional
createdByFilterFilters events by the createdBy pattern. To substitute one or more characters, use the asterisk (*) character at the beginning, at the end, or both.Optional
engineFilterFilters events by the engine pattern. To substitute one or more characters, use the asterisk (*) character at the beginning, at the end, or both.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_malware_events.data.idStringEvent ID.
Veeam.VBR.get_malware_events.data.typeStringEvent type.
Veeam.VBR.get_malware_events.data.detectionTimeUtcStringDetection date and time, in UTC.
Veeam.VBR.get_malware_events.data.stateStringEvent state.
Veeam.VBR.get_malware_events.data.detailsStringEvent description.
Veeam.VBR.get_malware_events.data.sourceStringEvent source type.
Veeam.VBR.get_malware_events.data.severityStringMalware status.
Veeam.VBR.get_malware_events.data.createdByStringUser account created the event.
Veeam.VBR.get_malware_events.data.engineStringDetection engine.

veeam-vbr-get-all-repository-states#


Get All Repository States

Base Command#

veeam-vbr-get-repository-states

Input#

Argument NameDescriptionRequired
skipNumber of repository states to skip.Optional
limitMaximum number of repository states to return. Default is 100.Optional
orderColumnSorts repository states by state meter.Optional
orderAscSorts repository states in the ascending order by the orderColumn meter.Optional
idFilterFilters repository states by repository ID.Optional
nameFilterFilters repository states by the nameFilter pattern. The pattern can match any repository state meter. To substitute one or more characters, use the asterisk (*) character at the beginning, at the end, or both.Optional
typeFilterFilters repository states by repository type.Optional
capacityFilterFilters repository states by repository capacity.Optional
freeSpaceFilterFilters repository states by repository free space.Optional
usedSpaceFilterFilters repository states by repository used space.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_repository_states.data.idStringBackup repository ID.
Veeam.VBR.get_repository_states.data.nameStringBackup repository name.
Veeam.VBR.get_repository_states.data.typeStringBackup repository type.
Veeam.VBR.get_repository_states.data.descriptionStringDescription of the backup repository.
Veeam.VBR.get_repository_states.data.capacityGBStringRepository capacity in GB.
Veeam.VBR.get_repository_states.data.freeGBStringRepository free space in GB.
Veeam.VBR.get_repository_states.data.usedSpaceGBStringRepository used space in GB.
Veeam.VBR.get_repository_states.data.hostIdStringID of the server that is used as a backup repository.
Veeam.VBR.get_repository_states.data.hostNameStringName of the server that is used as a backup repository.
Veeam.VBR.get_repository_states.data.pathStringPath to the folder where backup files are stored.

veeam-vbr-get-all-restore-points#


Get All Restore Points

Base Command#

veeam-vbr-get-restore-points

Input#

Argument NameDescriptionRequired
skipNumber of restore points to skip.Optional
limitMaximum number of restore points to return. Default is 100.Optional
orderColumnSorts restore points by restore point meter.Optional
orderAscSorts restore points in the ascending order by the orderColumn meter.Optional
createdAfterFilterReturns restore points created after the specified date and time.Optional
createdBeforeFilterReturns restore points created before the specified date and time.Optional
nameFilterFilters restore points by the nameFilter pattern. The pattern can match any restore point meter. To substitute one or more characters, use the asterisk (*) character at the beginning and/or at the end.Optional
platformNameFilterFilters restore points by name of the backup object platform.Optional
platformIdFilterFilters restore points by ID of the backup object platform.Optional
backupIdFilterFilters restore points by backup ID.Optional
backupObjectIdFilterFilters restore points by backup object ID.Optional
malwareStatusFilterFilters restore points by malware status.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_restore_points.data.idStringRestore point ID.
Veeam.VBR.get_restore_points.data.nameStringObject name.
Veeam.VBR.get_restore_points.data.platformIdStringID of a platform where the object was created.
Veeam.VBR.get_restore_points.data.creationTimeStringDate and time when the restore point was created.
Veeam.VBR.get_restore_points.data.backupIdStringID of a backup that contains the restore point.
Veeam.VBR.get_restore_points.data.platformNameStringPlatform name.
Veeam.VBR.get_restore_points.data.malwareStatusStringMalware status.

veeam-vbr-get-backup-object#

veeam-vbr-get-backup-object#


Get Backup Object.

Base Command#

veeam-vbr-get-backup-object

Input#

Argument NameDescriptionRequired
id_ID of the backup object.Required

Context Output#

PathTypeDescription
Veeam.VBR.backup_object.objectIdStringID of the virtual infrastructure object (mo-ref or ID, depending on the virtualization platform).
Veeam.VBR.backup_object.viTypeStringType of the VMware vSphere object.
Veeam.VBR.backup_object.pathStringPath to the object.
Veeam.VBR.backup_object.idStringObject ID.
Veeam.VBR.backup_object.nameStringObject name.
Veeam.VBR.backup_object.typeStringObject type.
Veeam.VBR.backup_object.vcenter_namestringName of the vCenter Server.
Veeam.VBR.backup_object.platformNamestringPlatform type.

