Cenovel / Protect

Backup & restore

Protect the database, application stores, configuration, and release identity.

Local staging is not an off-box recovery copy. Configure a separate destination and escrow the backup keyring. Keep copies of required credentials separately from the backup artifacts.

Create and verify a native backup

cenovelctl backup create
cenovelctl backup list
cenovelctl backup verify NAME

Replace NAME with a set returned by the list command. Native backup artifacts are encrypted and authenticated, with a COMPLETE marker written after the set is finalized.

Schedule and off-box copy

The native timer is scheduled for 01:30 with up to 20 minutes of randomized delay. Native retention and an rsync-over-SSH or SFTP destination are configured in /etc/cenovel/cenovel-native.conf. Off-box copies are verified against file digests; SFTP copies are read back for that check.

Check recovery

cenovelctl restore preflight NAME
cenovelctl restore drill

The drill restores into scratch resources and checks that a scratch console starts and passes readiness. Review the drill result; it does not replace a recovery test in your deployment environment.

Restore an appliance

Native restore requires the matching installed release and schema epoch. Review preflight before applying the set.

cenovelctl restore apply NAME
Restore replaces the live database and stores after creating a safety set. A failure after the safety snapshot can leave services stopped. Review the receipt and resolve the failure before retrying; do not start services by hand in the middle of recovery.
Read the operator reference
6. Native backup and restore

Native backup artifacts are encrypted and authenticated. The set includes the
database, supported application stores, configuration, and release identity.
A COMPLETE marker is written after finalization. Keep the backup keyring and
required credentials separately; local staging alone is not an off-box copy.

    cenovelctl backup create
    cenovelctl backup list
    cenovelctl backup verify NAME

Replace NAME with a set returned by the list command. The native timer is
scheduled for 01:30 with up to 20 minutes of randomized delay. Retention and
rsync-over-SSH or SFTP delivery are configured in
/etc/cenovel/cenovel-native.conf. Off-box copies are verified against file digests; SFTP copies are read back for that check.

    cenovelctl restore preflight NAME
    cenovelctl restore drill

The drill restores to scratch resources, starts a scratch console, and checks
readiness. Review its result. A production recovery still needs to be
exercised in the district's deployment environment.

    cenovelctl restore apply NAME

Native restore requires the matching installed release and schema epoch.
It stops application services, takes a safety snapshot, and replaces the live
database and stores. A failure after the safety snapshot can leave services
stopped. Review the receipt and resolve the failure before retrying; do not
start services by hand in the middle of recovery.

Reviewed against the current source code. Native appliance administration commands require the appropriate host privileges; validate deployment procedures on your own release before production use.