Syntra Systems
Cases Services Products About Blog IT Caravan
+998 70 010 68 44 +7 999 900 22 12
RusEngUzb
Glowing neon cubes nested inside one another in a dark room: a metaphor for copies of data within copies
IT and servers

1C and CRM Backup: What to Copy and How to Test It

By Nikita Zhulin · · 8 min read

Backup of a 1C or CRM database is a regular copy of data that you can deploy on a clean server and open. It takes three things: a copy of the database itself, a copy of the files and settings around it, and restore testing on a schedule. A copy that has never been restored remains an assumption.

Key takeaways

  • A backup includes more than the 1C or CRM database: attachments, configuration, server settings and keys, without which the database cannot be opened on a new server.
  • The method depends on the DBMS and on how much data you can afford to lose: a dump returns the state at the time of the dump, continuous archiving lets you go back to any moment.
  • A copy that has never been restored on a separate machine remains an assumption: restore testing is part of the process, not a one-off event.
  • CISA recommends three copies on two types of media, one of them off-site, and the ability to roll back at least seven days.
  • If the database holds biometric or genetic data or telecom subscriber data, its copies are also stored in Uzbekistan, as Article 27-1 of the personal data law requires.

We covered the general 3-2-1 scheme and the RTO and RPO terms in the article on recovering IT systems after failures. Here is the practice for databases: what exactly to copy, which method to use, how often, and how to make sure the copy works.

What a backup includes besides the database itself

A backup includes everything without which the database cannot be opened on a new server: not only the database file or dump, but also the files next to it, the configuration and the environment settings.

What to copyWhere it livesWhat you lose without a copy
1C databaseA database file in file mode, or a database in a DBMS in client-server modeAccounting, documents, balances, settlements
Configuration and extensionsConfiguration repository, extension filesCustomizations made for your company
CRM databaseDBMS on the serverDeals, communication history, tasks
User filesAttachment folders, templates, print formsScanned contracts, document templates
Server settingsConfiguration files, job schedules, certificatesTime to set up the environment again
Keys and licensesProtection key, license files, service accessDowntime until software rights are restored
Tip Write a one-page list of what you copy and keep it away from the server. On the day of an outage it shows what is missing for a restart.

Which backup method to choose for a database

The method depends on the DBMS, the size of the database and how much data the company is ready to lose between copies. Client-server 1C and CRM databases run on a DBMS, for example PostgreSQL or Microsoft SQL Server, and the rules of that DBMS apply to them.

The PostgreSQL documentation describes three approaches: an SQL dump, a file system level copy, and continuous archiving with point-in-time recovery.

MethodWhat it givesLimitation
DumpA portable copy, convenient for small databases and for moving to another serverReturns the state only at the time of the dump; the larger the database, the longer it takes to restore
DBMS file copyA physical copy that restores fasterThe files must be consistent, so it is done strictly by the DBMS documentation
Continuous archivingReturn to any moment after the base copyNeeds an unbroken chain of archived logs and monitoring of the process

For the last method the PostgreSQL documentation says: you can restore the database to its state at any time after the base backup, but you need a continuous sequence of archived log files. That is why archiving is set up and tested before the first base copy, and the process is kept under watch.

The same documentation states that pg_dump does not produce a file system level backup and cannot be used for continuous archiving: such dumps are logical and do not contain enough data to replay the log. The two schemes are not mixed; you choose one deliberately.

Important A file-mode 1C database is a single file, and copying it while users are working is risky: the copy may be inconsistent. Copy the file when sessions are closed, and treat a database export made with 1C tools as an extra copy until a test restore has been done.

How often to copy 1C and CRM databases

Copy frequency equals the acceptable data loss (RPO): if the business can lose an hour of work, copies are needed at least hourly; if a day, daily. This number is set by the manager, not by the administrator.

The figure differs between systems. An accounting database that posts documents all day loses more from a nightly copy than a counterparty directory that changes once a week. A CRM with active correspondence and calls should be copied more often than a database opened once a month.

How to check that a copy restores

There is only one way to check a copy: deploy it on a separate machine and work in the database. A log entry saying the job finished proves that a file was created, not that data can be restored from it.

  1. Take the copy from the storage, not from the production server: this also tests access to the copy.
  2. Deploy it on a test machine with no access to the production database and no integrations, so that it does not send emails and payments to customers.
  3. Open the database and run control checks: the latest document is there, a report for a chosen date matches the production database, attachments open.
  4. Measure the time from start to a working database and compare it with the RTO.
  5. Record the result and fix the gaps you found: what was missing and how long it took.

