In case of VaultOne’s unavailability, you can access your data offline
This is an extremely important configuration for your company's security and must be done by the account's main Administrator.
A backup key will be generated there, which must be printed or stored in any other secure way, as it can only be viewed once. This information belongs to the company and not the platform administrator's personal information.
With this key, it will be possible to access all credentials offline in case of internet inconsistency or any other unavailability that may happen.
If the key is lost, it is possible to generate a new one, however, all information stored by the previous key will be lost, and a new backup file will be generated.
Check below how to generate your key and access the backup file
Requirements
To access your passwords offline, you need to:
1- Have a connector installed locally or on a network that you have access to;
2- Have activated the backup in the administration settings;
3- Have the printed recovery key.
How to Activate Backup and Get the Backup Key
In the administration menu, click on settings and then on the backup tab. Finally, click Generate Key:
A new window will open, informing you that by clicking ‘yes’, the backup system will be activated. Click ‘yes’.
Note: The key will appear on your screen, you must copy it and keep it in a safe place, as this will be the only time it will be visible.
After you exit this screen, the key will appear as follows:
Break-the-glass
First step:
Connect to your connector shell and type the following command:
If you use Docker:
docker exec -ti vo-sync /opt/vosession/bin/backupviewer list
If you use Podman:
podman exec -ti vo-sync /opt/vosession/bin/backupviewer list
A list of available backups will be displayed.
Second step:
Open the backup you wish, by date, using the following command:
If you use Docker:
docker exec -ti vo-sync /opt/vosession/bin/backupviewer open (ENTER THE FILE NUMBER WITH THE .bkp EXTENSION HERE)
If you use Podman:
podman exec -ti vo-sync /opt/vosession/bin/backupviewer open (ENTER THE FILE NUMBER WITH THE .bkp EXTENSION HERE)
Third step:
Answer the following questions:
1 - Are you sure you want to open the backup file ( .bkp file number added earlier)? This action will be logged and alerted!!! (y/n)
Select "Y" for "Yes" and "N" for "No".
2 - Please tell us why you need to break the glass of your vault account, this information will be recorded.
Type why you want to open the backup file.
3 - Please enter the Vaultone Key Passphrase to decrypt this file.
Insert the backup key.
Note: For security reasons, the key will not be visible, but you can type normally and select "Enter".
Fourth Step:
Browse through your data normally, once the connection to VaultOne is reestablished you can use VaultOne normally.
Note: If a backup does not change from one day to the next, this means there were no new records in VaultOne so, which means the most recent backup file will be considered.
Found your answer? If you have any questions, send us an email! [email protected]