Skip to main content

Airgap Data Protection of EC2 and EBS Resources Learning Path

Updated this week

Welcome! This learning path helps you set up your airgap data protection strategy for your EC2 and EBS resources.

Understand EC2 airgap data protection

Druva's agentless backup solution offers robust ransomware protection by seamlessly backing up your EC2 instances and EBS volumes to a secure Cloud. It enables the security of your data backups within an air-gapped environment in the same region as the source, while effectively shielding it from unauthorized access, and ensuring seamless restores.

Synchronize your AWS accounts with Druva

Druva's Airgap data protection solution enables smooth and secure onboarding of your AWS Accounts. Log into the management console and ensure that you have the following in place:

  • Create an IAM access role to grant our data protection solution access to your AWS accounts. Enable periodic Sync to synchronize your AWS environment with AWS Workloads (CloudRanger).

  • Create and manage Administrators and Administrator Groups to define the requisite administrator roles and privileges.
    โ€‹

Review prerequisites and prepare your environment

To get started, you will first need to provision storage on Druva Cloud.. Once you initiate a storage request, Druva reviews the request, and once complete, the storage on Druva Cloud is provisioned based on your agreed credit limits. Proceed with defining Storage Rules, to create a mapping between Druva Cloud and your AWS resources within specific Regions and Accounts. For more information, see Provision Storage and Configure Storage Rules.

Add Authorizations to enable access to your AWS Key Management System (AWS KMS), to generate and manage the data encryption key (ekey). The ekey once generated is used to encrypt the user data that is then backed up to Druva Cloud. For more information, see Manage Authorizations.

Configure EC2 resources for airgap backup

Simplify backup management by defining automated policies that handle backup schedules and retention at the policy level. Generate on-demand backups or configure newly discovered resources to an existing backup policy. Configure Airgap data protection to protect your EC2 and EBS resources from unauthorized access. For more information, see Manage Backup Policies.

Manage your data protection workflow

With backup policies in place, your data protection strategy is automated based on your backup schedule and retention settings. Upon successful backup, you can proceed to Restore AMIs, or select the EBS snapshots for Restore. To recover files and folders, proceed with restoring point-in-time backups with File Level Recovery.

Did this answer your question?