Get Configuration Backup

Base Command#

veeam-vbr-get-configuration-backup

Input#

Argument NameDescriptionRequired

Context Output#

PathTypeDescription
Veeam.VBR.get_configuration_backup.isEnabledStringIf `true`, configuration backup is enabled.
Veeam.VBR.get_configuration_backup.backupRepositoryIdStringID of the backup repository on which the configuration backup is stored.
Veeam.VBR.get_configuration_backup.restorePointsToKeepnumberNumber of restore points to keep in the backup repository.
Veeam.VBR.get_configuration_backup.ScheduleScheduling settings.
Veeam.VBR.get_configuration_backup.EncryptionEncryption settings.
Veeam.VBR.get_configuration_backup.LastSuccessfulBackupLast successful backup.

veeam-vbr-get-inventory-objects#


Get Inventory Objects

Base Command#

veeam-vbr-get-inventory-objects

Input#

Argument NameDescriptionRequired
resetCacheIf true, the cache will be reset for this request. Resetting the cache slows down request processing but allows you to get up-to-date data.Optional
hostnameServer name.Required
skipNumber of objects to skip.Optional
limitMaximum number of objects to return. Default is 100.Optional
filterFilter settings.Optional
sortingSorting settings.Optional
hierarchyTypeHierarchy type.Optional
objectNameObject name.Optional
viTypeType of the VMware vSphere object.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_inventory_objects.data.nameStringName of the VMware vSphere object.
Veeam.VBR.get_inventory_objects.data.typeStringType of the VMware vSphere object.
Veeam.VBR.get_inventory_objects.data.hostNameStringName of the VMware vSphere server that hosts the object.
Veeam.VBR.get_inventory_objects.data.objectIdStringID of the VMware vSphere object. The parameter is required for all VMware vSphere objects except vCenter Servers and standalone ESXi hosts.
Veeam.VBR.get_inventory_objects.data.urnStringObject URN.
Veeam.VBR.get_inventory_objects.data.platformStringPlatform name.
Veeam.VBR.get_inventory_objects.data.sizeStringObject size.

veeam-vbr-get-session#


Get Session

Base Command#

veeam-vbr-get-session

Input#

Argument NameDescriptionRequired
id_Session ID.Required

Context Output#

PathTypeDescription
Veeam.VBR.get_session.jobIdStringID of the job or job related activity.
Veeam.VBR.get_session.creationTimeStringDate and time when the session was created.
Veeam.VBR.get_session.idStringSession ID.
Veeam.VBR.get_session.nameStringSession name.
Veeam.VBR.get_session.sessionTypeStringSession type.
Veeam.VBR.get_session.stateStringSession state.
Veeam.VBR.get_session.usnStringUpdate sequence number.
Veeam.VBR.get_session.endTimeStringDate and time when the session was ended.
Veeam.VBR.get_session.progressPercentStringProgress percentage of the session.
Veeam.VBR.get_session.resultunknownSession result.
Veeam.VBR.get_session.resourceIdStringResource ID.
Veeam.VBR.get_session.resourceReferenceStringURI of the resource.
Veeam.VBR.get_session.parentSessionIdStringParent session ID.

veeam-vbr-start-configuration-backup#


Start Configuration Backup

Base Command#

veeam-vbr-start-configuration-backup

Input#

Argument NameDescriptionRequired

Context Output#

PathTypeDescription
Veeam.VBR.Configurationbackuphasbeenstarted.jobIdStringID of the job or job related activity.
Veeam.VBR.Configurationbackuphasbeenstarted.creationTimeStringDate and time when the session was created.
Veeam.VBR.Configurationbackuphasbeenstarted.idStringSession ID.
Veeam.VBR.Configurationbackuphasbeenstarted.nameStringSession name.
Veeam.VBR.Configurationbackuphasbeenstarted.sessionTypeStringSession type.
Veeam.VBR.Configurationbackuphasbeenstarted.stateStringSession state.
Veeam.VBR.Configurationbackuphasbeenstarted.usnStringUpdate sequence number.
Veeam.VBR.Configurationbackuphasbeenstarted.endTimeStringDate and time when the session was ended.
Veeam.VBR.Configurationbackuphasbeenstarted.progressPercentStringProgress percentage of the session.
Veeam.VBR.Configurationbackuphasbeenstarted.resourceIdStringResource ID.
Veeam.VBR.Configurationbackuphasbeenstarted.resourceReferenceStringURI of the resource.
Veeam.VBR.Configurationbackuphasbeenstarted.parentSessionIdStringParent session ID.

veeam-vbr-start-instant-recovery-customized#


Start Customized VM Instant Recovery

Base Command#

veeam-vbr-start-instant-recovery-customized

Input#

Argument NameDescriptionRequired
restorePointIdRestore point ID.Required
vmTagsRestoreEnabledIf true, Veeam Backup & Replication restores tags that were assigned to the original VM, and assign them to the restored VM.Optional
antivirusScanEnabledIf true, Veeam Backup & Replication scans machine data with antivirus software before restoring the machine to the production environment.Required
virusDetectionActionAction that Veeam Backup & Replication takes if the antivirus software finds a threat.Optional
entireVolumeScanEnabledIf true, the antivirus continues machine scan after the first malware is found.Optional
nicsEnabledIf true, the restored VM is connected to the network.Optional
powerUpIf true, Veeam Backup & Replication powers on the restored VM on the target host.Optional
reasonReason for restoring the VM.Optional
restoredVmNameRestored VM name.Optional
vCenterNameName of the vCenter Server.Required
hostObjectIdID of the VMware vSphere object. The parameter is required for all VMware vSphere objects except vCenter Servers and standalone ESXi hosts.Required
folderObjectIdID of the VMware vSphere object. The parameter is required for all VMware vSphere objects except vCenter Servers and standalone ESXi hosts.Required
resObjectIdID of the VMware vSphere object. The parameter is required for all VMware vSphere objects except vCenter Servers and standalone ESXi hosts.Optional
platformPlatform name.Required
biosUuidPolicyBIOS UUID policy for the restored VM.Required
redirectEnabledIf true, redo logs are redirected to cacheDatastore.Required
overwriteIf true, Veeam Backup & Replication overwrites the existing VM that has the same name.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_recovery.idstringSession ID.
Veeam.VBR.start_recovery.namestringSession name.
Veeam.VBR.start_recovery.jobIdstringID of the job or job related activity.
Veeam.VBR.start_recovery.sessionTypestringSession type.
Veeam.VBR.start_recovery.creationTimestringDate and time when the session was created.
Veeam.VBR.start_recovery.statestringSession state.
Veeam.VBR.start_recovery.endTimestringDate and time when the session was ended.
Veeam.VBR.start_recovery.usnstringUpdate sequence number.

