{"id":6496,"date":"2021-03-30T16:41:57","date_gmt":"2021-03-30T14:41:57","guid":{"rendered":"https:\/\/tekmart.co.za\/t-blog\/?p=6496"},"modified":"2021-03-30T16:50:55","modified_gmt":"2021-03-30T14:50:55","slug":"the-3-2-1-backup-rule-has-cloud-made-it-obsolete","status":"publish","type":"post","link":"https:\/\/tekmart.co.za\/t-blog\/the-3-2-1-backup-rule-has-cloud-made-it-obsolete\/","title":{"rendered":"The 3-2-1 backup rule: Has cloud made it obsolete?"},"content":{"rendered":"<span class=\"span-reading-time rt-reading-time\" style=\"display: block;\"><span class=\"rt-label rt-prefix\">Reading Time-approximately:<\/span> <span class=\"rt-time\"> 4<\/span> <span class=\"rt-label rt-postfix\">minutes<\/span><\/span>\n<h2 class=\"wp-block-heading\"><strong>The 3-2-1 backup rule was made for small-scale use in the pre-cloud era when tape still ruled. Is it relevant in the 2020s, or can we repurpose its fundamental principles?<\/strong><\/h2>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/cdn.ttgtmedia.com\/rms\/computerweekly\/adshead_antony2018.jpg\" alt=\"Antony Adshead\"\/><\/figure>\n\n\n\n<p>By <a href=\"https:\/\/www.techtarget.com\/contributor\/Antony-Adshead\">Antony Adshead<\/a><\/p>\n\n\n\n<figure class=\"wp-block-pullquote\"><blockquote><p>A fundamental of&nbsp;backup&nbsp;is 3-2-1 \u2013 often referred to as \u201cthe 3-2-1 rule\u201d.<\/p><\/blockquote><\/figure>\n\n\n\n<p>But what is the 3-2-1 rule? Is it still of value to all organisations, especially in an era defined by increasing use of the&nbsp;cloud for backup and disaster recovery?<\/p>\n\n\n\n<p>This article looks at the 3-2-1 rule for backup, defines what it meant as originally intended and asks whether it has been superseded by recent developments.<\/p>\n\n\n\n<p>The conclusion we\u2019ll come to is that the principles it embodies are good ones, and if it isn\u2019t directly applicable to current scenarios, it does provide some essential guidelines about how we should protect data in the 2020s.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Defining the 3-2-1 rule<\/strong><\/h3>\n\n\n\n<p>The term 3-2-1 was coined by US photographer&nbsp;Peter Krogh&nbsp;while writing a book about digital asset management in the early noughties.<\/p>\n\n\n\n<p>3: The rule said there should be three copies of data. One is the original or production copy, then there should be two more copies, making three.<\/p>\n\n\n\n<p>2: The two backup copies should be on different media. The theory here was that should one backup be corrupted or destroyed, then another would be available. Those threats could be IT-based, which dictated that data be held in a discrete system or media, or physical.<\/p>\n\n\n\n<p>1: The final \u201cone\u201d referred to the rule that one copy of the two&nbsp;backups should be taken off-site, so that anything that affected the first copy would not (hopefully) affect it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Shortcomings of the 3-2-1 rule<\/strong><\/h3>\n\n\n\n<p>This set of rules is fairly limited, if taken as originally intended.<\/p>\n\n\n\n<p>The idea of three copies is fine. It seems to fit the bill of a minimum viable number to ensure recovery in case of disaster. But the two backup copies being on different media is full of potential limitations and pitfalls today.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>The idea was that the first of the two is for fairly rapid recovery, so would be accessible from the main production system.<\/p><\/blockquote>\n\n\n\n<p>The second, so says the rule, should be on different media. Back when photographer Krogh coined the idea, the intention was to ensure a gap \u2013 logical, if not physical \u2013 between copies so that data corruption or tangible damage affecting one would not affect the other.<\/p>\n\n\n\n<p>That seems like a lot of trouble to go through for an organisation that might need rapid access to backups for recovery, test &amp; dev, and analytics. Different file systems and protocols may also create more layers of complexity and expense&nbsp;in compliance terms&nbsp;where stored data needs to be treated similarly across all retained instances.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>1 becomes 2<\/strong><\/h3>\n\n\n\n<p>Mostly, though, the idea of different media as a necessity looks pretty redundant in the light of the development of the cloud, which potentially collapses point three \u2013 the \u201c1\u201d \u2013 into point two.<\/p>\n\n\n\n<p>In other words, the ability to move data off-site to the cloud is available cheaply and with sufficient bandwidth in ways that were not really realistic when 3-2-1 was devised.<\/p>\n\n\n\n<p>Tape still has its place, but overwhelmingly \u2013 due to slow access times \u2013 that is in archiving. It is potentially a good insurance against ransomware, too, with its in-built&nbsp;\u201cair gap\u201d&nbsp;to core systems. But yes, access is slow, so its use cases are limited.<\/p>\n\n\n\n<p>So, in place of what was once tapes in the car boot\/trunk, we now have the cloud. It is quite clearly off-site, so fulfils point three.<\/p>\n\n\n\n<p>And although a cloud tier connected to an organisation\u2019s datacentre is not necessarily on a different type of media or storage mode (often object), it&nbsp;<em>can<\/em>&nbsp;fulfil the same purpose of the original point two \u2013 to play host to a copy that is incorruptible or undamageable, should the first be so affected.