Sign in Start free trial
← Help centre

Lost Your Backup Encryption Password? What to Do

Find out whether the encryption password is still available on the protected server and what happens if it cannot be recovered.

If you have lost the password used to encrypt your backups, first check the agent configuration file on the protected server. The password is stored there and can be read only by root. If you cannot find the password there or in an independent copy, Safenix cannot recover it.

Check whether the password is still available

  1. Access the protected server with root privileges and check the agent configuration file. The encryption password is stored on that server and is readable only by root.

  2. If you find the password, store a copy in a place independent of the protected server. Do not rely on the server containing the backups as the only place where the password is kept.

  3. Verify that the copy works by running:

    safenix-agent verify-restore

If you cannot find the password

There is no Safenix function, endpoint, or procedure to recover, reset, or bypass the backup encryption password. Safenix never receives or stores it, because it is generated on the customer’s server during installation and remains under the customer’s control.

If the password is permanently unavailable, every backup Safenix holds for you becomes permanently unreadable. Safenix cannot read those backups, and neither can anyone who obtains the backup data from Safenix.

Do not expect rerunning the installer on the same machine to create a replacement password. When the installer is run again on that machine, it preserves the existing password instead of replacing it. The installer displays the password only once, during installation.

Dashboard access is separate

Recovering access to the Safenix dashboard, including your login password or second factor, is a separate process and remains possible. It has no effect on the encryption password for your backups.

This encryption arrangement is accepted through a separate declaration during registration, distinct from acceptance of the Terms of Service. Keeping an independent copy of the password and verifying it with safenix-agent verify-restore is therefore essential for future recovery.

Still stuck?

If this page did not solve it, write to us and a person answers.

Contact