Home › Knowledgebase › KB-554

How to set up and manage versioned backups to protect against ransomware and accidental file overwrites

Summary

This guide helps you troubleshoot and resolve: How to set up and manage versioned backups to protect against ransomware and accidental file overwrites. Follow the steps below to fix the issue.

Quick Tip: Need immediate assistance? 💻 Open a Ticket

Common Causes

Versioned backups keep multiple historical copies of your files rather than overwriting them each time a change is saved. If a ransomware attack encrypts your data, a colleague accidentally overwrites an important spreadsheet, or a file becomes corrupted, you can roll back to a clean version from a specific date and time. This guide walks through enabling versioning in OneDrive, on a typical NAS device, and in third-party cloud storage, plus the day-to-day habits that keep your backups healthy.

Why Versioning Matters

Standard sync tools mirror your current files. If those files are damaged, the damage syncs everywhere. Versioning breaks that chain by preserving older copies on the server side, so even a fully compromised workstation still has clean originals waiting in the cloud or on your NAS.

Tip: The 3-2-1 rule still applies. Keep three copies of important data, on two different types of media, with one stored offsite. Versioning strengthens one of those copies; it does not replace the others.

Set Up Versioning in OneDrive for Business

OneDrive for Business retains up to 500 versions of every file by default and keeps deleted files in the recycle bin for 93 days. Personal OneDrive retains versions for 30 days on free plans, or longer with a Microsoft 365 subscription.

  1. Sign in to OneDrive on the web using your work or personal Microsoft account.
  2. Right-click the file or folder you want to manage and choose Version history.
  3. Review the list of saved versions. Each entry shows the date, time, and the person who made the change.
  4. Click the three dots next to a version and choose Restore to make it the current version, or Download to save a copy locally.
  5. Versioning is enabled by default in OneDrive. To confirm your sync settings, open the OneDrive desktop client, click the OneDrive icon in the system tray, select Settings > Sync and backup > Advanced settings, and verify your sync folders are configured correctly.
Important: Version history only protects files that exist in OneDrive. Files stored only on your local workstation and never synced are not covered. Confirm critical folders are inside your OneDrive sync root.

Set Up Versioning on a NAS

Most modern NAS devices from Synology, QNAP, and Asustor include snapshot or versioning features. The exact menu names vary, but the workflow is similar.

Synology Example

  1. Open Synology DSM in your browser and sign in as an administrator.
  2. Install and open Snapshot Replication from the Package Center if it is not already installed.
  3. Go to Snapshot > Shared Folder and select the folder you want to protect.
  4. Click Settings > Schedule and choose how often snapshots are taken. For ransomware protection, a snapshot every 4 to 6 hours is a sensible starting point.
  5. Set a Retention policy. Keeping 24 hourly, 7 daily, and 4 weekly snapshots gives you a month of recoverable history without filling the volume.
  6. Enable Snapshot Lock if your NAS firmware supports it. This prevents ransomware running on a connected device from deleting snapshots.

QNAP and Asustor

Look for Snapshots in the storage manager, or install the Versioning app from the app centre. The principles are the same: schedule regular snapshots, set a retention policy, and lock them against deletion where possible.

Tip: Snapshots are not backups. They live on the same physical disks as the live data. Pair snapshots with an offsite backup job to a second NAS, a cloud target such as Backblaze B2, or a tape drive for true resilience.

Set Up Versioning in Third-Party Cloud Storage

Google Drive

  1. Open Google Drive in your browser.
  2. Right-click a file and choose File information (or click the 'i' icon), then select Version history or Manage versions.
  3. Click Upload new version to add a revised copy, or select an older version and choose Make current or Download.
  4. Google Workspace admins can extend Drive's native retention by going to Admin console > Apps > Google Workspace > Drive and Docs > Data management and configuring a Vault retention rule.

Dropbox

  1. Sign in to Dropbox on the web.
  2. Hover over a file, click the three dots, and choose Version history.
  3. Select a version and click Restore or Download.
  4. Dropbox Business admins can enable Extended Version History under Admin console > Settings > Version history to keep deleted files and edits for up to 10 years on eligible plans.

Day-to-Day Management Habits

Troubleshooting

Version history is missing or empty

NAS snapshots are failing

Restored file looks corrupted

Still Having Issues?

Need more help? If the issue persists after trying these steps, please open a support ticket and our team will assist you.

💻 Open a Ticket