3 ms·
Offsite to.. where? Sea? Data residency in Gulf states is very strict and basically nothing is leaving the countries
by nixass 17d ago
Offsite to.. where? Sea? Data residency in Gulf states is very strict and basically nothing is leaving the countries
- firesteelrain 17d agoTypically 300 miles geographically but could be hard in some Gulf States
- XorNot 17d agoIn a Gulf State 300 miles is still within ballistic missile range and any belligerent is going to target both places if at all. Strictly speaking from a missile defense perspective there's an argument 2 sites are a waste of valuable interceptors.
- tgsovlerkhgsel 17d agoThey're likely going to target two datacenters, not the datacenters + your medium sized company's office NAS and the safe in the office manager's home. (Encryption handles confidentiality concerns.)
- niij 17d ago> (Encryption handles confidentiality concerns.) Which is why data residency is such a stupid concept.
- firesteelrain 17d agoYes and no. For example if you are doing Azure, technically Azure can see tenant traffic I believe and you need to use both a Platform Key and CMK for data rest. VMs need encryption at host turned on too. There is nothing to say that a determined adversary may still get at your data so it needs to stay in country.
- jamesfinlayson 17d agoYeah same with AWS - they say they can't see my custom KMS key but... this stuff all lives on their servers, not on my servers. AWS definitely have the ability to see my KMS keys and decrypt my data but I assume that they won't unless a judge tells them to.
- schwank 17d ago[flagged]
- abeyer 17d agoA datacenter not owned/run by a major US or Israeli company seems like it might be a good first step.
- KnightHawk3 17d agoDo you think they could ask for a backup