Skip to content

Archive

Recovery

3 articles
Database 15 Sep 2026 5 min read

PostgreSQL Full Page Writes Repair Torn Pages

A PostgreSQL data page can be larger than the atomic write unit provided by storage. If the host fails while a page is being written, part of that page may reach durable storage while another part remains from an older version. Recovery cannot safely apply ordinary change records to a page whose internal structure may already be inconsistent. full_page_writes addresses that failure mode. With the setting enabled, PostgreSQL records a complete image of a page in write-ahead log (WAL) on the first modification of that page after a checkpoint. During crash recovery, that image can replace a torn on-disk page before later WAL records are replayed.

Cybersecurity 08 Sep 2026 10 min read

Make Destructive Actions Recoverable Before They Become Permanent

A delete button can turn one stolen session, one excessive permission, or one operator mistake into permanent data loss. Authentication and authorization still matter, but they answer only whether a request is allowed now. They do not answer whether the effect should become irreversible immediately. For data whose loss would be costly, a useful defensive pattern is to separate logical deletion from permanent deletion. The first step removes the object from normal use without destroying the underlying recovery copy. Permanent deletion happens later, after a defined recovery window or a stronger authorization step.

Cybersecurity 03 Sep 2026 5 min read

Design Backups for Security and Recovery

Backups are a security control, not only an operations convenience. They can limit the impact of ransomware, destructive mistakes, compromised administrator accounts, corrupted data, and failed deployments. A backup strategy is useful only when attackers cannot easily destroy it and the organization can reliably restore from it. Copying production data to another location is therefore only the beginning. Define what must be recoverable Start by identifying the systems and data that matter to recovery. This may include databases, uploaded files, configuration, encryption key material, infrastructure definitions, and other state that cannot simply be rebuilt from source control.