If you have lost the password used to encrypt your backups, first check the agent configuration file on the protected server. The password is stored there and can be read only by root. If you cannot find the password there or in an independent copy, Safenix cannot recover it.
Check whether the password is still available
Access the protected server with
rootprivileges and check the agent configuration file. The encryption password is stored on that server and is readable only byroot.If you find the password, store a copy in a place independent of the protected server. Do not rely on the server containing the backups as the only place where the password is kept.
Verify that the copy works by running:
safenix-agent verify-restore
If you cannot find the password
There is no Safenix function, endpoint, or procedure to recover, reset, or bypass the backup encryption password. Safenix never receives or stores it, because it is generated on the customer’s server during installation and remains under the customer’s control.
If the password is permanently unavailable, every backup Safenix holds for you becomes permanently unreadable. Safenix cannot read those backups, and neither can anyone who obtains the backup data from Safenix.
Do not expect rerunning the installer on the same machine to create a replacement password. When the installer is run again on that machine, it preserves the existing password instead of replacing it. The installer displays the password only once, during installation.
Dashboard access is separate
Recovering access to the Safenix dashboard, including your login password or second factor, is a separate process and remains possible. It has no effect on the encryption password for your backups.
This encryption arrangement is accepted through a separate declaration during registration, distinct from acceptance of the Terms of Service. Keeping an independent copy of the password and verifying it with safenix-agent verify-restore is therefore essential for future recovery.