veeam-vbr-start-instant-recovery#


Start VM Instant Recovery to Original Location

Base Command#

veeam-vbr-start-instant-recovery

Input#

Argument NameDescriptionRequired
restorePointIdRestore point ID.Required
vmTagsRestoreEnabledIf true, Veeam Backup & Replication restores tags that were assigned to the original VM, and assign them to the restored VM.Optional
antivirusScanEnabledIf true, Veeam Backup & Replication scans machine data with antivirus software before restoring the machine to the production environment.Required
virusDetectionActionAction that Veeam Backup & Replication takes if the antivirus software finds a threat.Optional
entireVolumeScanEnabledIf true, the antivirus continues machine scan after the first malware is found.Optional
nicsEnabledIf true, the restored VM is connected to the network.Optional
powerUpIf true, Veeam Backup & Replication powers on the restored VM on the target host.Optional
reasonReason for restoring the VM.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_recovery.idstringSession ID.
Veeam.VBR.start_recovery.namestringSession name.
Veeam.VBR.start_recovery.jobIdstringID of the job or job related activity.
Veeam.VBR.start_recovery.sessionTypestringSession type.
Veeam.VBR.start_recovery.creationTimestringDate and time when the session was created.
Veeam.VBR.start_recovery.statestringSession state.
Veeam.VBR.start_recovery.endTimestringDate and time when the session was ended.
Veeam.VBR.start_recovery.usnstringUpdate sequence number.

veeam-vbr-mount-entra-id-tenant#


Mounts a Microsoft Entra ID tenant from its backup and starts a mount session required for restore.

Base Command#

veeam-vbr-mount-entra-id-tenant

Input#

Argument NameDescriptionRequired
backupIdID of a Microsoft Entra ID tenant backup.Required

Context Output#

PathTypeDescription
Veeam.VBR.mount_entra_id_tenant.sessionIdStringMount session ID.
Veeam.VBR.mount_entra_id_tenant.sourceProperties.backupIdStringID of a Microsoft Entra ID tenant backup.
Veeam.VBR.mount_entra_id_tenant.sourceProperties.tenantIdStringTenant ID assigned by Microsoft Entra ID.
Veeam.VBR.mount_entra_id_tenant.sourceProperties.tenantNameStringMicrosoft Entra ID tenant name.

veeam-vbr-start-security-analyzer#


Starts the Security & Compliance Analyzer scan. The command creates a new session and returns its details.

Base Command#

veeam-vbr-start-security-analyzer

Input#

Argument NameDescriptionRequired

Context Output#

PathTypeDescription
Veeam.VBR.start_security_analyzer.idStringID of the session.
Veeam.VBR.start_security_analyzer.nameStringName of the session.
Veeam.VBR.start_security_analyzer.jobIdStringID of the job or job related activity.
Veeam.VBR.start_security_analyzer.sessionTypeStringType of the session.
Veeam.VBR.start_security_analyzer.creationTimeStringDate and time when the session was created.
Veeam.VBR.start_security_analyzer.endTimeStringDate and time when the session was ended.
Veeam.VBR.start_security_analyzer.stateStringState of the session.
Veeam.VBR.start_security_analyzer.progressPercentNumberProgress percentage of the session.
Veeam.VBR.start_security_analyzer.resultunknownSession result.
Veeam.VBR.start_security_analyzer.usnNumberUpdate sequence number.
Veeam.VBR.start_security_analyzer.initiatedByStringName of the user who initiated the session.

veeam-vbr-start-malware-backup-scan#


Starts a Scan Backup session.

Base Command#

veeam-vbr-start-malware-backup-scan

Input#

Argument NameDescriptionRequired
backupIdID of the backup.Required
backupObjectIdID of the backup object.Required
scanModeBackup scan mode. Possible values are: MostRecent, AllInInterval, FirstInInterval.Required
useAntivirusEngineIf true, the selected backup is scanned with antivirus software.Required
useYaraRuleIf true, the selected backup is scanned with the specified YARA rule.Required
yaraRuleYARA rule file name.Optional
useMostRecentPointIf true, the backup scan will process restore points until the most recent one.Required
startDateThe backup scan will process restore points that were created starting from this date and time.Optional
useOldestPointIf true, the backup scan will process restore points until the oldest one.Required
endDateThe backup scan will proces restore points that were created by this date and time.Optional
continueScanIf true, the backup scan will continue even after it finds affected restore points.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_malware_backup_scan.idStringID of the session.
Veeam.VBR.start_malware_backup_scan.nameStringName of the session.
Veeam.VBR.start_malware_backup_scan.jobIdStringID of the job or job related activity.
Veeam.VBR.start_malware_backup_scan.sessionTypeStringType of the session.
Veeam.VBR.start_malware_backup_scan.stateStringState of the session.
Veeam.VBR.start_malware_backup_scan.creationTimeStringDate and time when the session was created.
Veeam.VBR.start_malware_backup_scan.endTimeStringDate and time when the session was ended.
Veeam.VBR.start_malware_backup_scan.progressPercentStringProgress percentage of the session.
Veeam.VBR.start_malware_backup_scan.resultunknownSession result.
Veeam.VBR.start_malware_backup_scan.resourceIdStringID of the resource.
Veeam.VBR.start_malware_backup_scan.resourceReferenceStringURI of the resource.
Veeam.VBR.start_malware_backup_scan.parentSessionIdStringID of the parent session.
Veeam.VBR.start_malware_backup_scan.usnStringUpdate sequence number.
Veeam.VBR.start_malware_backup_scan.platformNameStringPlatform type.
Veeam.VBR.start_malware_backup_scan.platformIdStringID of the resource platform.

