Sora Yazılım
English
Custom software solutions from Türkiye
Acronis · Backup and Cyber Protection

Acronis Cyber Backup

The Acronis backup core: image-level backup, immutable storage and bare-metal recovery.

Quick answer

Acronis Cyber Backup is the backup core that protects server, virtual machine, workstation and application data at image or file level and returns it to a working state after hardware failure, user error or ransomware. The backup destination, retention period and recovery method are managed from a single protection plan; bare-metal recovery, restore to dissimilar hardware and immutable storage are standard capabilities.

Acronis Cyber Backup is the backup core that protects server, virtual machine, workstation and application data at image (disk) level or file level, and returns it to a working state after hardware failure, user error or ransomware. The backup destination, retention period and recovery method are all managed from a single protection plan; bare-metal recovery, restore to dissimilar hardware and immutable storage are standard capabilities of this core.

One point of naming needs to be clarified. Although the name "Cyber Backup" is still widely used in the Turkish market, in the current official Acronis licensing scheme the backup core is sold under the Acronis Cyber Protect Standard, Advanced and Backup Advanced editions; the former "Backup Standard" edition is no longer available for purchase and can only be used by existing customers with an active maintenance agreement (Acronis Support KB 73387, 2026). On this page we use the term "Cyber Backup" to mean exactly this backup core, configured without the security add-ons.

The numbers show why backup has stopped being a matter of IT hygiene and has become a security control in its own right. The Verizon 2025 Data Breach Investigations Report analysed 22,052 security incidents and 12,195 confirmed data breaches across 139 countries; ransomware was present in 44% of the breaches analysed (up from 32% the previous year) and appeared in 88% of SMB breaches, while the figure remained at 39% for large organisations (Verizon DBIR 2025). The same report states one of the reasons SMBs are disproportionately targeted quite plainly: they are less likely than large organisations to have current, readily accessible backups.

Against this backdrop, a backup is not a copy kept "just in case" — it is one of the attacker's early targets. This is precisely where the Acronis solution family differentiates itself: backup and cyber protection run on the same agent and in the same console, so the controls that protect the backup itself do not come from a separate product. As an authorised Acronis channel partner, Sora Yazılım delivers licensing, backup architecture design, migration from an existing solution, recovery drills and, on request, a managed operations service — all together.

What is Acronis Cyber Backup and which license editions is it sold under today?

Short answer: the backup core is licensed according to the type of workload being protected, and the choice of edition directly determines which workloads you can cover. According to the official licensing knowledge base, Workstation, Server, Virtual Host and Public Cloud VM workloads can be protected with both the Standard and Advanced editions; by contrast, the Universal License is available only in the Advanced and Backup Advanced editions, while Microsoft 365 and Google Workspace protection sits exclusively on the Backup Advanced side (Acronis Support KB 73387, 2026).

Workload typeCyber Protect StandardCyber Protect AdvancedBackup Advanced
WorkstationYesYesYes
Windows Server EssentialsYesNoNo
Server (physical server)YesYesYes
Virtual Host (hypervisor)YesYesYes
Public Cloud VMYesYesYes
Universal License (type-agnostic workload)NoYesYes
Microsoft 365NoNoYes
Google WorkspaceNoNoYes

The official positioning of each edition completes this picture. Standard combines standard backup with multi-layered protection for SMBs; data protection maps, URL filtering and categorisation, continuous data protection and disk health monitoring sit at this tier. Advanced targets larger, more complex environments and adds extra workload support, shared protection plans, safe recovery of backups, malware scanning of backups and security posture assessment. Backup Advanced is built around group management, shared protection plans, off-host data processing, tape support, deduplication and customisable reporting.

On the virtualisation side, the licensing rules deserve particular attention: a Virtual Host or Per-VM license for VMware and Hyper-V is valid in both the Standard and Advanced editions, whereas Azure Stack HCI, KVM, Nutanix and Citrix Hypervisor can only be licensed with Advanced or Backup Advanced. On the Public Cloud VM side, one Per-VM license covers three virtual machines; with a Universal Workload license, one license corresponds to a single workload regardless of whether it is a physical machine, a virtual machine or a host (Acronis Support KB 73387, 2026). Mixing Standard and Advanced licenses in the same environment is not supported; all hosts in a cluster must have a consistent edition and license type. Once we have mapped the host and VM distribution in your environment, we calculate which license type delivers the same coverage with fewer line items and build the licensing plan accordingly.

