Replication (CPP-011)

CPP-IdentifierCPP-011
CPP-LabelReplication
AuthorJohan Kylander
ContributorsBertrand Caron, Juha Lehtonen
EvaluatorsFelix Burger, Maria Benauer
Change historyComments
Version 1.0.0 - 2025-08-29Milestone version
Version 1.1.0 - 2026-03-27Migration to XML

1. Description of the CPP

The TDA automatically manages the replication of Information Packages to multiple storage locations (potentially in different geographical locations).

Inputs and outputs

Input(s)
Data
AIP
Metadata
Storage management information
Documentation/guidance
Storage management policy - Copies
Output(s)
Data
AIP
Metadata
Storage management information

Definition and scope

Replication is the process of copying data to a new storage medium in order to create new identical copies of AIP(s). All new copies created must have their fixity verified to ensure that the process was completed successfully. The process creates new parallel copies to achieve redundancy in the storage system. The process of replication makes no changes to the AIPs themselves but only operates on the storage layer to add storage locations for the new copies.

Redundancy is required to mitigate risks such as data corruption and unintentional or unwarranted data destruction by creating a fault tolerance. The number of parallel copies and the choice of media types is determined by how a TDA implements Risk Mitigation (CPP-012). Typically, strategies for the following aspects of redundancy and replication should be covered in the TDA policy:

  • Creation of fault tolerance: The creation of at least three parallel copies is recommended. In this way, the data is always stored on two other valid copies in cases where one copy is corrupted or destroyed;
  • Use of diverse storage media: Employing different storage media helps to avoid systematic errors and vulnerabilities and reduces the risk of vendor lock-in in a single storage solution;
  • Geographical distribution of copies: Storing the copies geographically dispersed reduces location based risks such as environmental disasters or political instability;
  • Offline storage of copies: Storing some copies offline reduces the risk of unwarranted tampering of the data by malicious users or software.

Process description

Trigger event(s)

Trigger EventCPP-identifier
Ingest. New ingested data that needs to be replicated when accepted to preservation. CPP-029 (Ingest)
Updates to a TDAs decisions on copy management as per its Risk Mitigation policies. The TDA defines how many copies are needed at all times and on what type of media. Changes to these policies can occur during preservation CPP-012 (Risk Mitigation)

Step-by-step description

NoSupplierInputStepsOutputCustomer
 sequence
1CPP-012 (Risk Mitigation)Copy management policyIdentify and locate AIP to be replicatedInventory of AIP to be replicated
CPP-012 (Risk Mitigation)Storage management informationSource storage medium with AIP
CPP-029 (Ingest) AIP
2 Copy management policy Select target storage medium to copy the AIP toTarget storage medium
3Source storage medium with AIPStart the copy process (steps 4 to 8).
Target storage medium
AIP
4Retrieve the AIP from the source storage medium
5Copy the AIP to the new storage mediumNew copy of AIP
6Existing/previous Fixity metadataValidate the fixity of the AIP on the target storage mediumValid status (step 7)Fixity Metadata>
Invalid status (go back to step 4) Fixity Metadata
7Update the fixity for the new AIP copy Fixity Metadata
8Update the storage location for the new AIP copy Storage management information
9Create preservation Event metadata of the replication Provenance metadata

Rationale(s) and worst case(s)

RationaleImpact of inaction or failure of the process
Have multiple copies of data Handling data corruption or destruction requires intact copies to restore lost data from.
Copies in different storage locations with different location based risks If data is not stored in different locations, any disaster to the location is a single point of failure. The same applies to the type of risk associated with the locations (e.g. political risk, risk of natural disasters etc.).
Copies should exist on different type of storage media Systematic errors in a storage media can affect all copies on the same type of media.
Offline copies that are not accessible by normal procedures Offline copies are safe from malicious users or software, as they cannot be accessed by normal means.
Open source storage solutions Vendor lock-in in storage solutions can pose a risk to the copies on those media if they have a dependency to an outside partner.

2. Dependencies and relationships with other CPPs

Dependencies

CPP-IDCPP-TitleRelationship description
CPP-012Risk Mitigation A TDAs storage policy, that defines how data is stored, the amount of parallel copies etc, is based on a TDAs risk assessment and mitigation.
CPP-005Identifier Management Soft dependency (i.e. may require): When a Digital Object or File is replicated, the replicant may be assigned a new PID.

Other relations

RelationCPP-IDCPP-TitleRelationship description
Not to be confused withCPP-030Refreshment Replication creates new parallel copies of AIPs, while Refreshment replaces AIPs onto new storage media.
Affinity withCPP-002Checksum Validation All new AIP copies must have their checksum validated to verify that the process was successful. The checksum validation is more mechanical in its nature in Replication, only aiming at verification of the copy process. In contrast to CPP-002, it does not have to negotiate with producers or examine the results.
Affinity withCPP-004Data Corruption Management A replication-like process is performed in data corruption management, in which AIPs must be replicated to replace corrupted AIPs.
Affinity withCPP-006AIP Batch Export Replication creates new parallel copies of AIPs within a TDAs archival storage. AIP Batch Export exports AIPs to external locations.

4. Reference implementations

Publicly available documentation

InstitutionOrganisation typeLanguageHyperlink
TIB – Leibniz Information Centre for Science and Technology and University Library, DENational library
Non-commercial digital preservation service
Research infrastructure
Research performing organisation
English https://wiki.tib.eu/confluence/spaces/lza/pages/93608373/Archival+Storage#ArchivalStorage-Redundancy
English https://wiki.tib.eu/confluence/spaces/lza/pages/93608943/Technical+infrastructure
CSC – IT Center for Science Ltd., FINon-commercial digital preservation serviceFinnish https://urn.fi/urn:nbn:fi-fe2023062157386
(section 3.2.4)
Finnish https://urn.fi/urn:nbn:fi-fe2024051731943
(Annex 3, section 2.1.1)
Archivematica, CADigital preservation systemEnglish https://archivematica.org/en/docs/archivematica-1.17/admin-manual/maintenance/maintenance/#data-backup