veeam-vbr-start-disk-publishing#


Start Disk Publishing. Publishes disk content from a restore point via the Data Integration API using ISCSITarget mount mode.

Base Command#

veeam-vbr-start-disk-publishing

Input#

Argument NameDescriptionRequired
restorePointIdRestore point ID. You can use restore points from backups and snapshot replicas.Required
allowedIpsComma-separated list of IP addresses of target servers that are allowed to access the iSCSI target server (mount server).Required
diskNamesComma-separated list of disk names.Optional
mountHostIdMount server ID.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_disk_publishing.idStringSession ID.
Veeam.VBR.start_disk_publishing.nameStringSession name.
Veeam.VBR.start_disk_publishing.sessionTypeStringSession type.
Veeam.VBR.start_disk_publishing.stateStringSession state.
Veeam.VBR.start_disk_publishing.jobIdStringID of the job or job related activity.
Veeam.VBR.start_disk_publishing.creationTimeStringDate and time when the session was created.
Veeam.VBR.start_disk_publishing.endTimeStringDate and time when the session was ended.
Veeam.VBR.start_disk_publishing.progressPercentNumberProgress percentage of the session.
Veeam.VBR.start_disk_publishing.resultunknownSession result.
Veeam.VBR.start_disk_publishing.resourceIdStringID of the resource.
Veeam.VBR.start_disk_publishing.resourceReferenceStringURI of the resource.
Veeam.VBR.start_disk_publishing.parentSessionIdStringID of the parent session.
Veeam.VBR.start_disk_publishing.usnNumberUpdate sequence number.
Veeam.VBR.start_disk_publishing.platformNameStringPlatform type.
Veeam.VBR.start_disk_publishing.platformIdStringID of the resource platform.

veeam-vbr-general-api-request#


Sends a generic HTTP request to any VBR REST API endpoint.

Base Command#

veeam-vbr-general-api-request

Input#

Argument NameDescriptionRequired
pathAPI endpoint path (for example, api/v1/jobs).Required
methodUsed HTTP method. Possible values are: get, post, put, patch, delete. Default is get.Required
dataJSON body. Required for POST/PUT/PATCH requests.Optional
paramsQuery parameters.Optional

Context Output#

PathTypeDescription
Veeam.VBR.general_api_requestunknownAPI response.

veeam-vbr-get-security-analyzer-last-run#


Get Security & Compliance Analyzer last run details.

Base Command#

veeam-vbr-get-security-analyzer-last-run

Input#

Argument NameDescriptionRequired

Context Output#

PathTypeDescription
Veeam.VBR.security_analyzer_last_run.idStringID of the session.
Veeam.VBR.security_analyzer_last_run.nameStringName of the session.
Veeam.VBR.security_analyzer_last_run.jobIdStringID of the job or job related activity.
Veeam.VBR.security_analyzer_last_run.sessionTypeStringType of the session.
Veeam.VBR.security_analyzer_last_run.creationTimeStringDate and time when the session was created.
Veeam.VBR.security_analyzer_last_run.endTimeStringDate and time when the session was ended.
Veeam.VBR.security_analyzer_last_run.stateStringState of the session.
Veeam.VBR.security_analyzer_last_run.progressPercentNumberProgress percentage of the session.
Veeam.VBR.security_analyzer_last_run.resultunknownSession result.
Veeam.VBR.security_analyzer_last_run.usnNumberUpdate sequence number.
Veeam.VBR.security_analyzer_last_run.initiatedByStringName of the user who initiated the session.

veeam-vbr-unmount-entra-id-tenant#


Stops the mount session for a Microsoft Entra ID tenant.

Base Command#

veeam-vbr-unmount-entra-id-tenant

Input#

Argument NameDescriptionRequired
sessionIdMount session ID.Required
gracefulStopIf true, Veeam Backup & Replication will produce a new restore point for those VMs that have already been processed and for VMs that are being processed at the moment.Optional

Context Output#

PathTypeDescription
Veeam.VBR.unmount_entra_id_tenant.idStringID of the session.
Veeam.VBR.unmount_entra_id_tenant.nameStringName of the session.
Veeam.VBR.unmount_entra_id_tenant.jobIdStringID of the job or job related activity.
Veeam.VBR.unmount_entra_id_tenant.sessionTypeStringType of the session.
Veeam.VBR.unmount_entra_id_tenant.stateStringState of the session.
Veeam.VBR.unmount_entra_id_tenant.creationTimeStringDate and time when the session was created.
Veeam.VBR.unmount_entra_id_tenant.endTimeStringDate and time when the session was ended.
Veeam.VBR.unmount_entra_id_tenant.progressPercentStringProgress percentage of the session.
Veeam.VBR.unmount_entra_id_tenant.resultunknownSession result.
Veeam.VBR.unmount_entra_id_tenant.resourceIdStringID of the resource.
Veeam.VBR.unmount_entra_id_tenant.resourceReferenceStringURI of the resource.
Veeam.VBR.unmount_entra_id_tenant.parentSessionIdStringID of the parent session.
Veeam.VBR.unmount_entra_id_tenant.usnStringUpdate sequence number.
Veeam.VBR.unmount_entra_id_tenant.platformNameStringPlatform type.
Veeam.VBR.unmount_entra_id_tenant.platformIdStringID of the resource platform.

veeam-vbr-get-disk-publishing-mount-point#


Gets information on a disk publishing mount point.