How do you apply the 3-2-1 backup rule with Acronis?

Short answer: the 3-2-1 rule says you should keep at least three copies of your data, store those copies on at least two different media types, and keep at least one copy off site. In Acronis, this rule is implemented by defining multiple backup destinations within a single protection plan and adding a replication step from the local backup to a cloud destination; no separate product and no separate scheduling engine is required.

The available destinations differ by deployment model. In on-premises management, the officially supported backup destinations are cloud storage, a local folder, a network folder (SMB/CIFS/DFS), Acronis Cyber Infrastructure, an NFS folder (Linux and macOS agents), Secure Zone and SFTP; if no port is specified for SFTP, port 22 is used. The same documentation is equally clear about two limits: backing up to FTP servers is not supported, and a folder open to anonymous access cannot be used as a backup destination (Acronis Cyber Protect 16 Web Help).

In cloud management, one additional destination comes into play: Direct Backup to Public Cloud, which lets you back up straight to public-cloud-compatible storage without deploying a separate gateway component. This option has one prerequisite — backing up to public cloud requires a Local backup storage quota (Acronis Cyber Protect Cloud User Guide). Conversely, SFTP, tape devices, Acronis Storage Node, Acronis Cyber Infrastructure destinations and deduplication are available only in on-premises deployment; tape and Storage Node are additionally absent from the Standard edition (Acronis Cyber Protect 16 Web Help).

Backup destinationOn-premises managementCloud managementNote
Acronis cloud storageYesYesThe off-site leg of 3-2-1
Local folder / directly attached diskYesYesFastest recovery tier
Network folder (SMB/CIFS/DFS)YesYesAnonymously accessible shares not supported
NFS folderYesYesOn Linux and macOS agents
Secure ZoneYesYesProtected partition on the machine's own disk
SFTPYesNoPort 22 used if no port is specified
Acronis Cyber InfrastructureYesNoACI-based immutable storage lives here
Acronis Storage NodeYes (Advanced)NoNot in the Standard edition
Tape libraryYes (Advanced)NoNot in the Standard edition
Direct backup to public cloudNoYes (Advanced)Requires a Local backup storage quota
DeduplicationYesNoReduces storage consumption
FTP serverNoNoNot officially supported

The architecture we typically build in practice is this: a fast, short-retention backup to a local disk or network folder for critical workloads, replication of that same backup to cloud storage, and long-term retention held on the cloud side. Day-to-day recovery requests are then served from the local copy in seconds to minutes, while the off-site copy remains available in a building- or hardware-level incident. Organisations that prefer on-premises deployment can use tape or a Storage Node managed by Acronis Cyber Protect 16 for the third copy.

What does immutable storage actually deliver against ransomware?

Short answer: immutable storage keeps deleted or modified backup files recoverable for a defined retention period. That means even if an administrator account is compromised and someone tries to delete backups from the console, a point to roll back to remains. This is the most critical difference backup makes in a ransomware scenario, because in modern attacks destroying the backups is a step that comes before encryption.

The technical prerequisites of the feature are set out clearly in the official documentation. In cloud deployment, immutable storage is supported on Acronis-hosted or partner-hosted cloud storage running Acronis Cyber Infrastructure 6.0.1 or later and requires a protection agent of at least version 24.01 (build 24.1.37195); in on-premises deployment, ACI 6.0.1 or later and agent version 16.0.37277 or later are required. Only backups in TIBX (Version 12) format are supported (Acronis Cyber Protect 16 Web Help).

The difference between the two modes matters as much operationally as it does at purchase. In Governance mode, immutable storage can be switched on and off and the retention period can be changed. Compliance mode, by contrast, is irreversible: in this mode immutable storage cannot be turned off, the retention period cannot be changed and you cannot revert to Governance mode. For that reason we recommend Compliance mode only for data sets with a clear legal retention obligation, and only with the scope calculated in advance. The good news is that protection comes on by default: since September 2024, immutable storage in Governance mode with a 14-day retention period has been enabled by default on all Acronis-hosted storage, for all Partner and Customer tenants (Acronis Cyber Protect 16 Web Help).

