165 Copyright © Acronis, Inc., 2000-2011
The AES cryptographic algorithm operates in the Cipher-block chaining (CBC) mode and uses a
randomly generated key with a user-defined size of 128, 192 or 256 bits. The larger the key size, the
longer it will take for the program to encrypt the archives stored in the vault and the more secure the
archives will be.
The encryption key is then encrypted with AES-256 using a SHA-256 hash of the password as a key.
The password itself is not stored anywhere on the disk; the password hash is used for verification
purposes. With this two-level security, the archives are protected from any unauthorized access, but
recovering a lost password is not possible.
Vault administrators
Vault administrators can back up to the vault, view and manage any archive stored in the vault. By
default, the Administrators group on the storage node is added to the vault administrators.
To add a group or user accounts
1. Enter names of groups or users in the separate fields in accordance with the following patterns:
DisplayName (example: FirstName LastName).
UserName (example: User1).
ObjectName@DomainName (example: User1@Domain1).
DomainName\ObjectName (example: Domain1\User1).
2. Once the names are entered, click Check names. If the entered name is found, click OK (the OK
button is disabled until the name is found).
If no objects were found, delete the name and enter another one. If several objects for the
entered name were found, select one of them and click OK, or click Cancel and specify another
name.
At first, the software tries to find the entered names in the list of local users and groups on the
machine where the storage node is installed. If not found, the software checks the domain users
and groups.
You will be prompted to specify the domain account credentials, when you enter a user or group
name that cannot be checked using your domain account; for example, if you are logged on using
a domain account other than the domain name you have entered to check.
Vault users
Vault users can view and manage only their own archives in the vault. A vault user who is a member
of the Administrators group on a machine can additionally view and manage any archives created
from that machine in a managed vault. By default, the Everyone group on the storage node is added
to the vault users.
To add a group or user accounts
1. Enter names of groups or users in the separate fields in accordance with the following patterns:
DisplayName (example: FirstName LastName).
UserName (example: User1).
ObjectName@DomainName (example: User1@Domain1).
DomainName\ObjectName (example: Domain1\User1).
2. Once the names are entered, click Check names. If the entered name is found, click OK (the OK
button is disabled until the name is found).
Comentarios a estos manuales