DBMS checks help but do not replace a test restore. The Microsoft SQL Server documentation says that RESTORE VERIFYONLY checks that the backup is complete, the volumes are readable and the checksum matches, but does not verify the structure of the data inside the backup.

The CISA recommendations for small and medium businesses add: test both full and partial restores and make sure you can roll data back at least seven days.

Where to keep copies: the 3-2-1 scheme and Uzbek law

Copies are stored so that one incident cannot destroy both the database and all its copies. CISA describes the 3-2-1 scheme in the same recommendations.

In a ransomware attack one more copy matters: one that cannot be reached from the working network. The CISA ransomware response guide describes restoring data from offline, encrypted backups, with a warning: take care not to re-infect clean systems during recovery.

A copy holds the same data as the production database, so the storage location is checked against the same rules. Under Article 27-1 of the Law On Personal Data No. ZRU-547 as amended by Law No. ZRU-1125 of 26.03.2026, biometric and genetic data and data of users of telecom operators working in the country must be stored in Uzbekistan. Under Article 20, databases with such data are subject to registration in the State Register of Personal Data Databases.

Other personal data may be stored abroad under the conditions of the law. We wrote about choosing a cloud in the article on cloud and server options in Uzbekistan. For a database with biometrics, the copy is kept in the country, and the scheme is agreed with a lawyer.

Where to start if there are no copies or they have never been tested

Start with an inventory and a first test restore, not with buying storage: until you know what exactly you are protecting, any decision is guesswork.

  1. List your databases and services: 1C, CRM, website, mail, file server. Next to each, write who uses it and what stops without it.
  2. Ask department heads to name acceptable downtime and data loss. That gives the RTO and RPO for each system.
  3. Set up copying to a separate disk or server and add a second copy off-site.
  4. Run the first test restore and write down what went wrong. The result gives you a list of improvements for the next month.

What to put in a backup policy

A policy turns backup into a process instead of a one-off setup: it names who is responsible, what is copied and how the result is checked. One page is enough.

Which mistakes turn a backup into a formality

More often than not a copy fails not because of a complex technical cause but because of an organizational mistake that is visible in advance.

How we organize backup

At Syntra Systems we start with a calculation: we define RPO and RTO for each database together with you, then split copies into database, files and settings, choose a method for your DBMS and place copies in different locations. Syntra Cloud servers are in a data center in Uzbekistan: a server for a website or CRM is from $30 per month.

After that, backup has to be maintained: watching the jobs and running test restores. The support page states that the plan from $250 per month includes updates, copies and monitoring, and the response time for a critical failure depends on the plan and is fixed in an appendix to the contract. For more on how support and SLAs work, see the article on IT infrastructure technical support.

Let’s discuss your project

Tell us what you need, and we will estimate the timeline and cost and suggest a solution.

Discuss backup setup

Frequently asked questions

How many copies of a database to keep and how far back to roll?

Per CISA: three copies on two types of media, one of them off-site, and the ability to roll data back at least seven days. The exact retention depth is set by the RPO of each system.

Can you copy a 1C database while users are working in it?

For a file-mode database, pick a time when nobody is working: a copy of a file that is changing at that moment may be inconsistent. For a client-server database, use the DBMS tools: a dump, a file copy per its documentation, or log archiving.

Does an external drive or a flash drive work as a second copy?

It works as a second type of media next to the server disks, if it is kept apart from the working network and restores are tested. CISA suggests combining, for example, a hard drive and the cloud, and keeping one copy off-site.

What to do with copies if the server was hit by ransomware?

Restore data from offline, encrypted backups and take care not to re-infect clean systems, as the CISA guide says. That is why one copy is kept unreachable from the working network.

Is RESTORE VERIFYONLY enough?

No: per the Microsoft SQL Server documentation, the command checks that the backup is complete, the volumes are readable and the checksum matches, but not the structure of the data inside. Only a test restore on a test machine gives the answer.

Does a database need state registration together with its copies?

Under Article 20 of the personal data law, databases with data that must be stored in Uzbekistan are registered: biometric, genetic and telecom subscriber data. The article sets no such requirement for other databases.

Cover photo: David Yu, Pexels

Read also