Encryption is the natural complement to immutable storage. In Acronis backup encryption, the AES algorithm runs in Galois/Counter (GCM) mode with a randomly generated 256-bit key; that key is itself encrypted with AES-256 using the SHA-2 (256-bit) hash of the password as the key, and the password is never stored anywhere on disk or in the backups (Acronis Cyber Protect 16 Web Help). The operational consequence of this design is significant: if the password is lost, the backups cannot be recovered even by Acronis. During deployment we insist that encryption passwords are stored in a corporate password vault and written into the recovery procedure. Scanning backups for malware in order to identify a clean restore point, meanwhile, is a capability that comes with the Acronis Advanced Security + EDR add-on.

How do bare-metal recovery and restore to dissimilar hardware work?

Short answer: because an image-level backup covers the entire disk including the operating system, applications and configuration, it can be restored directly to bare hardware. According to the official Acronis recovery cheat sheet, physical Windows and Linux machines can be recovered both from the Cyber Protect console and with bootable media; physical macOS machines can only be recovered with bootable media. Bootable media is mandatory for bare-metal recovery and for restoring to an offline machine (Acronis Cyber Protect 16 Web Help).

When the hardware changes, the tool that steps in is Universal Restore. In a recovery to dissimilar hardware, if the operating system will not start, Universal Restore updates the drivers and modules that are critical for boot so that the system can start; it applies to Windows and Linux and is run from bootable media (Acronis Cyber Protect 16 Web Help). In practice this means you can replace a failed server with a machine from a different vendor or with a different disk controller and still restore from the same backup; migrating a physical machine into a virtual environment uses the same mechanism.

For organisations that want to open recovery up beyond the IT team, One-click recovery is a separate option — but its scope is limited. The feature can only be used with Acronis Cyber Protect Advanced and Acronis Cyber Protect Backup Advanced licenses, and it supports only Secure Zone, network folder and cloud storage destinations (Acronis Cyber Protect 16 Web Help). In a design that uses tape or SFTP as the backup destination, you need to factor in at the architecture stage that this feature will not work.

The only way to know that bare-metal recovery really works is to try it. In deployment projects we keep the following steps standard: preparing and storing bootable media in advance for every critical workload, testing the media on the hardware where recovery will be performed, verifying access credentials to the network folder and cloud destination from the bootable environment, writing the encryption password into the recovery procedure, and running a full bare-metal drill at least once a year. If you need to recover a large number of machines over the network in an on-premises deployment, a PXE server can be used; this component is offered only in on-premises management and with the Advanced edition (Acronis Support KB 73376, 2025).

How far can you tighten your RPO and RTO targets with Acronis Cyber Backup?

Short answer: RPO (Recovery Point Objective) defines the acceptable data-loss window — the time between the last valid backup and the moment of the incident; RTO (Recovery Time Objective) is the time accepted for a workload to become operational again. In the backup core, RPO is determined by backup frequency and RTO by the recovery method. It is possible to tighten both at once, but doing so increases cost and architectural complexity, which is why targets should be set separately for each workload.

On the RPO side, the most commonly used tool is scheduling: hourly or more frequent incremental backups for critical databases and daily backups for file servers are a typical starting point. If a narrower window is needed, continuous data protection (CDP) comes into play; the current Cyber Protect Cloud documentation defines CDP as part of standard protection and also states its limits: it works only on the NTFS file system, on Windows 7 and later and Windows Server 2008 R2 and later, only for local folders, and it cannot be used together with the Application backup option (Acronis Cyber Protect Cloud User Guide).

On the RTO side, what matters is where the data comes back from and how. Restoring a single file takes minutes, while a full restore of a server to bare hardware depends on the data volume and the bandwidth to the destination. The intermediate layer that shortens this time is Instant Restore: a virtual machine is started directly from a disk-level backup containing an operating system, its disks are emulated from the backup while the machine runs, and storage space is needed only for the changes that accumulate. Acronis recommends keeping this temporary machine for no more than three days and then deleting it or converting it into a permanent virtual machine (Acronis Cyber Protect Cloud User Guide).