<\/p>\n\n\n\n<p>But there is a big&nbsp;<em>can<\/em>&nbsp;in there, to coin a phrase. Cloud storage and cloud backups that sync with on-premise systems can be affected by&nbsp;ransomware&nbsp;and other nasties.<\/p>\n\n\n\n<p>Storing backup in the cloud is a good idea, for the physical distance it places between it and on-site copies. But to ensure a logical gap, the backup must be done right, with the correct security and access rules, immutability of data, and point-in-time restore.<\/p>\n\n\n\n<p>All of which makes the original \u201c2\u201d look redundant, and possibly something that is only possible for individuals and organisations operating at small scale and with low <strong><a href=\"https:\/\/tekmart.co.za\/t-blog\/recovery-time-objective-rto-a-tech-definition\/\">recovery time objective (RTO)<\/a> <\/strong>requirements.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Pulling out the principles of 3-2-1<\/strong><\/h3>\n\n\n\n<p>The advent of intelligent and rapid ways of making secondary copies of an organisation\u2019s data to other systems on-site, off-site and in the cloud means that much of what was literally intended by 3-2-1 backup is redundant.<\/p>\n\n\n\n<p>Instead, we can perhaps draw out the principles within 3-2-1 and make use of them in the era of cloud, ransomware, and so on.<\/p>\n\n\n\n<p>Firstly, multiple copies is essential.<\/p>\n\n\n\n<p>Obviously, there is the production copy. This may be copied via various means \u2013&nbsp;snapshots, replication, continuous data protection&nbsp;and\/or various suppliers\u2019 disaster recovery failover products \u2013 to a discrete system that can be activated in case of serious outage at the first. This could also be in the cloud.<\/p>\n\n\n\n<p>But, in addition to any rapidly restorable&nbsp;failover&nbsp;copy, there should also be true backups.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>Snapshots and the like can provide quick access to files and past system states, but they are more costly to store \u2013 and therefore don\u2019t usually go back as far \u2013 and if they have been compromised, they will be useless. Backups provide copies that are retained for longer and are taken at less frequent intervals, say once a day, so there will potentially be clean copies from further back in time available.<\/p><\/blockquote>\n\n\n\n<p>Secondly, off-site copies are also essential. The principles of disaster recovery dictate that secondary copies that you may need to rely on should be as isolated as possible from things that could catastrophically affect the primary site. Secondary sites in the same organisation and the cloud fulfil this need.<\/p>\n\n\n\n<p>But the old requirement in 3-2-1 for data to be on different media is not really practical. As we\u2019ve seen, a second site or the cloud can do what this rule was intended for, but only where security and access are up to the job.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>1-2-&amp;-off<\/strong><\/h3>\n\n\n\n<p>So, what are we left with from 3-2-1?<\/p>\n\n\n\n<p>The principles seem to be that:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>There is a primary copy.<\/li><li>There should be a secondary copy, which can be snapshots or a failover system, but there should also be a true backup.<\/li><li>A secondary copy should be off-site (or in another cloud location?). This can be the backup, or the failover or snapshots.<\/li><\/ul>\n\n\n\n<p>Primary-secondary-off? Or 1-2-&amp;-off?<\/p>\n\n\n\n<p>Not necessarily very snappy \u2013 but the principles are there.<\/p>\n","protected":false},"excerpt":{"rendered":"<p><span class=\"span-reading-time rt-reading-time\" style=\"display: block;\"><span class=\"rt-label rt-prefix\">Reading Time-approximately:<\/span> <span class=\"rt-time\"> 4<\/span> <span class=\"rt-label rt-postfix\">minutes<\/span><\/span>The 3-2-1 backup rule was made for small-scale use in the pre-cloud era when tape still ruled. Is it relevant in the 2020s, or can we repurpose its fundamental principles? By Antony Adshead A fundamental of&nbsp;backup&nbsp;is 3-2-1 \u2013 often referred to as \u201cthe 3-2-1 rule\u201d. But what is the 3-2-1 rule? Is it still of value to all organisations, especially<\/p>\n<p><a class=\"more-link\" href=\"https:\/\/tekmart.co.za\/t-blog\/the-3-2-1-backup-rule-has-cloud-made-it-obsolete\/\">Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7,49,150,148,4,30,3],"tags":[],"class_list":["post-6496","post","type-post","status-publish","format-standard","hentry","category-backup-and-archival-tools","category-cloud-computing","category-cloud-storage","category-data-backup-security","category-datacenter-news","category-expert-advise-and-opinion","category-industry-news-and-expert-advise"],"_links":{"self":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts\/6496","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/comments?post=6496"}],"version-history":[{"count":2,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts\/6496\/revisions"}],"predecessor-version":[{"id":6501,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts\/6496\/revisions\/6501"}],"wp:attachment":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/media?parent=6496"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/categories?post=6496"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/tags?post=6496"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}