Technology

Four mechanisms to back up, protect and restore.

Oxibox encrypts data at the source, disconnects backups from production, structurally protects committed points and restores systems in minutes on a supported hypervisor.

Source-side encryption

Encrypted before it leaves your environment.

Your data is encrypted at the source, before any transfer. No unencrypted data travels between the protected system and the backup repository.

  • Encryption applied source-side, before a single byte moves.
  • No unencrypted data in transit or at rest.
  • Integrity verified on every write.
Source-side encryption
EncryptionAt the source
In transitEncrypted
At restEncrypted
Unencrypted dataNone
Software air gap

Backups disconnected and protected against tampering.

After every transfer, the software air gap disconnects the repository from the production network. Backup Guardian then records committed restore points on an append-only path: the backup and administration interface exposes no command to modify or delete them. Behavioural analysis also flags abnormal writes.

  • Isolated file system, disconnected from the production network.
  • Append-only write path with an extend-only retention floor.
  • Overwrite and deletion blocked through a compromised administrator account.
  • Also disconnects your Veeam, Acronis or Commvault backups from production.
Software air gap
Backup GuardianDisconnected
Tampering attemptBlocked
Compromised accountOverwrite blocked
Immutability to setNone
R2V restore

Recovery in minutes on a supported hypervisor.

R2V restore brings systems back in minutes on a supported hypervisor, with no target preconfiguration. Automated restore tests are included.

  • VMware ESXi, Microsoft Hyper-V, Proxmox VE, Nutanix AHV and KVM-based hypervisors.
  • Delivered turnkey, with no pre-configuration required.
  • Automated restore tests included.
R2V restore
R2V restore4 min
HypervisorsVMware · Hyper-V · Proxmox · Nutanix · KVM
Pre-configurationNone
Restore testsAutomated
Sovereign cloud

Full Cloud hosted in Europe.

Full Cloud is hosted in two geo-redundant European datacentres. Data remains in the European Union and is not transferred outside it. Optional HDS hosting is available in France through an HDS-certified partner.

  • Two geo-redundant datacentres in Europe.
  • Optional HDS hosting through a certified partner.
  • NIS2- and DORA-aligned, France 2030-labelled.
Sovereign cloud
Full Cloud2 geo-redundant DCs
Datacentres2 · geo-redundant
ComplianceNIS2 · DORA
LabelFrance 2030
Under the hood

Additional functions.

Protection enabled by default

Disconnection and overwrite protection are applied automatically, with no immutability policy to create or maintain.

Dedup & multi-stream

Deduplication reduces the volume transferred and stored. Multi-stream transfer shortens the backup window.

Supported environments

NAS, VMware ESXi, Microsoft Hyper-V, Proxmox VE, Nutanix AHV, KVM-based hypervisors, Microsoft 365, Google Workspace, Docker, bare-metal and endpoints. Supports the 3-2-1-1 backup strategy recommended by France’s ANSSI.

3,000+
organisations protected
5 PB+
protected every day
2 DCs
geo-redundant in Europe
< 1 min
system recovery time

Over 3,000 organisations are protected, from SMBs to public operators. Their backups are disconnected and can be restored in minutes.

Keep your backups out of attackers’ reach.

Book a demo, or become a partner. We reply within one business day.