跳至主要内容 跳至导航 跳至页脚

你的密钥,你的加密,没有例外。

每个备份都用你自己的密钥加密。不是厂商的密钥,不是共享密钥。只有你的。

问题所在

厂商管理的密钥并非真正属于你

大多数备份工具加密你的数据——用他们的密钥。这意味着他们可以访问它。他们的员工可以访问它。他们端的泄露会暴露你的数据。如果你不控制密钥,你就不控制你的数据。

Only 8% 的组织加密了 80% 以上的云数据 1 Thales 2025 Cloud Security Study
$4.88M 全球数据泄露的平均成本 2 IBM Cost of a Data Breach Report 2024
57% 的组织使用 5 个以上的密钥管理系统,导致加密盲区 1 Thales 2025 Cloud Security Study
真实成本

弱加密治理花费你多少钱?

拖动滑块以匹配你的环境。查看厂商管理加密的真实成本。

工作原理

一条命令,全面掌控。

1

生成

运行 rdc keygen production。创建仅由您持有的 4096 位 RSA 密钥对。

2

加密

每个备份使用您的密钥通过 AES-256-GCM 封存。数据在静态和传输中都自动加密。

3

控制

零知识架构。Rediacc 永远看不到您的密钥,永远不接触您的明文。只有您能解密。

备份数据 明文
gitlab 42 GB
nextcloud 128 GB
mailcow 84 GB
mariadb 96 GB
加密
AES-256-GCM
加密备份 已封存
gitlab AES-256
nextcloud AES-256
mailcow AES-256
mariadb AES-256
底层技术

为什么厂商管理的加密会辜负你

厂商管理加密意味着你的厂商持有密钥。他们可以解密你的数据。他们的员工可以访问它。他们端的泄露会暴露一切。Rediacc 使用客户持有密钥和零知识架构——我们永远看不到你的明文或你的密钥。

时间有限?

跳过深度解读,直接获取五分钟速览版,供团队站会阅读。

下载简版简报(PDF)
差距对比

加密控制对比

大多数备份工具用他们的密钥加密你的数据。那不是你的加密——那是他们的。

来源(21)
  1. Thales, "2025 Cloud Security Study," conducted by S&P Global 451 Research, 2025. "Only 8% of organizations encrypt 80% or more of their cloud data." "57% use five or more encryption key managers."
  2. IBM Security, "Cost of a Data Breach Report 2024," July 2024. "The global average cost of a data breach reached $4.88 million in 2024."
  3. Veeam supports external KMS integration for encryption key management including AWS KMS and Azure Key Vault.
  4. Rubrik supports customer-managed encryption keys via external KMS integration including KMIP-compatible servers.
  5. Commvault integrates with AWS KMS, Azure Key Vault, HashiCorp Vault, and KMIP-compatible key management servers.
  6. Druva Enterprise Key Management (BYOK) lets customers use their own AWS KMS keys to encrypt backup data.
  7. Veeam supports encryption key rotation through KMS integration for compliance with security policies.
  8. Rubrik supports encryption key rotation through its KMS integration for enterprise key management.
  9. Commvault supports automated encryption key rotation via the Rotate Encryption Master Keys workflow with configurable intervals.
  10. Druva supports both cloud encryption key and customer-managed AWS KMS key rotation for security compliance.
  11. Veeam encrypts backup data at rest using AES-256 encryption with hardware acceleration support.
  12. Rubrik encrypts all data at rest using AES-256 encryption with software or hardware-based key management.
  13. Commvault supports AES-256 encryption at rest with hardware-accelerated AES-NI support for backup data.
  14. Druva encrypts all data at rest with AES-256 using unique per-customer Data Encryption Keys.
  15. Veeam encrypts all data in transit using TLS for network traffic between backup components.
  16. Rubrik encrypts all data in transit using TLS 1.2+ between cluster nodes and remote targets.
  17. Commvault encrypts network traffic in transit using mutual TLS 1.3 with AES_256_GCM_SHA384 cipher suite.
  18. Druva encrypts all data in transit with TLS 1.2 (256-bit) between customer environment and Druva Cloud.
  19. Veeam Backup & Replication is deployed on-premises on Windows Server with full customer control over infrastructure.
  20. Rubrik is deployed as on-premises appliances (r6000 series) with integrated compute, storage, and software.
  21. Commvault supports fully self-hosted on-premises deployments with CommServe, MediaAgent, and Access Node components.

掌控你的加密

从免费的社区版开始。一分钟内生成你的第一个密钥。

免费开始使用社区版
$ rdc repo up production