How to Protect Data from Ransomware with S3 Object Lock in HBS 3


Release date: 2023-10-23

Overview

With increasingly stringent regulations on how information is stored, many countries require government agencies, financial institutions, and health care providers to comply with strict data archiving regulations. These regulations often include restrictions on tampering with archived data that has resulted in WORM (write-once-read-many) becoming increasingly common.

To meet the security requirements of enterprise storage, HBS 3 now supports S3 Object Lock to help you protect important organizational information. S3 Object Lock allows you to store objects using a WORM model and help prevent objects from being deleted or overwritten for a fixed amount of time or indefinitely. For details on S3 Object Lock, see here.

Important:

This feature is only available in HBS 3 18.0.1012 or later.

Connecting to Amazon S3 with HBS 3

You will need your Amazon S3 access key and secret key from the S3 web console.

  1. Open HBS 3.
  2. Go to Storage Spaces.
  3. Click Create.

    A storage space selection window opens.

  4. Select Amazon S3 & S3 Compatible.

    The Create a Storage Space window opens.

  5. Configure the storage space settings.

    Setting

    User Action

    Name

    Specify a name to identify the storage space.

    Service provider

    Specify the AWS regional service provider.

    Access key

    Enter your AWS access key.

    Secret key

    Enter your AWS secret key.

  6. Optional: Select additional settings.

    Setting

    Description

    Use specific bucket

    Allows you to control which bucket to use.

    Use a proxy server

    Allows you to use the system proxy server or configure another proxy server.

    Use SSL connection

    Requires SSL connection when accessing the remote NAS.

    Validate SSL certificate

    Verifies the validity of the cloud services SSL certificate.

  7. Click Create.

HBS 3 creates the storage space.

Creating a New Backup Job

  1. Go to Backup & Restore.
  2. Click Create, and then click New backup job.

    The Create a Backup Job window opens.

  3. Select the source and destination.
    1. Select the source.
      Important:

      Selecting a folder also selects all files and subfolders located inside.

      The window displays the number of folders selected and their total size.

    2. Click Next.
    3. Click Amazon S3 & S3 Compatible.
    4. Select the storage space you previously created.
    5. Click + New Bucket .

      The Create a New Bucket window opens.

    6. Configure the bucket settings.

      Setting

      User Action

      Bucket name

      Enter a name used to identify the bucket.

      Region name

      Select the region where the bucket operates.

      Enable S3 Object Lock

      Select to allow users to lock objects in the bucket and protect data from modification or deletion.

      Note:

      You must select this option to use WORM storage and force HBS 3 to use the Compliance Object Lock mode for any uploaded objects.

      Tip:

      You can also select a pre-existing bucket from the Bucket name field. HBS 3 detects whether the bucket supports S3 Object Lock.

    7. Click Select.
    8. Select the destination.
    9. Click OK.
  4. Click Next.
  5. Optional: Configure advanced settings.
    Note:

    For details, see the HBS 3 user guide.

    1. Specify the job identification information.
    2. Configure the schedule settings.
    3. Configure the version management settings.
    4. Configure the data integrity check settings.
  6. Click Next.
  7. Optional: Configure job methods.
    Note:

    For details, see the HBS 3 user guide.

  8. Optional: Configure the job policies.
    Note:

    Some policies are only available with certain destination types.

    1. Click Policies.
      Note:

      For details on other policies, see the HBS 3 user guide.

      Policy

      Description

      Override S3 Object Lock default settings

      Allows you to override the default Object Lock settings related to immutability and extended retention periods of an S3 bucket.

      This option is only available when S3 Object Lock is enabled on the destination bucket.

      • Immutability period: Specifies the number of days that the most recent backup is protected from unintended modification or deletion (such as by ransomware).

      • Extended retention periods: Specifies a number of days to provide a grace period. During this time, the backup is further protected after the immutability period.

      Tip:

      By default, HBS 3 recommends 30 days for the immutability period and 10 days for the extended retention period.

  9. Optional: Configure the job options.
    Note:

    Some options are only available with certain destination types.

  10. Optional: Configure the network interface assignment.
    Note:

    For details, see the HBS 3 user guide.

  11. Click Next.
  12. Review the job summary.
  13. Click Create.

HBS 3 creates the backup job.

You can now start backing up to your S3 Object Lock storage space.

Was this article helpful?

70% of people think it helps.
Thank you for your feedback.

Please tell us how this article can be improved:

If you want to provide additional feedback, please include it below.

Válassza ki a specifikációt

      Mutass többet Kevesebb

      Ez a webhely más országokban / régiókban:

      open menu
      back to top