-
- Influencer
- Posts: 15
- Liked: never
- Joined: Jun 12, 2018 4:33 pm
- Contact:
How to protect backup repository against ramsomware?
Users are using VAW FREE to backup to a local attached USB disk. Each user is local admin (there are good reasons to maintain this very bad practice, I know about basic security). Is there any way to protect the backup repository (NTFS folder) against ramsomware/encryption trojans?
I think the malware, running with administrative privileges, can always change ACEs to gain write access.
Thank you in advance.
I think the malware, running with administrative privileges, can always change ACEs to gain write access.
Thank you in advance.
-
- Novice
- Posts: 6
- Liked: 3 times
- Joined: Jan 24, 2015 11:33 am
- Full Name: Cristian
- Contact:
Re: How to protect backup repository against ramsomware?
There's an auto-disconnect feature inside VAW, but I think it's risky because at the next reboot you'll find the disk attached... when it's possible I setup an hidden and different user/password network 's share where client do their backup, so the ransomware can act as local admin but can't access where the backups are stored (they should hack VAW to know where the password is stored).
Good luck!
Good luck!
-
- Influencer
- Posts: 15
- Liked: never
- Joined: Jun 12, 2018 4:33 pm
- Contact:
Re: How to protect backup repository against ramsomware?
Hi cata81,
The auto-disconnected feature seems interesting, but I can't find the setting in VAW free.
Thank you.
The auto-disconnected feature seems interesting, but I can't find the setting in VAW free.
Thank you.
-
- Product Manager
- Posts: 8195
- Liked: 1323 times
- Joined: Feb 08, 2013 3:08 pm
- Full Name: Mike Resseler
- Location: Belgium
- Contact:
-
- Influencer
- Posts: 15
- Liked: never
- Joined: Jun 12, 2018 4:33 pm
- Contact:
Re: How to protect backup repository against ramsomware?
Hi Mike,
Now I see it.
Thank you all.
Now I see it.
Thank you all.
-
- Expert
- Posts: 135
- Liked: 4 times
- Joined: Jul 14, 2015 8:26 am
- Contact:
Re: How to protect backup repository against ramsomware?
Sadly...I think you opened the gate wide open....GLM wrote:Users are using VAW FREE to backup to a local attached USB disk. Each user is local admin (there are good reasons to maintain this very bad practice, I know about basic security). Is there any way to protect the backup repository (NTFS folder) against ramsomware/encryption trojans?
I think the malware, running with administrative privileges, can always change ACEs to gain write access.
Thank you in advance.
You now need to see if any of the "local admins" can access your domain controller or have domain admin rights as there is a high chance that your servers and repository can be infected by these users and not by Veeam directly.
Who is online
Users browsing this forum: No registered users and 25 guests