Updated on 2026-03-12 GMT+08:00

Overview

What Is a Vault?

CBR stores backups in vaults. Before creating a backup, you need to create at least one vault and associate it with the resources you want to back up. Then the resources can be backed up to the associated vaults.

  • The backups of different types of resources must be stored in different types of vaults.

Vault Types

Vaults can be either backup vaults or replication vaults.

  • Backup vaults are categorized according to the resources they store:
    • Server backup vaults: store backups of non-database servers or database servers. You can associate servers with a server backup vault and apply a backup or replication policy to schedule automatic backups or replications.
    • Disk backup vaults: store only disk backups. You can associate disks with a disk backup vault and apply a backup policy to schedule automatic backups.
    • SFS Turbo backup vaults: store only backups of SFS Turbo file systems. You can associate file systems with an SFS Turbo backup vault and apply a backup policy to schedule automatic backups.
    • Desktop backup vaults: store only backups of Workspace desktops. You can associate desktops with a desktop backup vault and apply a backup policy to schedule automatic backups.
  • Replication vaults store only backup replicas. Replicas cannot be replicated again.

The protection type of a purchased vault cannot be changed. You need to delete or unsubscribe from the vault and then create another one with the desired protection type.

Supported Operations

You can perform the following operations.

Table 1 Operations allowed on vaults

Operation

Description

Querying a vault

You can set search criteria for querying a vault in the vault list.

Deleting a vault

You can delete or unsubscribe from a vault to reduce storage space usage and costs.

Associating resources with a vault

After a vault is created, you can associate servers, file systems, or disks with the vault to back up these resources.

Dissociating resources from a vault

If you no longer need to back up an associated resource, dissociate it from your vault.

Migrating resources from a vault

Migrating a resource means that you dissociate a resource from a vault and then associate it to another vault. All backups of the resource will be migrated to the destination vault.

Expanding vault capacity

You can expand the size of a vault if its total capacity is insufficient.

Changing from pay-per-use to yearly/monthly

If you want to use a vault for a long time, you can change its billing mode from pay-per-use to yearly/monthly to reduce costs.

Changing vault specifications

Server backup vaults are available in two types: common server backup vaults and database server backup vaults.

If you need to back up database servers, change the specifications of the target vault from a common server backup vault to a database server backup vault.

Replicating a vault across regions

CBR allows you to replicate server backup vaults and SFS Turbo backup vaults entirely to replication vaults in another region. Replicas of server backups can be used to create images and provision servers. Replicas of SFS Turbo backups in the destination region can be used to create file systems.

Managing vault tags

You can add, edit, or delete tags of a vault. Vault tags are only used to filter and manage vaults.

Managing the enterprise projects of vaults

If you need to modify the enterprise project of a vault, go to the Enterprise Management page to move the vault from the original enterprise project to a new one.

Enabling backup locking

To prevent the backup data from being deleted by mistake or maliciously, you can enable backup locking for vaults to improve data security.

Once enabled, all automatic backups in the vault enter the WORM (write once, read many) state. No one can delete the backups that are in their retention periods.