Go to documentation repository
Documentation for Axxon One 2.0. Documentation for other versions of Axxon One is available too.
General Information
Encryption of an object archive allows you to:
- ensure protection of data written to archive volumes;
- keep confidentiality;
- protect data from unauthorized access.
Licensing
A separate license module is required for each archive volume. Encryption of a volume of an object archive is available for Axxon One Professional, Enterprise and Unified licenses (see Types of licenses). To obtain the modules, contact an AxxonSoft manager.
Encrypting a volume of an object archive
To encrypt a volume of an object archive, do the following:
- Set the Encrypted checkbox when you create or edit a volume of an object archive (see Creating a local archive, Creating a remote archive, Creating a cloud archive).
Note
In the Cloud archives, you must click the three-dot button in the AES key parameter to apply encryption:
- Configuring an archive volume based on the Microsoft Azure solution
- Configuring an archive volume based on the Amazon solution
- Configuring an archive volume based on the Seagate Lyve Cloud solution
- Configuring an archive volume based on the Wasabi solution
- Configuring an archive volume based on the MinIO solution
As a result, a window opens, where you must specify the encryption key in one of the following ways:
Enter a 32-byte custom encryption key generated using a third-party application.
Generate the key using the embedded generation function by clicking the Generate button.
- Click the Copy button to copy the key to the clipboard.
Attention!
You must save the generated key in a safe place on a separate medium. This will allow you to restore access to the data in case the archive is transferred to another machine or access to the server is lost.
- Click the Apply button.
As a result, after you apply the encryption key, all video data written to the volume is stored in encrypted form. The volume is labeled Encrypted.
Attention!
- Encryption is only applied to video data recorded after you applied the encryption key.
- Already existing data in the volume remains unencrypted.
Moving an encrypted archive volume
If you physically move a disk with an archive to a new machine, the system marks an encrypted volume as inaccessible (displayed in red) with the label Encrypted. To restore access, do the following:
- Open the archive volume and set the Encrypted checkbox.
- Enter the previously saved encryption key in the window that opens.
- Click the Apply button.
After the key is successfully entered, the volume becomes available, and its color changes from red to green in the interface.