Backups
The Backups screen allows you to specify the settings required to perform automatic backups, execute manual backups and view the status of any backups.
The following instructions will provide some guidance for configuring the backup settings, and other permissions required to back up all the web tier and database files.
Overview
Passwordstate is a physically installed application that communicates to, and stores all or your data in a Microsoft SQL Database. In the event of a disaster, you may need to restore your database and Passwordstate installation files, which will require you to have them backed up.
Passwordstate has a built-in automatic backup feature which can be configured to suit your requirements. For example, you may already have another solution for your Microsoft SQL database backups, so you can set Passwordstate to not backup up your database, but maybe just the install files.
Not only is the Microsoft SQL database critical to have a backup of, but there are also encryption keys which are located in your web.config file. These too are also critical to have a copy of in the event of a disaster, so setting up the Passwordstate automated Backup feature will ensure you have everything you need to restore your environment, in the event of a disaster.
Backup Instructions
We have two manuals to choose from to configure your backups screen. The first manual is if you intend on using a domain account with a network share. The second should be followed if you wish to use a Local Windows account with a literal path to a folder on your Passwordstate web server. Domain accounts are most commonly used for performing backups.
Automatic Backups using Domain account
Automatic Backups using a Local Windows account
Important Backup Settings Explained
The encryption keys are located in your database, and also in the web.config file. By default, your web.config file will be encrypted, which means the encryption keys are not in clear text. You should enable the option on your backup settings page to "Backup Split Secrets". This will provide you with a third zip file each time the backup runs, with a copy of all encryption keys you need to restore your environment.
You can enable the option on the backups page to password protect the backup files. The password used is the most current password for your backup account, which is set up in a Password Record as part of this whole backup process. It's critical to always know the value of this password in the event you need to extract your backup files.
You should ensure you keep your backups in a safe place. There are other protections in place in the software to prevent someone from stealing your backups and attempting to use that data in their own unauthorized environment, but preventing theft in the first instance is the best initial first line of defense.
Remote Session Recordings and Backups
If you are using the Browser Based version of the Remote Session Launcher with Session Recordings, session recordings will not be included in the standard Passwordstate backup functionality, due to the potential size of the files.
If you have left the recording folder in the default path, then you need to organize your own backups of these files if required.