Base Command#

veeam-vbr-get-disk-publishing-mount-point

Input#

Argument NameDescriptionRequired
mountIdMount point ID.Required

Context Output#

PathTypeDescription
Veeam.VBR.get_disk_publishing_mount_point.idStringMount point ID.
Veeam.VBR.get_disk_publishing_mount_point.initiatorNameStringAccount used to publish the disks.
Veeam.VBR.get_disk_publishing_mount_point.backupIdStringBackup ID.
Veeam.VBR.get_disk_publishing_mount_point.backupNameStringBackup name.
Veeam.VBR.get_disk_publishing_mount_point.restorePointIdStringRestore point ID.
Veeam.VBR.get_disk_publishing_mount_point.restorePointNameStringRestore point name.
Veeam.VBR.get_disk_publishing_mount_point.mountStateStringMount state.
Veeam.VBR.get_disk_publishing_mount_point.info.modeStringDisk publishing mount mode.
Veeam.VBR.get_disk_publishing_mount_point.info.serverPortNumberPort used by the mount point.
Veeam.VBR.get_disk_publishing_mount_point.info.serverIpsunknownArray of target server IP addresses.
Veeam.VBR.get_disk_publishing_mount_point.info.disks.diskIdStringDisk ID.
Veeam.VBR.get_disk_publishing_mount_point.info.disks.diskNameStringThe path of the published disk.
Veeam.VBR.get_disk_publishing_mount_point.info.disks.accessLinkStringiSCSI Qualified Name (IQN) of the disk. Only available for the iSCSI mount mode.
Veeam.VBR.get_disk_publishing_mount_point.info.disks.mountPointsunknownArray of mount point paths.

veeam-vbr-get-authorization-events#


Get All Authorization Events.

Base Command#

veeam-vbr-get-authorization-events

Input#

Argument NameDescriptionRequired
skipNumber of authorization events to skip.Optional
limitMaximum number of authorization events to return. Default is 100.Optional
orderColumnSorts authorization events by one of the authorization events parameters.Optional
orderAscIf true, sorts authorization events in the ascending order by the orderColumn parameter.Optional
nameFilterFilters authorization events by the nameFilter pattern. To substitute one or more characters, use the asterisk (*) character at the beginning, at the end, or both.Optional
createdAfterFilterReturns authorization events that are created after the specified date and time.Optional
createdBeforeFilterReturns authorization events that are created before the specified date and time.Optional
processedAfterFilterReturns authorization events that are processed after the specified date and time.Optional
processedBeforeFilterReturns authorization events that are processed before the specified date and time.Optional
stateFilterFilters authorization events by state.Optional
createdByFilterFilters authorization events created by the specified user.Optional
processedByFilterFilters authorization events processed by the specified user.Optional
expireBeforeFilterReturns authorization events that expire before the specified date and time.Optional
expireAfterFilterReturns authorization events that expire after the specified date and time.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_authorization_events.data.idStringEvent ID.
Veeam.VBR.get_authorization_events.data.nameStringEvent name.
Veeam.VBR.get_authorization_events.data.stateStringEvent state.
Veeam.VBR.get_authorization_events.data.creationTimeStringDate and time when the event was created.
Veeam.VBR.get_authorization_events.data.processedTimeStringDate and time when the event was processed.
Veeam.VBR.get_authorization_events.data.expirationTimeStringDate and time when the event expires.
Veeam.VBR.get_authorization_events.data.createdByStringUser that initiated the event.
Veeam.VBR.get_authorization_events.data.processedByStringUser that processed the event.
Veeam.VBR.get_authorization_events.data.descriptionStringEvent description.

veeam-vbr-start-instant-recovery-hyperv-vm#


Start Instant Recovery of Microsoft Hyper-V VM to original location.

