News, guidelines and various community projects
Recently active
Dear Veeam Community,I hope you can enlighten me.We have the goal to setup endpoint backups without the use of a vpn.We installed veeam b&r & cloud gateway on a test server so far.Now whe thought we could like generate an agent for a tenant and then install that agent to endpoints of this tenant to be able to backup files of the endpoint via the cloud gateway direkcly into the configured tenant backup repository.At this point we’ve tried a lot and I doubt that this will work the way we intended.It seems like the cloud gateway is used to connect different vbr servers and save their backups in a service providers repositories. But that wouldnt solve the problem that the customer needs an own vbr and a vpn to have a connection between his endpoints and his vbr server in order to back the endpoints up to the service provider. (Endpoint → Tenants VBR Server → Cloud Gateway → Service Providers Repositories)Is there any chance to make it work like this:Agent on Endpoint → Cloud Gatewa
...don't let them drift apart With Veeam Backup & Replication v13 and the new Veeam Software Appliance (VSA), many of us are enjoying the convenience of components that keep themselves up to date. The VSA is deployed and updates itself automatically — convenient, right? Yes, mostly!But there's a catch that just bit me in my lab environment, and I wanted to share it quickly before it trips someone up in production. The ScenarioImagine you already have one or more Veeam VSA appliances deployed. They update themselves — in this case to 13.0.2. So far so good.But not everything in your environment is an appliance. Your Veeam Backup Enterprise Manager might still be running on a Windows server (it happens). Enterprise Manager was therefore not automatically updated alongside the VSA — and suddenly your backup server shows up as offline in the Enterprise Manager console. Cannot add backup server version 13.0.2.29 to Enterprise Manager server version 13.0.1.2067. Upgrade the Enterprise M
When I try to do this after specifying an output directory of /home/amonra I get:which doesn’t help lots. What are you using /tmp when I explicitly gave an output directory where there’s loads of space.Now I guess I need to massively enlarge /tmp which is a problemD.
I just finished setting up our Veeam Enterprise Manager server and wanted to serve it as a website thats only accessible to our office WAN IPs. Does anyone know how one would accomplish this or if it is doable? I see the website in IIS and I do have a valid wildcard cert but support told me they could not help with design so I am unsure what the proper way to serve this webpage would be. Any assistance would be appreciated.
I am not able to replace my Veeam Backup and Replication certificate with a new .pfx. When I try to install the .pfx from the Options->Security->Install menu in the B&R Console it returns an error “Certificate’s Private Key is Empty”. I have verified I created the .pfx correctly using OpenSSL and combining the .cer with the .key. I have verified the .key is in fact a private key and not a public key. I have verified the .pfx key permissions have the appropriate read/write for the Veeam service account to access the key. The .pfx certificate is good with a valid private key. Why can’t it be installed on Veeam Backup and Replication. In order for me to upgrade Veeam B&R from version 12 to version 13 I require a certificate with the Basic Constraints extension. I now have a certificate with Basic Constraints as a .pfx but I cannot install it to Veeam B&R.
