Resource deployment, configuration, and state should be managed using infrastructure as code principles.
Data should be encrypted both in-flight and at-rest.
Precautions should be taken to limit access to the Amazon S3 bucket.
Amazon S3 bucket designated for long-term retention should not be used for any other purpose.
CLOUDBERRY BACKUP WITH IAM ARCHIVE
Solution should allow for a single file to be retrieved from cloud archive to minimize egress charges.
Recovery time from archive should not exceed the maximum tolerable downtime for applications.
The solution covered in this post meets all of the stakeholder’s functional requirements, including: The following SLA Domain configuration demonstrates how Zaffre’s IT staff meets the service level agreement retention requirements.
Archive consolidation efficiently manages and removes expired snapshots.
Snapshots are marked for expiry once the archive retention threshold is exceeded.
Snapshots and metadata are uploaded to the archive location.
Snapshots that have exceeded their local retention threshold are marked for archive.
This means that once a workload is protected, Rubrik automatically ensures that: The long-term retention location is specified as a cloud archive within the Rubrik SLA Domain. Cloud adoption efforts began in 2017 by selecting AWS as the cloud archive location to store on-premises data for a regulatory period. Solution OverviewĪs part of their cloud-first strategy, Zaffre leverages CloudOut to support compliance, eliminate tape, and meet long-term retention requirements. Through the lens of Zaffre Fashion Group (Zaffre), our own field-tested fictional enterprise based on how customers commonly use our product, we’ll examine how a CloudOut to Amazon S3 solution can be architected. This solution provides a cost-effective approach and reliable long-term retention. Cloud offers better response times than tape in the event that you must restore data from archive. The majority of Rubrik customers take advantage of our CloudOut capability to archive backup data to a public cloud service provider, often as a replacement for tape.