Ransomware attackers specifically target and attempt to destroy backup systems to increase the probability of payment. Hardening your system is critical. Please ensure you have reviewed your platform security using the Security Hardening Checklist
Cohesity

COHESITY Documentation

Explore our documentation to get started, discover products & new features, access troubleshooting guides, register sources, platforms support.

Products
Data Security Alliance
Visit Cohesity.com
Demos
Support
Blogs
Developers
Partner Portals
Cohesity Community
© 2026 Cohesity, Inc. All Rights Reserved.
Terms of Use|
Privacy Policy|
Legal|
  1. Home
  2. Veritas NetBackup™ Cloud Administrator's Guide
  3. About the cloud storage
  4. About the Amazon S3 cloud storage API type
  5. Protecting data using Amazon's cloud tiering
Veritas NetBackup™ Cloud Administrator's Guide

Protecting data using Amazon's cloud tiering

Use the LIFECYCLE storage class to protect your data using cloud tiering. Cloud tiering allows you to back up your data to STANDARD or STANDARD_IA storage class and then transition the data to STANDARD_IA or GLACIER storage class. You can configure the storage server properties to determine the number of days the data resides in each storage class. Thus, you can configure your storage server for short-term or long-term data protection.

To configure a cloud storage server for Amazon LIFECYCLE storage class

  1. Configure the Amazon LIFECYCLE cloud storage server.

    See Configuring a storage server for cloud storage.

  2. Configure the storage server properties for the following:
    • AMZ:UPLOAD_CLASS

    • AMZ:TRANSITION_TO_STANDARD_IA_AFTER

    • AMZ:TRANSITION_TO_GLACIER_AFTER

    See NetBackup cloud storage server connection properties.

  3. Create a disk pool for the LIFECYCLE storage class.

    See Configuring a disk pool for cloud storage.

  4. Create a backup policy.

    See Creating a backup policy.

Best practices
  • Ensure that the selected bucket does not have any existing lifecycle policy.

  • If the data is set to transition to GLACIER, consider the following:

    • Ensure that Amazon Glacier is supported for the region to which the bucket belongs.

    • You can use multi-streaming to get multiple images at logical boundaries.

Limitations

Consider the following limitations:

  • NetBackup Accelerator feature is not supported for policies of the storage units that are created for LIFECYCLE. Do not select the Accelerator check box.

  • CloudCatalyst with LIFECYCLE is not supported.

Permissions

You must have the following permissions:

  • Life cycle policy related permissions:

    • s3:PutLifecycleConfiguration

    • s3:GetLifecycleConfiguration

  • Object tagging permissions

    • s3:PutObjectTagging

      Note:

      The bucket owner has these permissions, by default. The bucket owner can grant these permissions to others by writing an access policy.

  • Also ensure that you also have the required IAM USER permissions. See Permissions required for Amazon S3 cloud provider user.

Feedback

Was this page helpful?
Previous

About restoring data from Amazon Glacier vault

Next

About backing up data using LIFECYCLE storage class

Feedback

Was this page helpful?