Base Command#

veeam-vbr-start-instant-recovery-hyperv-vm

Input#

Argument NameDescriptionRequired
restorePointIdRestore point ID.Required
antivirusScanEnabledIf true, Veeam Backup & Replication scans machine data with antivirus software before restoring the machine to the production environment.Required
virusDetectionActionAction that Veeam Backup & Replication takes if the antivirus software finds a threat. Possible values are: DisableNetwork, AbortRecovery, Ignore.Optional
entireVolumeScanEnabledIf true, the antivirus continues machine scan after the first malware is found.Optional
powerUpIf true, Veeam Backup & Replication powers on the restored VM on the target host.Optional
reasonReason for restoring the VM.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_hv_recovery.idStringSession ID.
Veeam.VBR.start_hv_recovery.nameStringSession name.
Veeam.VBR.start_hv_recovery.jobIdStringID of the job or job related activity.
Veeam.VBR.start_hv_recovery.sessionTypeStringSession type.
Veeam.VBR.start_hv_recovery.creationTimeStringDate and time when the session was created.
Veeam.VBR.start_hv_recovery.endTimeStringDate and time when the session was ended.
Veeam.VBR.start_hv_recovery.stateStringSession state.
Veeam.VBR.start_hv_recovery.progressPercentNumberProgress percentage of the session.
Veeam.VBR.start_hv_recovery.resultunknownSession result.
Veeam.VBR.start_hv_recovery.resourceIdStringID of the resource.
Veeam.VBR.start_hv_recovery.resourceReferenceStringURI of the resource.
Veeam.VBR.start_hv_recovery.parentSessionIdStringID of the parent session.
Veeam.VBR.start_hv_recovery.usnNumberUpdate sequence number.
Veeam.VBR.start_hv_recovery.platformNameStringPlatform type.
Veeam.VBR.start_hv_recovery.platformIdStringID of the resource platform.
Veeam.VBR.start_hv_recovery.initiatedByStringName of the user who initiated the session.
Veeam.VBR.start_hv_recovery.relatedSessionIdStringID of the related session.

veeam-vbr-get-session-logs#


Get Session Logs. Returns log records for the specified session.

Base Command#

veeam-vbr-get-session-logs

Input#

Argument NameDescriptionRequired
id_Session ID.Required

Context Output#

PathTypeDescription
Veeam.VBR.get_session_logs.totalRecordsNumberTotal number of log records.
Veeam.VBR.get_session_logs.records.idNumberID of the log record.
Veeam.VBR.get_session_logs.records.statusStringStatus of the log record.
Veeam.VBR.get_session_logs.records.startTimeStringDate and time when the operation was started.
Veeam.VBR.get_session_logs.records.updateTimeStringDate and time when the log record was updated.
Veeam.VBR.get_session_logs.records.titleStringTitle of the log record.
Veeam.VBR.get_session_logs.records.descriptionStringDescription of the log record.
Veeam.VBR.get_session_logs.records.additionalInfoStringAdditional information of the log record.

veeam-vbr-get-job-states#


Get All Job States.

Base Command#

veeam-vbr-get-job-states

Input#

Argument NameDescriptionRequired
skipNumber of job states to skip.Optional
limitMaximum number of job states to return. Default is 100.Optional
orderColumnSorts job states by one of the state parameters.Optional
orderAscSorts job states in the ascending order by the orderColumn parameter.Optional
nameFilterFilters job states by the job name pattern. To substitute one or more characters, use the asterisk (*) character at the beginning, at the end, or both.Optional
typeFilterFilters job states by the job type (e.g., SureBackup).Optional
statusFilterFilters job states by the job status.Optional
lastResultFilterFilters job states by the last job result.Optional
idFilterFilters job states by the job ID.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_job_states.data.idStringJob ID.
Veeam.VBR.get_job_states.data.nameStringName of the job.
Veeam.VBR.get_job_states.data.typeStringType of the job.
Veeam.VBR.get_job_states.data.statusStringCurrent status of the job.
Veeam.VBR.get_job_states.data.lastResultStringResult status.
Veeam.VBR.get_job_states.data.lastRunStringDate and time of the last run of the job.
Veeam.VBR.get_job_states.data.nextRunStringDate and time of the next run of the job.
Veeam.VBR.get_job_states.data.descriptionStringDescription of the job.
Veeam.VBR.get_job_states.data.workloadStringWorkload which the job must process.
Veeam.VBR.get_job_states.data.objectsCountStringNumber of objects processed by the job.
Veeam.VBR.get_job_states.data.highPriorityStringIf true, the resource scheduler prioritized this job higher than other similar jobs and allocated resources to it in the first place.
Veeam.VBR.get_job_states.data.progressPercentStringProgress percentage of the session.
Veeam.VBR.get_job_states.data.nextRunPolicyStringNote in case the job is disabled, not scheduled, or configured to run after another job.
Veeam.VBR.get_job_states.data.repositoryIdStringBackup repository ID.
Veeam.VBR.get_job_states.data.repositoryNameStringName of the backup repository.
Veeam.VBR.get_job_states.data.sessionIdStringID of the last job session.
Veeam.VBR.get_job_states.data.sessionProgressStringDetails on the progress of the session.
Veeam.VBR.get_job_states.data.runAfterJobStringSpecifies that the job will run after another job.
Veeam.VBR.get_job_states.data.backupCopyModeStringCopy mode of backup copy job.
Veeam.VBR.get_job_states.data.isStorageSnapshotStringIf true, the target for the job is snapshot storage.

veeam-vbr-get-entra-id-items#


Get Microsoft Entra ID Items. Browses Microsoft Entra ID items available in a backup.