Recovery tierTypical useWhat determines RTOPrerequisite
File / folder recoveryAccidentally deleted or corrupted fileFile size and destination access speedFile or image backup
Application object recoveryA single mailbox, database or recordScope of the application backupApplication backup configuration
Bare-metal recoveryAn entire failed or encrypted serverData volume and destination bandwidthImage backup + bootable media
Instant Restore (running a VM from backup)Keeping the service up while recovery runsHypervisor resources and speed of the backup destinationDisk-level backup containing an operating system
Disaster Recovery (failover in the cloud)Site- or infrastructure-level outageReplication frequency and runbook designDisaster Recovery add-on and cloud deployment

Beyond a certain point, targets can no longer be met with backup alone. The official Acronis Advanced Disaster Recovery data sheet explicitly states an RPO and RTO target of under 15 minutes thanks to the RunVM engine (Acronis Advanced Disaster Recovery data sheet, 2022). Targets at that level require the Acronis Disaster Recovery add-on. When setting targets, it is also worth accounting for how long recovery really takes: according to the IBM Cost of a Data Breach Report 2025, 65% of organisations have still not fully recovered from their breach; among those that say they have fully recovered, the process took more than 100 days in 76% of cases and more than 150 days in 26%, while only 2% recovered in under 50 days (IBM & Ponemon, 2025).

Which virtualisation platforms and workloads are in scope?

Short answer: on common hypervisors, backups can be taken at hypervisor level without installing an agent inside the virtual machine; on some platforms, backup is only possible with an agent installed inside the guest operating system. According to the official support matrix, VMware vSphere 4.1 – 8.0 and Hyper-V (Windows Server 2008 – Windows Server 2025) are backed up agentlessly, and Scale Computing HyperCore 8.8 – 9.4 is also supported agentlessly. By contrast, Proxmox VE 7.x and 8.x and Citrix XenServer/Hypervisor 4.1.5 – 8.2 are backed up only with an agent inside the guest operating system (Acronis Cyber Protect 16 Web Help).

For cloud workloads, the rules diverge even further. Microsoft Azure virtual machines can be backed up agentlessly only in cloud deployment mode; Amazon EC2 instances are not supported agentlessly and are protected only with an agent inside the guest operating system. In Red Hat Virtualization 4.2 – 4.5 environments managed with oVirt, agentless backup is possible only in cloud deployment and with an Advanced license (Acronis Cyber Protect 16 Web Help). Because these distinctions change the agent count — and therefore the licensing line items — at the proposal stage, it is important to build the inventory hypervisor by hypervisor.

Edition differences must also be taken into account. According to the Acronis feature comparison knowledge base, hypervisor-level backup for Nutanix and Proxmox is not available in Cyber Protect 16; these capabilities arrive with Cyber Protect 17 in both on-premises and cloud management. In the same source, software inventory, hardware inventory and device discovery with Device Sense are likewise marked only in the 17 column (Acronis Support KB 73376, 2025). When planning a backup architecture in an environment running on Nutanix or Proxmox, the choice of edition is therefore a technical decision, not merely a commercial preference.

Another practical point is agent autonomy: once a protection plan has been deployed to a machine, the agent continues protection operations for 30 days even if communication with the management server is lost (Acronis Cyber Protect 16 Web Help). In branches with weak connectivity or for workloads operating in the field, this behaviour is decisive for continuity of protection. If workload security is to be added alongside backup on the server side, Acronis can be positioned together with server-focused protection solutions such as Trend Micro Deep Security or Bitdefender GravityZone Security for Servers; in that scenario Acronis remains the backup and recovery layer.

KVKK backup obligations and choosing the right package: where should you start?

Short answer: KVKK (Turkey's data protection law) does not mandate a specific product name, but it does define its expectations around backup in concrete terms. The "Backing Up Personal Data" section of the Personal Data Security Guide published by the Turkish Personal Data Protection Authority states that, where data is damaged, destroyed or stolen, the data controller must resume operations as quickly as possible using the backed-up data; that backup strategies against ransomware should be developed; that only the system administrator should be able to access backed-up personal data; and that data set backups must be kept off the network (KVKK Personal Data Security Guide).

These clauses map directly onto the Acronis side. The expectation to "resume operations as quickly as possible" requires the RTO target to be written down and fast recovery paths such as Instant Restore to be tested in advance. The "keep off the network" expectation is met through replication to cloud storage, or with tape in an on-premises deployment. "Only the system administrator should have access" is delivered through role-based access and backup encryption; a strategy against ransomware, meanwhile, means having immutable storage enabled, choosing the retention period deliberately and verifying that the restore point is clean.

