๐Ÿ“‹ GRC compliance for CMMC 2.0, CPCSC, CPA Canada, IIROCโ€ฆSaaS discovery for data governanceFree enriched web chat widget๐Ÿš€ Enriched remote support without your laptop

Backup Storage

Choose where your computers' backups are kept: Lavawall storage in Canada or your own S3 bucket. See how much data is protected and how much space it uses, per computer.

Open Backup Storage in your console

Where to find it
Backup & Recovery › Backup Storage
Who can use it
Administrators can see it. Adding buckets, entering access keys and choosing where backups go need a super-admin.
For
Computers backed up with Endpoint Backup
Plan
Lavawall Backup. See pricing

What the page is for

Backup Storage is a page in the Lavawall® console, in the Backup & Recovery area. Lavawall is the RMM, security, and compliance platform from ThreeShield, built and hosted in Canada.

By default your backups are kept in Lavawall storage in Canada. Use this page if you would rather keep them in a bucket your organization owns, at Amazon S3, Wasabi, OVHcloud, The Object Store or another S3-compatible provider, for all computers or only some. The page also shows how much data each computer protects, the space its backups use, and how many restore points it has.

Backups are encrypted on each computer before they leave it, so a bucket only ever holds encrypted data. The access key you enter for your own bucket is locked in your browser to the backup relay and to your recovery keys before it is saved. Lavawall stores only the locked copy.

What you see

  1. Where backups go: the bucket new backups of your computers go to. Standard Lavawall storage is the default.
  2. Your buckets: each bucket of your own, with its provider, bucket name, whether its access keys are saved, which relay may use it, how many computers keep backups in it, and whether it is on. Buttons: Edit, Enter keys, Re-lock with recovery key, Allow on relay or Stop relay using it, and Turn off or Turn on.
  3. Computers using a different bucket: computers whose new backups go somewhere other than your organization's choice.
  4. Usage: for each computer, the data backed up, the space it uses in the bucket, the number of stored objects, catalogue rows and size, restore points, its size limit, and when it was last counted.

How to use Backup Storage

How to add your own bucket (super-admin)

  1. At your provider, create the bucket with versioning turned on, and an access key that can only read, write, list and delete in that bucket.
  2. Make sure your organization has a recovery key on the Endpoint Backup page. The access key is locked to it as well.
  3. Under Your buckets, click Add bucket. Enter a Name, choose the Provider, and fill in the Endpoint (leave it empty for Amazon S3), Region, Bucket name and, optionally, a Folder inside the bucket.
  4. Tick Versioning is turned on for this bucket (or The bucket was created with Object Lock) and click Save bucket.
  5. Click Allow on relay on the bucket's row. When asked, enter the Access key ID and Secret access key, click Continue, check who the keys are locked to, and click Lock and save.

How to choose where backups go (super-admin)

  1. Under Where backups go, choose a bucket in New backups of your computers go to and click Save.
  2. To send one computer somewhere else, under Computers using a different bucket choose the Computer and the Bucket, then click Use this bucket.
  3. Computers that already have backups keep them where they are. The choice applies to computers starting their first backup.

How to give a new relay the keys without typing them (super-admin)

  1. Click Re-lock with recovery key on the bucket's row.
  2. Choose the Recovery key and select its Recovery key file. The file is read in your browser only and is never uploaded.
  3. Check the list and click Lock and save.

How to read the usage table

  • Data backed up is the size of the files protected in the newest backup of each folder.
  • Space in bucket is what the encrypted, compressed and de-duplicated backups take up, across all restore points. It is often smaller than the data backed up.
  • Catalogue rows and Catalogue size are the file listings Lavawall keeps so you can search and browse past backups.
  • Counts refresh every few hours. Counted shows when.

Tips

  • Keep versioning on. If a backup is ever removed by mistake, your provider can bring it back.
  • Set a size limit per computer on the Endpoint Backup page, and choose how far back you can restore in each backup set.
  • Turning a bucket off stops backups and restores for the computers that use it. Nothing in the bucket is deleted.
  • After you change the access key at your provider, click Enter keys and enter the new one.

Troubleshooting

"A relay is missing them"
The bucket is allowed on a relay that has no copy of its access key. Click Re-lock with recovery key, or Enter keys again.
"Create a backup recovery key first"
Create a recovery key on the Endpoint Backup page, then enter the keys again.
"Enter this bucket's access keys first, so the relay can use it"
Save the bucket's keys before you send computers to it.
"Computers already keep backups in this bucket, so where it points cannot change"
Add another bucket for the new location and send new computers there.
"This file is not the private key for the selected recovery key"
Choose the key file that belongs to the recovery key selected in the list.
Usage shows nothing yet
Counts appear a few hours after the first backup.

Still need help?

Search the support centre, or contact our support team and tell us which page you were on: