Backing up HivePaaS
Apart from your apps' data, HivePaaS keeps its own: its database, with your projects, apps, settings and users. The system backup backs it up.
Turn it on
The system backup is off until you set it up. In Settings → Data Backup:
| Setting | What to give |
|---|---|
| Back Up | HivePaaS's database, the spec of the whole installation, or both. |
| Backup Repository | A backup repository of the installation, not of a project. |
| Secrets in the Spec | Omit, Plaintext, or Encrypted with a Spec Passphrase. |
| Scheduling | When it runs: daily is the default. |
Then turn it on. Run Backup Now takes one at once.
Each run takes one snapshot, with:
db.pg_dump: HivePaaS's database, a dump inpg_dump's custom format;spec.tar.gz, orspec.tar.gz.agewhen encrypted: the configuration spec of the whole installation.
Settings → Data Backup lists the snapshots.
Secrets in the spec
- Omit: the spec holds no secret; importing it asks for every one again.
- Plaintext: the spec holds every secret as it is: whoever has the repository's password reads them.
- Encrypted: the spec is encrypted with a passphrase of its own, besides the repository's password. A lost passphrase is a spec whose secrets cannot be read.
Keep the app secret too
The database holds your secrets encrypted with the app secret, which is not in
the backup: it is in hivepaas.toml, in HivePaaS's data directory. Keep a copy
of that file apart from the server: without it, the secrets in a database backup
cannot be read.
Moving to a new server
- Install HivePaaS on the new server.
- Download the latest
spec.tar.gzfrom a snapshot of the system backup. - Import it in Operations → Export.
- Restore your apps' data from their own backups: see Restoring.