Choosing a package comes down to the answers to three questions. The first is whether the management console will run inside the organisation or in the cloud; organisations that want on-premises management head towards Acronis Cyber Protect 16, while those that want subscription-based, centralised management head towards Acronis Cyber Protect Cloud. The second question is whether the security layer will sit on the same agent as backup; if it will, Advanced Security + EDR is added. The third question is whether patching, inventory and remote management will also move into the same console; if so, Acronis Advanced Management comes into play. If you would like to compare other brands and products, you can review the full portfolio on our solutions page.

The infrastructure side of the backup architecture should not be neglected either. Planning storage capacity, making sure backup windows do not collide with production load, setting up monitoring and alerting channels, and putting recovery drills on the calendar all determine the lasting success of the project; this is where our DevOps and infrastructure services come in.

Share your current backup solution, your workload inventory and your recovery objectives, and we will determine together which license edition, which backup destinations and which retention policy are right on the Acronis Cyber Backup side. Let us prepare a proposal covering scope, migration plan and deployment steps. Get in touch via our contact page — we work with local technical support in Turkish, recovery drills and post-deployment operational support included.

Key features

What it offers

  • Image (disk-level) and file-level backup; scheduling and retention policy managed from a single protection plan
  • 3-2-1 architecture: a combination of local destination + network folder + cloud storage, plus a replication step
  • Immutable storage: Governance and Compliance modes, with 14-day default protection on Acronis-hosted storage
  • AES-256 GCM backup encryption; the key is protected with the SHA-2 (256-bit) hash of the password, and the password is stored nowhere
  • Bare-metal recovery: full system restore to bare hardware with bootable media
  • Restore to dissimilar hardware and physical-to-virtual migration with Universal Restore
  • Instant Restore: starting a virtual machine directly from a disk backup containing an operating system
  • Agentless backup: at hypervisor level in VMware vSphere, Hyper-V and Scale Computing HyperCore environments
  • Local folder, network folder, NFS and Secure Zone destinations in every deployment; SFTP, Acronis Cyber Infrastructure, tape and Storage Node in on-premises deployment only (tape and Storage Node are absent from the Standard edition)
  • Lower storage and production load through deduplication (on-premises deployment only) and off-host data processing (Backup Advanced)
  • Simplified, end-user-initiated recovery with One-click recovery (with Advanced and Backup Advanced licenses)
  • Agent autonomy: once the protection plan is deployed, protection continues for 30 days even if communication with the management server is lost
Tech Summary

Important technical data

Product position
The Acronis backup core; in the current official licensing scheme it is sold under the Cyber Protect Standard, Advanced and Backup Advanced editions (Backup Standard is no longer available for purchase)
Backup types
Disk/image level, file level and application backup; incremental and differential scheduling
Backup destinations (on-premises)
Cloud storage, local folder, network folder (SMB/CIFS/DFS), Acronis Cyber Infrastructure, NFS (Linux/macOS), Secure Zone, SFTP (default port 22); FTP is not supported
Backup destinations (cloud management)
In addition to the above, direct backup to public cloud; this option requires a Local backup storage quota. SFTP, tape, Storage Node, ACI and deduplication are available in on-premises deployment only
Immutable storage
In the cloud, ACI 6.0.1+ and an agent of at least 24.01 (24.1.37195); on-premises, ACI 6.0.1+ and agent 16.0.37277+. Only TIBX (Version 12) backups. Compliance mode is irreversible
Encryption
AES-256 in Galois/Counter (GCM) mode; the key is encrypted with the SHA-2 (256-bit) hash of the password, and the password is not stored on disk or in the backups
Bare-metal recovery
For physical Windows/Linux, from the console or with bootable media; macOS with bootable media only. Bootable media is mandatory for restores to bare hardware and to offline machines
Recovery to dissimilar hardware
Universal Restore; updates drivers and modules critical for boot, works on Windows and Linux from bootable media
Agentless hypervisor support
VMware vSphere 4.1–8.0, Hyper-V (Windows Server 2008 – Windows Server 2025), Scale Computing HyperCore 8.8–9.4. Proxmox VE 7.x/8.x and Citrix XenServer 4.1.5–8.2 with an agent only, and only on fully virtualised (HVM) guests
Cloud workloads
Azure VM agentless only in cloud deployment; Amazon EC2 not supported agentlessly, agent only; oVirt/RHV 4.2–4.5 agentless only in cloud deployment + Advanced license
One-click recovery
Only with Cyber Protect Advanced and Backup Advanced licenses; only for Secure Zone, network folder and cloud storage destinations
Licensing
By workload type (Workstation, Server, Virtual Host, Public Cloud VM, Universal). On Public Cloud VM, 1 Per-VM license covers 3 VMs. Contact us for scope and a quote
Use Cases

When would you choose this product?