Ok guys, maybe I’m completely stupid.How do I upload a script file to /var/lib/veeam/scripts using console?I go to the Files tab and browse to the directory. I can edit, rename, delete files, create directories, but how do I simply upload a file!?ThanksLOL
The case product is Veeam Backup & Replication version 12.1.2.172We copied data from a main Veeam repository to a secondary offsite Veeam repository for backup copy job seeding.The previous server that held the copy jobs was replaced after it died. Copied backups are visible under Home > Backups > Disk (Imported) on repository Backup copy job Map Backup dialog shows only the repository node and no selectable imported backup chains beneath it.Regular backup job Storage > Map backup dialog shows the imported backup chains are selectable, We created the data using the Copy Backup button.We were not prompted for an encryption password during repository rescan. we imported the backups but its not showing on the list to map for backup copy.Is it because the Backup jobs and backup copy jobs use different chain formats and metadata, and a backup copy chain can be mapped only to a backup copy job, not to a regular backup job; conversely, a regular backup-job chain is not a valid se
One of the most common things I notice during Veeam deployments, health checks, training that I deliver and customer workshops is that email notifications, Syslog and SNMP integration are often left unconfigured.The backup jobs work. The repositories are available. The backups complete successfully.But when I ask about notifications or centralized logging, the answer is frequently:"We haven't configured that yet." Why This MattersVeeam provides native integration with email systems, SNMP and Syslog servers, allowing administrators to receive immediate visibility into backup activities, warnings, and failures.These integrations are not just operational conveniences, they are important security controls.When a backup job finishes, Veeam can automatically send a notification email. Likewise, relevant events can be forwarded to a SNMP and Syslog server for centralized monitoring, retention, and correlation with other infrastructure events.This means:Faster detection of backup failures Bett
Hello.I have three servers: one is EnterpriseManager, the second is VeeamBackup, and the third has the Veeam console installed. When I launch the Veeam console on the backup server, I get the error "failed to load license from backup services." I looked at the logs and see that the client versions match. I see that a connection attempt is being made, but the connection is being closed. I don't understand why. I tried TNC fqdn for the backup server - port 9392, as well as port 9396, and there were no errors.. I changed the names and IP addresses in the logs. I don't think they're needed for analysis. CODElog uploadfiles
Hi,I noticed that I have two running backup jobs since mid May and it appears they are stalled. From the same job I get success emails each day. It appears the backups job were running fine at the scheduled time. Kind of overlap.Maybe the stalled job are leftovers when I upgrade my VBR to 13. I’m not sure. I shutdown the server twice and the stalled jobs reappears. I can right click on it and press stop, but even after hours nothing happens.How can I get rid of the running instances? I enclose two screenshotsThanks,Edy
The ultimate test of cyber resilience: recovering when all you have left are your backup files Most organizations spend significant time and effort protecting their backup data.They implement:Immutable repositories Air-gapped storage Tape archives Object storage with Object Lock The 3-2-1-1-0 or 3-2-1-2-0 ruleAs a result, they feel confident that their data is safe.But let me ask a different question:What if your Veeam Backup & Replication server no longer exists?What if ransomware, a hardware failure, human error, or even a disaster destroys:The Veeam Backup Server The configuration database Enterprise Manager Credentials Documentation Recovery runbooksAnd all that remains are your protected backup copies?Could you still recover your business?If you cannot confidently answer "yes", then you may have discovered the biggest gap in your disaster recovery strategy.Backup Data vs. Recovery CapabilityMany organizations focus on protecting backup files.That is important.However, cyber r
In today’s threat landscape, backup and management platforms have become prime targets for cyberattacks, particularly in multi-tenant service provider environments. Ensuring the security and integrity of these systems is no longer optional—it is a critical operational requirement.Recently, a critical vulnerability (CVE-2026-32998) with a CVSS v3.1 score of 9.4 has been identified in Veeam Service Provider Console (VSPC) version 9 builds. This vulnerability can potentially allow remote code execution (RCE) through specific features such as alarm script execution, exposing service providers to severe risks including unauthorized access, system compromise, and lateral movement across managed infrastructures. [community.veeam.com]All versions prior to VSPC 9.2.1.33875, including 9.0.0.29860, are affected, making it imperative for organizations to take immediate action. [community.veeam.com]This guide is designed to provide a clear and practical walkthrough on how to safely upgrade Veeam Se