Base Command#

veeam-vbr-get-entra-id-items

Input#

Argument NameDescriptionRequired
backupIdBackup ID.Required
typeItem type. Possible values are: User, Group, AdministrativeUnit, Role, Application.Required
skipNumber of items to skip.Optional
limitMaximum number of items to return. Default is 100.Optional
displayNameFilter by user display name.Optional
mailAddressFilter by user email address.Optional
sortingJSON object specifying sorting options. Must include "property" and "direction" fields.Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_entra_id_items.data.idStringItem ID.
Veeam.VBR.get_entra_id_items.data.displayNameStringItem display name.
Veeam.VBR.get_entra_id_items.data.restorePointIdStringRestore point ID.
Veeam.VBR.get_entra_id_items.data.restorePointDateStringRestore point date and time.
Veeam.VBR.get_entra_id_items.data.typeStringItem type.
Veeam.VBR.get_entra_id_items.data.mailAddressStringUser email address.
Veeam.VBR.get_entra_id_items.data.userNameStringUser principal name.
Veeam.VBR.get_entra_id_items.data.userTypeStringUser type.
Veeam.VBR.get_entra_id_items.data.employeeTypeStringEmployee type.
Veeam.VBR.get_entra_id_items.data.accountEnabledBooleanIf true, the user account is enabled.
Veeam.VBR.get_entra_id_items.data.companyNameStringCompany name.
Veeam.VBR.get_entra_id_items.data.creationTypeStringCreation type.
Veeam.VBR.get_entra_id_items.data.departmentStringCompany department.
Veeam.VBR.get_entra_id_items.data.countryStringCountry or region.
Veeam.VBR.get_entra_id_items.data.jobTitleStringJob title.
Veeam.VBR.get_entra_id_items.data.officeLocationStringOffice location.

veeam-vbr-compare-entra-id-item-properties#


Compare Microsoft Entra ID Item Properties between restore points or production.

Base Command#

veeam-vbr-compare-entra-id-item-properties

Input#

Argument NameDescriptionRequired
sessionIdMount session ID.Required
itemIdID of Microsoft Entra ID item.Required
itemTypeItem type. Possible values are: User, Group, AdminUnit, Role, Application.Required
oldRestorePointIdID of an earlier restore point.Required
newRestorePointIdID of a later restore point. If not specified, the item from the earlier restore point will be compared to the item in production.Optional
showUnchangedAttributesIf true, both changed and unchanged item properties are returned. Otherwise, only changed ones.Optional
reloadCacheIf true, the mount session cache will be reset and new data will be obtained from Microsoft Entra ID. Only used when comparing to production (newRestorePointId not specified).Optional

Context Output#

PathTypeDescription
Veeam.VBR.compare_entra_id_item_properties.existsInOldRestorePointBooleanIf true, the item exists in the earlier restore point.
Veeam.VBR.compare_entra_id_item_properties.existsInNewRestorePointBooleanIf true, the item exists in the later restore point.
Veeam.VBR.compare_entra_id_item_properties.properties.propertyNameStringProperty name.
Veeam.VBR.compare_entra_id_item_properties.properties.oldValueStringProperty value from the earlier restore point.
Veeam.VBR.compare_entra_id_item_properties.properties.newValueStringProperty value from the later restore point.
Veeam.VBR.compare_entra_id_item_properties.properties.readOnlyBooleanIf true, the value is read-only.
Veeam.VBR.compare_entra_id_item_properties.references.referenceTypeStringReference type.
Veeam.VBR.compare_entra_id_item_properties.references.referenceTypeDisplayNameStringDisplay name of the reference type.
Veeam.VBR.compare_entra_id_item_properties.references.valuesunknownArray of values.
Veeam.VBR.compare_entra_id_item_properties.cacheTimestampStringDate and time the mount session cache was last updated.

veeam-vbr-start-instant-recovery-hyperv-vm-customized#


Start Instant Recovery of Microsoft Hyper-V VM to a customized location.

Base Command#

veeam-vbr-start-instant-recovery-hyperv-vm-customized

Input#

Argument NameDescriptionRequired
restorePointIdRestore point ID.Required
antivirusScanEnabledIf true, Veeam Backup & Replication scans machine data with antivirus software before restoring the machine to the production environment.Required
virusDetectionActionAction that Veeam Backup & Replication takes if the antivirus software finds a threat. Possible values are: DisableNetwork, AbortRecovery, Ignore.Optional
entireVolumeScanEnabledIf true, the antivirus continues machine scan after the first malware is found.Optional
powerUpIf true, Veeam Backup & Replication powers on the restored VM on the target host.Optional
reasonReason for restoring the VM.Optional
hostNameName of the Microsoft Hyper-V host.Optional
hostObjectIdID of the Microsoft Hyper-V host object.Optional
vmNameName of the restored VM.Optional
preserveUUIDIf true, the BIOS UUID of the source VM is used.Optional
registerAsClusterResourceIf true, the restored VM is configured as a cluster resource.Optional
overwriteExistingVmIf true, the existing VM with the same name is overwritten.Optional
overwriteExistingDisksIf true, the existing VM disks with the same names are overwritten.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_hv_recovery.idStringSession ID.
Veeam.VBR.start_hv_recovery.nameStringSession name.
Veeam.VBR.start_hv_recovery.jobIdStringID of the job or job related activity.
Veeam.VBR.start_hv_recovery.sessionTypeStringSession type.
Veeam.VBR.start_hv_recovery.creationTimeStringDate and time when the session was created.
Veeam.VBR.start_hv_recovery.endTimeStringDate and time when the session was ended.
Veeam.VBR.start_hv_recovery.stateStringSession state.
Veeam.VBR.start_hv_recovery.progressPercentNumberProgress percentage of the session.
Veeam.VBR.start_hv_recovery.resultunknownSession result.
Veeam.VBR.start_hv_recovery.resourceIdStringID of the resource.
Veeam.VBR.start_hv_recovery.resourceReferenceStringURI of the resource.
Veeam.VBR.start_hv_recovery.parentSessionIdStringID of the parent session.
Veeam.VBR.start_hv_recovery.usnNumberUpdate sequence number.
Veeam.VBR.start_hv_recovery.platformNameStringPlatform type.
Veeam.VBR.start_hv_recovery.platformIdStringID of the resource platform.
Veeam.VBR.start_hv_recovery.initiatedByStringName of the user who initiated the session.
Veeam.VBR.start_hv_recovery.relatedSessionIdStringID of the related session.

veeam-vbr-stop-disk-publishing#


Stops publishing of disk content and unmounts the published disks.

