Skip to main content

Hi,

We currently do a full backup weekly that is then updated with incramental backups daily that are retained for 7 days.

I am concerned about malware going undetected (we have AV, I’m just paranoid). Is a 7 day retention policy for restore points good or should I expand this? What archival rules would help would be recommended?

Many thanks in advance,

Tobi

Hi ​@Tobi.Batiste,

Basically you should consider implementing the 3-2-1 rule for your backup and disaster recovery strategy. Here is some input:

What is the 3-2-1 backup rule?

It is always recommended to have more than one backup target with different media and immutability (you cannot change the data).

Many of my customers (but that truely depends!) have between 7 and 21 days on the 1st repo, around 30-60 days on the 2nd repo and up to 10 years (but not daily of course) on the 3rd repo.

 

Additionally you can consider activating Veeam Malware Detection to get visibility of potential malware and issues within the backups:

Malware Detection - User Guide for VMware vSphere

(Requires the Enterprise Plus edition which is default for subscription licensing)

 

Hope that helps!

Lukas


Comment