When IT professionals discuss availability, business continuity, and data protection, the conversation usually focuses on backup software, immutable storage, disaster recovery plans, and cybersecurity.Those technologies are critical.However, some of the most dangerous Data Center Risks have nothing to do with software, storage arrays, or backup systems.Sometimes, the real threat is much closer than we think.Recently, I was called onsite to investigate an issue involving a tape library. One of the drives had grabbed a tape cartridge and failed to release it properly. The task seemed simple: remove the tape, validate the drive, and confirm everything was operating normally.A routine service call.At least, that's what I thought.What I discovered that day had very little to do with backup infrastructure and everything to do with governance, operational discipline, and the hidden risks that can quietly develop inside critical environments.The First Sign Something Was WrongAs soon as I enter
This week, @Madi.Cristil is out on some well-deserved time off. Once again I have no supervision so I broke the rule of 3 featured content - such a rule-breaker! I went solo this time and you can watch the episode here: Featured Contentvia @Madi.Cristil via @Dynamic via @kciolek via @Michael Melter EmpowHER VMCEWe have an extra-special announcement from @Federica - the EmpowHER VMCE+ Acceleration program is taking nominations, please give this a look for both experienced practitioners and early-stage career individuals! EmpowHer VMCE+ Accelerator | Women in Tech Program - But hurry, registration is open only for a limited time! The accelerator focuses on the first of four courses in the VMCE+ training bundle—Veeam Backup & Replication—equipping participants with the skills to install, configure, and manage the Veeam Data Platform. Upon completion, participants earn a badge, build confidence, and gain access to the remaining courses to continue their path toward the VMCE+ cer
Hi community! I’m working on an architecture to implement VRO with a Clean Room. I ll be in this kind of topology : I notice in the prerequisites, this point : “The current release of Veeam Recovery Orchestrator (v 13.0.1) requires at minimum an initial connection to the production vCenter to gather inventory and create restore plans using vSphere tags.Connection to the production VBR is optional and only required to create restore plans based on backup jobs.”The principle of a clean room is to have an environment that is completely decoupled from production, acting as a safe place to store and test backups, and as a trusted source for a clean recovery of workloads, even if the production environments are infected or compromised.Opening network flows to production, even temporarily, seems to go against that principle in my opinion, even if those flows are limited. In my architecture, I have a production vCenter and most likely a dedicated vCenter for the clean room, since standalone E
Hello Community, I'm experiencing an issue when trying to use VM Intelligence in Veeam version 13.0.2.29, both when deployed as a VSA Appliance and when installed on Windows.When accessing the feature, I receive the following error message:"Cannot verify the product license." both Backup servers are connect to the internet. What I find strange is that I am using a valid NFR Premium license with more than 300 days remaining before expiration.I have already verified that the license is correctly installed, and the issue occurs on both deployment types, which makes me think it could be related to a VM Intelligence licensing requirement, online license validation, or possibly a bug in version 13.0.2.29.Has anyone experienced this issue before or knows of any troubleshooting steps or solutions?Any help would be greatly appreciated. Thank you!
I was wondering if someone could help with an issue I’m having in Veeam agent for windows, I get the following error when trying to restore files from a volume backup stored on a network share. I’m using the agent in free mode.Backup sync failed[computer_name] Failed to connect to installer service[computer_name] Failed to connect to installer service[computer_name] Failed to discover installer serviceA security package specific error occurredConnect failed (RpcBindingSetAuthInfoExW)Please can you help me resolve this?
Recently, a customer asked me:“Hey — is it possible that VMware tag backup isn’t working?”The reason: After a Full VM Restore (Restore to original location), the VM’s VMware tags were suddenly gone. In the restore log it basically said:“These tags were not present at the time of backup — so I’m removing them.” And that’s despite the fact that the tags were definitely set in production (otherwise the customer wouldn’t have been able to pick up the VM in their jobs using tag-based selection in the first place). A test with another VM showed the same behavior. At that point it was clear: this wasn’t a one-off. So how does Veeam get the idea that a VM has “no tags” — even though it does? What is a VMware Tag (and why is it relevant for backups)? VMware tags are metadata in vCenter that can be assigned to objects (for example, VMs). Typical use cases include:Organizational mapping (customer, environment, cost center) Technical classification (OS, SLA, app) Automation (backup scopes, policie
NetApp ONTAP S3 with Immutability (ONTAP 9.14 and higher) is currently not (or no longer) supported by Veeam. This means that Veeam backups on a NetApp ONTAP S3 bucket with activated Object Lock (Immutability) are currently not considered “immutable” in the sense of Veeam functionality. The main reason is that ONTAP S3 with activated Object Lock no longer fulfills all the requirements that Veeam needs for immutability. Veeam currently only lists ONTAP S3 as “not immutable” in its own compatibility directory. The use of Immutability is therefore not officially approved NetApp is working on a solution with the support of Veeam (you may be able to get information via the NetApp Partner Manager). --> This is ONTAP S3 (on ONTAP machines (FAS/AFF), not a NetApp Storage GRID)! Links to this:NetApp ONTAP S3 with immutability - R&D ForumsNetApp ONTAP S3
