Point-in-Time Backup Integrity Checks via Temporary Virtual Resources
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing disaster recovery systems are compromised by malware that can corrupt point-in-time backups, undermining the integrity of data restoration.
Innovation Solution
A system that performs data integrity monitoring by starting a temporary virtual computing resource from a point-in-time backup in a virtual private network, initiating an integrity check, and preserving the backup only if it passes the check, while deleting compromised backups.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If point-in-time backups are created for disaster recovery, then data restoration capability is improved, but malware can corrupt the backups compromising integrity
Solution Approach 1:
The system performs integrity checks on backups before they are used for restoration. A temporary virtual computing resource is started from the backup and subjected to security scanning and integrity verification procedures before the backup is validated as safe for restoration operations.
Solution Approach 2:
A temporary virtual computing resource is introduced as an intermediary between the backup and the restoration process. This intermediary environment allows the backup to be scanned and verified without directly exposing the production system to potential malware in the backup.
2Reliability
If integrity checks are performed on backups, then backup safety is improved, but system complexity increases
Solution Approach 1:
Instead of modifying the original backup or creating complex verification structures, the system creates a copy of the backup by starting a temporary virtual computing resource from the backup. This copy is then subjected to integrity checks, keeping the verification process simple while maintaining backup safety.
Solution Approach 2:
The system uses temporary virtual computing resources that are created solely for integrity verification and then discarded. These short-living objects provide the necessary verification capability without adding permanent complexity to the system architecture.
3Reliability
If temporary virtual computing resources are started from backups for verification, then data integrity is improved, but time consumption increases
Solution Approach 1:
The system performs only the necessary integrity check actions on the temporary virtual computing resource rather than complete restoration and verification. This partial action approach verifies backup integrity without the time consumption of full restoration procedures.
Data Source
AI summary
Described are techniques for data integrity monitoring of point-in-time backups. The techniques include obtaining a point-in-time backup of a virtual computing resource that executes in a computing environment which is monitored by a controller component of a disaster recovery system. The techniques further include starting a temporary virtual computing resource in a virtual private network from the point-in-time backup of the virtual computing resource. The techniques further include establishing communication between the controller component and the temporary virtual computing resource to enable the controller component to initiate an integrity check of data included in the point-in-time backup. The techniques further include, in response to an indication that the point-in-time backup passed the integrity check, preserving the point-in-time backup as a validated safe backup of the virtual computing resource.