Manufacturing

Image backups of plant servers against hardware failure and encryption

Backing up ERP, MES and file servers at image level makes it possible to bring a failed server back onto different hardware with Universal Restore. The fast backup taken to a local destination is replicated to cloud storage; because immutable storage is enabled, the backups cannot be deleted by an attacker. In scenarios where the production line has stopped, Instant Restore brings the service back up before the full recovery is complete.

Healthcare

Off-network copies and encrypted retention for systems holding special-category personal data

In patient record and imaging systems, KVKK's backup expectations are decisive: backups kept off the network, access limited to the system administrator, and a strategy developed against ransomware. Replication to cloud storage provides the off-network copy, AES-256 GCM encryption enforces the access restriction, and immutable storage provides resistance to deletion. The recovery procedure is documented in writing together with the encryption password.

Finance and payment services

Auditable retention periods and demonstrable recovery drills

In regulated organisations, proving that you can restore is as much an audit topic as the existence of the backup itself. Retention periods are defined per data set, and Compliance mode is considered for sets with a clear legal retention obligation; because this mode is irreversible, its scope is calculated in advance. Annual bare-metal and file recovery drills are reported and added to the audit file.

Data centre and hosting

Combining agentless and agent-based backup in a mixed hypervisor environment

Workloads on vSphere and Hyper-V are backed up agentlessly at hypervisor level, while machines on Proxmox or Citrix Hypervisor are protected with an agent inside the guest operating system. Because hypervisor-level backup for Nutanix and Proxmox arrives with Cyber Protect 17, the choice of edition is an architectural decision. In on-premises deployment, Storage Node and deduplication reduce storage consumption.

Multi-branch retail

Centrally managed backup for branches with no local IT staff

In branches, backups are taken to a local disk or to Secure Zone and replicated to central cloud storage, so local recovery remains possible even if the link goes down. The fact that the agent keeps running for 30 days after the protection plan is deployed, even if communication with the management server is lost, preserves backup continuity at locations with poor connectivity. Policy changes are distributed centrally in a single operation.

Software and technology companies

Rapid cloning of development environments and server migration projects

Image backups are used not only in disaster scenarios but also for planned migrations and for building test environments. With Universal Restore, a physical server can be moved into a virtual environment and a virtual machine onto a different hypervisor; Instant Restore, meanwhile, spins up an isolated test environment with a copy of production data in minutes. It is recommended that the temporary machine be deleted within three days or converted into a permanent VM.

Who is it for?

SMBs and mid-sized organisations that want to protect server, virtual machine and workstation data under an auditable retention policy, that are looking for immutable backups against ransomware and that require bare-metal recovery capability, as well as manufacturing, healthcare, finance and data centre teams that prefer on-premises management.