Base Command#

veeam-vbr-stop-disk-publishing

Input#

Argument NameDescriptionRequired
mountIdMount point ID.Required

Context Output#

PathTypeDescription
Veeam.VBR.stop_disk_publishing.idStringSession ID.
Veeam.VBR.stop_disk_publishing.nameStringSession name.
Veeam.VBR.stop_disk_publishing.sessionTypeStringSession type.
Veeam.VBR.stop_disk_publishing.stateStringSession state.
Veeam.VBR.stop_disk_publishing.jobIdStringID of the job or job related activity.
Veeam.VBR.stop_disk_publishing.creationTimeStringDate and time when the session was created.
Veeam.VBR.stop_disk_publishing.endTimeStringDate and time when the session was ended.
Veeam.VBR.stop_disk_publishing.progressPercentNumberProgress percentage of the session.
Veeam.VBR.stop_disk_publishing.resultunknownSession result.
Veeam.VBR.stop_disk_publishing.resourceIdStringID of the resource.
Veeam.VBR.stop_disk_publishing.resourceReferenceStringURI of the resource.
Veeam.VBR.stop_disk_publishing.parentSessionIdStringID of the parent session.
Veeam.VBR.stop_disk_publishing.usnNumberUpdate sequence number.
Veeam.VBR.stop_disk_publishing.platformNameStringPlatform type.
Veeam.VBR.stop_disk_publishing.platformIdStringID of the resource platform.

veeam-vbr-start-vsphere-quick-backup#


Start vSphere Quick Backup.

Base Command#

veeam-vbr-start-vsphere-quick-backup

Input#

Argument NameDescriptionRequired
nameName of the VMware vSphere object.Required
platformPlatform type.Required
typeType of the VMware vSphere object.Required
hostNameName of the VMware vSphere server that hosts the object.Required
objectIdID of the VMware vSphere object. Required for all VMware vSphere objects except vCenter Servers and standalone ESXi hosts.Optional
urnUniform Resource Name (URN) of the object.Optional
sizeObject size.Optional
isEnabledIndicates whether the VMware vSphere object is enabled or disabled.Optional

Context Output#

PathTypeDescription
Veeam.VBR.start_vsphere_quick_backup.idStringID of the session.
Veeam.VBR.start_vsphere_quick_backup.nameStringName of the session.
Veeam.VBR.start_vsphere_quick_backup.sessionTypeStringType of the session.
Veeam.VBR.start_vsphere_quick_backup.stateStringState of the session.
Veeam.VBR.start_vsphere_quick_backup.jobIdStringID of the job or job related activity.
Veeam.VBR.start_vsphere_quick_backup.creationTimeStringDate and time when the session was created.
Veeam.VBR.start_vsphere_quick_backup.endTimeStringDate and time when the session was ended.
Veeam.VBR.start_vsphere_quick_backup.progressPercentStringProgress percentage of the session.
Veeam.VBR.start_vsphere_quick_backup.usnStringUpdate sequence number.
Veeam.VBR.start_vsphere_quick_backup.resourceIdStringID of the resource.
Veeam.VBR.start_vsphere_quick_backup.resourceReferenceStringURI of the resource.
Veeam.VBR.start_vsphere_quick_backup.parentSessionIdStringID of the parent session.
Veeam.VBR.start_vsphere_quick_backup.platformNameStringPlatform type.
Veeam.VBR.start_vsphere_quick_backup.platformIdStringID of the resource platform.
Veeam.VBR.start_vsphere_quick_backup.initiatedByStringName of the user that initiated the session.
Veeam.VBR.start_vsphere_quick_backup.resultunknownSession result.

veeam-vbr-get-entra-id-item-restore-points#


Get Restore Points of Microsoft Entra ID Item.

Base Command#

veeam-vbr-get-entra-id-item-restore-points

Input#

Argument NameDescriptionRequired
backupIdBackup ID.Required
itemIdItem ID.Required
skipNumber of restore points to skip.Optional
limitMaximum number of restore points to return. Default is 100.Optional
sortingJSON object specifying sorting options. "property" must be "creationTime". "direction" can be "ascending" or "descending".Optional

Context Output#

PathTypeDescription
Veeam.VBR.get_entra_id_item_restore_points.data.idStringRestore point ID.
Veeam.VBR.get_entra_id_item_restore_points.data.creationTimeStringDate and time when the restore point was created.

veeam-vbr-get-yara-rules#


Get All YARA Rules.

Base Command#

veeam-vbr-get-yara-rules

Input#

Argument NameDescriptionRequired

Context Output#

PathTypeDescription
Veeam.VBR.get_yara_rules.data.fileNameStringYARA rule file name.

veeam-vbr-get-security-analyzer-best-practices#


Get Security & Compliance Analyzer Results.

Base Command#

veeam-vbr-get-security-analyzer-best-practices

Input#

Argument NameDescriptionRequired

Context Output#

PathTypeDescription
Veeam.VBR.security_analyzer_best_practices.items.idstringBest practice ID.
Veeam.VBR.security_analyzer_best_practices.items.statusstringBest practice status.
Veeam.VBR.security_analyzer_best_practices.items.bestPracticestringBest practice name.
Veeam.VBR.security_analyzer_best_practices.items.notestringNote that specifies the reason for suppressing the best practice compliance status (excluding it from the analyzer checklist).