Backups in an OpenSearch cluster
OpenSearch Managed Databases automatically create index backups. You do not need to configure or monitor backups yourself.
To create index backups, the built-in OpenSearch snapshot mechanism is used. A snapshot is a copy of the current state of indices and data. Learn more about the snapshot mechanism in the Take and restore snapshots section of the OpenSearch documentation.
Backups are created incrementally:
- the first backup contains a full copy of all data;
- all subsequent backups contain only the changes since the previous successful backup.
You can restore indices from backups only in the cluster where they were created. Index backups are not stored after a cluster is deleted. You cannot restore a cluster or create a new one from the index backups of a deleted cluster.
Backups are stored in isolation from other users' backups.
Backups cannot be downloaded. Automatic backup creation cannot be disabled.
Backup schedule
Index backups are created every 30 minutes.
Backup retention period
Index backups are stored for 7 days.
Restore indexes from a backup
You can restore indices from backups via the OpenSearch API or the OpenSearch Dashboards web interface. You cannot restore system indices that contain global state and cluster settings, for example .opendistro_security.
OpenSearch API
OpenSearch Dashboards
-
Find the date and time the backup you want to restore indices from was created. To do this, list the backups:
curl -XGET -u 'admin:<password>' \--cacert ~/.opensearch/root.crt \'https://<ip_address>:<port>/_cat/snapshots/dbaas-repo'Specify:
<password>— administrator password;<ip_address>— node IP address;<port>— connection port.
A list of backups will appear in the response. Copy the backup creation date and time from the backup name—they are specified in the
yyyymmdd-hh-mmformat. For example:dbaas-snapshot-20250928-09-48 SUCCESS 1759052881 09:48:01 1759052883 09:48:03 1.8s 5 5 0 5dbaas-snapshot-20250928-10-18 SUCCESS 1759054681 10:18:01 1759054682 10:18:02 600ms 5 5 0 5dbaas-snapshot-20250928-10-48 SUCCESS 1759056481 10:48:01 1759056482 10:48:02 600ms 5 5 0 5Here
20250928-09-48,20250928-10-18and20250928-10-48are the date and time the backups were created. -
Get the names of the indices you need to restore. To do this, display information about the backup:
curl -XGET -u 'admin:<password>' \--cacert ~/.opensearch/root.crt \'https://<ip_address>:<port>/_snapshot/dbaas-repo/dbaas-snapshot-<timestamp>?pretty'Specify:
<password>— administrator password;<ip_address>— node IP address;<port>— connection port;<timestamp>— date and time of the backup provided in step 1.
In the
indicesfield, copy the names of the indexes to restore. -
Check if there are any open indices in the cluster with the same names as those you want to restore. To do this, display information about all open indices:
curl -XGET -u 'admin:<password>' \--cacert ~/.opensearch/root.crt \'https://<ip_address>:<port>/_cat/indices?v&h=index,health,status,docs.count,store.size&s=index&expand_wildcards=open,hidden'Specify:
<password>— administrator password;<ip_address>— node IP address;<port>— connection port.
Index names will be specified in the
indexfield. -
If the cluster already contains open indices with the same names as those you want to restore, delete them. You cannot have duplicate names for open indices in an OpenSearch cluster.
curl -XDELETE -u 'admin:<password>' \--cacert ~/.opensearch/root.crt \'https://<ip_address>:<port>/<index>'Specify:
<password>— administrator password;<ip_address>— node IP address;<port>— connection port;<index>— the name of the index to delete. If you need to specify multiple indices, separate them with commas.
-
Restore indexes:
curl -XPOST -u 'admin:<password>' --cacert ~/.opensearch/root.crt 'https://<ip_address>:<port>/_snapshot/dbaas-repo/dbaas-snapshot-<timestamp>/_restore' \-H 'Content-Type: application/json' \-d '{"indices": "<index>","include_global_state": false}'Specify:
<password>— administrator password;<ip_address>— node IP address;<port>— connection port;<timestamp>— date and time of the backup provided in step 1; ;<index>— the name of the index to restore. If you need to specify multiple indices, separate them with commas.