Frequently Asked Questions

Frequently asked questions

What is the difference between Acronis Cyber Backup and Acronis Cyber Protect?
Cyber Backup describes the backup core configured without security modules. Cyber Protect is the integrated product that adds security layers on top of the same agent — malware protection, vulnerability assessment and, with add-ons, EDR. In the current official licensing scheme, the backup core is sold under the Cyber Protect Standard, Advanced and Backup Advanced editions.
Can we still buy the "Backup Standard" edition?
No. According to the current Acronis licensing knowledge base, the Backup Standard edition is no longer available for purchase; it can only be used by existing customers with an active maintenance agreement. For new projects, one of Cyber Protect Standard, Advanced or Backup Advanced is selected for the backup core. Which edition is right depends on the workload types to be protected.
Can we apply the 3-2-1 rule with a single plan in Acronis?
Yes. Multiple backup destinations can be defined in a protection plan, and a backup taken to a local destination can be copied to cloud storage with a replication step. The common pattern is a short-retention local copy for fast recovery, a cloud copy for the off-site leg, and — if required — a third copy on tape or a Storage Node in an on-premises deployment.
Is immutable storage enabled by default?
On the cloud side, yes. Since September 2024, immutable storage in Governance mode with a 14-day retention period has been enabled by default on all Acronis-hosted storage, for all Partner and Customer tenants. The period and mode can be changed as needed; however, because the switch to Compliance mode is irreversible, this choice should be evaluated in advance.
What is the difference between Governance and Compliance modes?
In Governance mode, immutable storage can be switched on and off and the retention period can be changed. In Compliance mode, immutable storage cannot be turned off, the retention period cannot be changed and you cannot revert to Governance mode. Compliance mode suits data sets with a clear legal retention obligation; the scope must be calculated in advance.
Are backups encrypted, and what happens if we lose the password?
In backup encryption, the AES algorithm runs in Galois/Counter (GCM) mode with a randomly generated 256-bit key; the key is encrypted with AES-256 using the SHA-2 (256-bit) hash of the password. The password is never stored on disk or in the backups. As a result, if the password is lost, the backups cannot be opened even by Acronis; storing the password in a corporate vault is mandatory.
Can we recover from scratch onto bare hardware?
Yes, and bootable media is used for this. According to the official recovery cheat sheet, physical Windows and Linux machines can be recovered both from the console and with bootable media; macOS is recovered with bootable media only. Bootable media is mandatory for restores to bare hardware and to an offline machine, so the media must be prepared and tested in advance.
Can we restore a backup onto a server of a different brand or configuration?
Yes, that is exactly what Universal Restore is for. In a recovery to dissimilar hardware, if the operating system will not start, Universal Restore updates the drivers and modules critical for boot. It applies to Windows and Linux and is run from bootable media. The same mechanism is also used to migrate a physical server into a virtual environment.
Does Instant Restore replace a full recovery?
No, it is a temporary bridge rather than a permanent solution. A virtual machine is started directly from a disk backup containing an operating system, and its disks are emulated from the backup. Acronis recommends keeping this temporary machine for no more than three days and then deleting it or converting it into a permanent virtual machine. For lasting use, the conversion step must be planned.
Can we back up to an FTP server or a shared folder?
Backing up to FTP servers is not officially supported. SMB/CIFS/DFS network folders are supported, but a folder open to anonymous access cannot be used as a backup destination. SFTP is supported and port 22 is used if no port is specified; however, the SFTP destination is available only in on-premises deployment.
Can we keep using our tape library?
You can, but with two conditions: the tape destination and tape management are offered only in on-premises deployment and are absent from the Standard edition. The same restriction applies to Acronis Storage Node and deduplication. Organisations planning to move to cloud management need to redesign their long-term archive strategy with these restrictions in mind.
Are hypervisors other than VMware and Hyper-V supported?
Partly. vSphere 4.1–8.0, Hyper-V (Windows Server 2008 – Windows Server 2025) and Scale Computing HyperCore 8.8–9.4 are backed up agentlessly. Proxmox VE 7.x/8.x and Citrix XenServer 4.1.5–8.2 are backed up only with an agent inside the guest operating system. Hypervisor-level backup for Nutanix and Proxmox arrives with Cyber Protect 17.
How should we set our RPO and RTO targets?
Targets are set per workload. RPO is determined by backup frequency, RTO by the recovery method. A narrow RPO calls for more frequent backups or continuous data protection; a short RTO calls for Instant Restore or Disaster Recovery. Applying the same target to every workload creates unnecessary cost; criticality classification is the first step.
Under what conditions does continuous data protection (CDP) work?
The current Cyber Protect Cloud documentation defines CDP as part of standard protection and states its limits: it works only on the NTFS file system, on Windows 7 and later and Windows Server 2008 R2 and later, and only for local folders. It cannot be used together with the Application backup option. These restrictions mean CDP is not applicable to every workload.
How are licensing and cost determined?
Cost is shaped by the number and type of workloads to be protected, the edition selected, the cloud storage quota and the retention periods. On the Public Cloud VM side, one Per-VM license covers three virtual machines; with a Universal Workload license, one license corresponds to a single workload. Share your inventory and we will clarify the scope and prepare a quote.
Vendor's official product page

Opens the vendor's original technical documentation and product page in a new tab.

AcronisAcronis Cyber Backup
Related Services

Services we deliver alongside this product

Acronis Cyber Backup licensing + deployment + support

Sora Yazılım handles licensing, deployment, training and ongoing management — all from a single team.

WhatsApp Support