Hello Veeam Community!Since Madalina is away this week, I have the pleasure to announce the Blog of the Month winner for the month of May. With 11 votes, the winner is @PeteSteven! Congrats on the win, Peter! 🎉🎉 Read his winning blog, Swap-VeeamSOBRUser below! If anyone is interested in reading the other nominations from May, find them here!: We’ll be back in a few weeks with the Blog of the Month poll for June! 😊
Yesterday, I published an article on #CloudCity about my FinOps journey.Check here: FinOps in Practice: Optimizing Cloud Value with AWS, CloudCheckr, and VeeamI'd like to highlight some key initiatives that helped my team strengthen data protection while improving cost control and reducing expenses associated with backup infrastructure assets. Resilience, Backup & High Availability - by CLOUDCHECKRCloudCheckr identifies risks related to data protection and business continuity, ensuring workloads are prepared for failures, accidental deletions, and downtime.Examples of recommendations:• EBS volumes without snapshots (direct data loss risk)• EBS volumes without recent snapshots (outdated backup)• EC2 instances without termination protection enabled• Environments without multi-AZ deployment• Lack of automated backup and retention strategy• Critical resources without defined recovery (DR) policies• Low maturity in business continuity (BCP)• Workloads not prepared for availability zone
I recently worked on another project with a major customer where we unfortunately reached the limits of Veeam Backup & Replication’s out-of-the-box features for Scale-Out-Repositories and had to find a workaround. Our ChallengeOur challenge: The customer has over 100 scale-out repositories, each with different permissions depending on the application and operating system. We had to migrate the VBR server to a new Windows Server. However, this also meant that the users created locally on the old server were no longer available. In principle, this wasn’t a problem—we simply recreated the same users on the new server.However, this is where the problem comes in. The SOBR permissions include the old user as “OLDSERVERNAME\USERNAME,” which we then have to replace with “NEWSERVERNAME\USERNAME.” If we didn’t replace these, our Enterprise Plugins would no longer have permissions to write their backups.Unfortunately, there is no function to change permission settings across multiple reposito
Hello community, I have a new Vanguard Newsletter full of veeamazing content created by Veeam Vanguards last month to share with you! 🤓 The May edition focuses on hands-on Veeam operations and platform maintenance, including troubleshooting and hardening core backup components (such as tape/LTO diagnostics, repository/SOBR administration and infra naming changes from IP to DNS), as well as a strong emphasis on version management and security patching across Veeam Backup & Replication and Veeam ONE, in order to address vulnerabilities and implement updates. The newsletter also highlights topics related to cloud/object storage and repository architecture (notably Azure Blob integration, S3 repository abstraction and repository decision frameworks), as well as v13-era capabilities such as Veeam High Availability Cluster and environment visualisation via Interactive Maps. It also covers security and identity best practices, including the Security Officer role and gMSA for guest proce
Some days your job is just plain fun! No ifs or buts!This morning I had the immense pleasure to talk with 3 pillars of the Veeam Community, Senior Community Manager Nikola Pejkova @NikolaPejkova , Mr. Community himself Rick Vanover @Rick Vanover and of course Vanguard/Legend/Object First Ace, author of Mastering Veeam Backup & Replication Chris Childerhose @Chris.Childerhose !This is a conversation that could have lasted all morning, never a dull moment.Also courtesy of a fresh of the press Rickatron quote a potentially fantastic new title for a DR horror movie! I can see it now: coming soon to a theater near you: “Agents gone wild”! Tune in to find out what it is like to write a book and the fun these three folks had collaborating together on this new edition! https://www.buzzsprout.com/2545760/episodes/19293879 The Book is out, don’t you miss out!
I finally had some time to wire in the Veeam Ports MCP server into GPT. It works but has a number of steps in the process. If you are like me you watch the token burn in Claude for projects like these. This started with EdxH’s post on the Veeam Ports MCP server introducing the project & GitHub repo.The repo is @ https://github.com/shapedthought/veeam-ports-mcp. I wanted to see what it took to make that same idea work /w GPT.Claude Desktop can launch a local MCP server /w STDIO. The Veeam Ports MCP repo already shows that path well. GPT expects an MCP endpoint instead. On my end that meant I had to put a bridge and a tunnel in the middle before GPT could make use of the tool correctly.Once that was running, I could describe a VBR v13 layout in plain language and get back firewall rules, topology output, and a Magic Ports import file (yea).The painful part was useful as well. I learned that a topology JSON and a Magic Ports import JSON are not the same thing. They look close enough
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.