Skip to main content

Monitor backup encryption with Veeam ONE v11a


vNote42
Forum|alt.badge.img+13
  • On the path to Greatness
  • 1246 comments

Here I am talking about backup encryption, which is performed by Veeam. Not by a hacker. It is a good idea to enable this feature.

Why to monitor this? A attacker could enable backup encryption or change existing encryption key without being noticed. If so, backup jobs continue to run without any problem. But you are not able to use them for restore because you simple cannot decrypt them! 

For monitoring encryption password changes reports Backup Objects Change Tracking and Backup Infrastructure Audit can be used. With this reports you see when encryption password was created or modified.

To control if somebody selected another encryption password from the list, use the report Job Configuration Change Tracking.

 

For more information see my full feature blog post here: 

https://vnote42.net/2022/02/09/monitor-hardened-repository-with-veeam-one-v11a/

5 comments

Chris.Childerhose
Forum|alt.badge.img+21

Great post and share.  Always good to monitor this.


JMeixner
Forum|alt.badge.img+17
  • On the path to Greatness
  • 2650 comments
  • March 2, 2022

Good point to monitor. Using your own encryption against you… very bad:sunglasses:


Iams3le
Forum|alt.badge.img+11
  • Veeam Legend
  • 1392 comments
  • March 3, 2022

Great post @vNote42! The importance of monitoring in order to gain visibility in your network cannot be over emphasised!


vNote42
Forum|alt.badge.img+13
  • Author
  • On the path to Greatness
  • 1246 comments
  • March 3, 2022
Iams3le wrote:

Great post @vNote42! The importance of monitoring in order to gain visibility in your network cannot be over emphasised!

100% agree @Iams3le !


jos.maliepaard
Forum|alt.badge.img+7

very useful. thanks!