Configuring Encryption Settings

Veeam Backup for Salesforce allows you to encrypt backed-up data stored in PostgreSQL databases and file repositories to protect your information from unauthorized access. To do that, the product leverages a cryptographic algorithm to transform data to an unreadable format using an organization-specific data key that is enciphered with one of the following master keys:

  • An original (built-in) Veeam Backup for Salesforce master encryption key that is automatically generated by Veeam Backup for Salesforce upon installation.
  • A native Amazon Web Services Key Management Service (AWS KMS) customer-managed master encryption key.

Important

  • Shared AWS KMS keys are not supported in Veeam Backup for Salesforce 3.1.
  • If an AWS KMS key is used to encrypt backed-up data, DO NOT delete this key from the AWS KMS account. Otherwise, you will not be able to decrypt the encrypted data.

In This Section

Page updated 11/20/2024

Page content applies to build 3.1.0.2378