SRM / Zerto-class DR for Proxmox VE
Disaster recovery for Proxmox, done right.
Near-continuous VM replication, non-disruptive DR testing, and one-click failover across sites — the disaster-recovery orchestration Proxmox VE has always been missing. On any storage.
curl -fsSL https://proxdr.com/install.sh | sh Run it on your Linux VM — installs in seconds, then open the web UI. No agents to wrangle.
From $99/year · Works alongside Proxmox Backup Server
Replication
Protected guests and their recovery point objective, across every DR Site Pair.
Everything you need to recover from a disaster
Purpose-built for Proxmox VE — replication, point-in-time recovery, testing, and orchestration in one web UI.
Ship only changed blocks to the recovery site — on any storage, at the RPO you set, to the pool you choose.
Near-continuous replication
VM and workload replication from every 10 minutes down to ~1 minute — on any storage backend, not just ZFS or Ceph.
Works on any storage
A storage-agnostic engine built on QEMU dirty bitmaps brings DR to LVM-thin and other backends Proxmox can't natively replicate.
Put replicas where you want
Place each guest's recovery replica on any storage you choose — a directory, NFS or CIFS share, or a native ZFS or LVM-thin volume — per guest or per pair, with native snapshots for point-in-time recovery on block pools.
See every replica, live
Watch the first full sync with a real-time progress bar, transfer rate and ETA — then use the Shadows view to see every recovery replica across your sites and reclaim orphaned ones in one click.
No disruption to running guests
Replication reads changed blocks without pausing the guest — and never locks you out of it. The VM's console stays reachable throughout, even during the first full sync.
Roll back to a known-good, continuously verified moment — and fall back to backups when there's no live replica.
Point-in-time recovery
Roll back to a known-good moment, not just the latest. Retained recovery points are integrity-checked at capture and can be application-consistent via the guest agent.
Continuous integrity scrubbing
Recovery points aren't verified just once. A background scrub re-reads each retained point over its whole life and quarantines any whose contents drift — catching silent bit-rot before you ever fail over to a bad point.
Ransomware & corruption guard
A change-rate anomaly detector pauses replication when a VM looks mass-encrypted or corrupted — preserving a clean pre-attack point to recover to.
Catch a frozen guest
Replication health isn't guest health: a crashed or frozen VM keeps replicating a static disk, so its RPO stays green while it's dead. ProxDR watches each guest's agent, alerts when one goes unreachable, and reboots it back into service in one click.
Boots even from a dirty capture
Before a recovered guest starts, ProxDR can check and repair its filesystem — and reinstall a missing bootloader — on a throwaway clone of the recovery point, never the protected data. An agent-less guest captured crash-consistent still comes up instead of dropping to a repair shell.
Recover from backups too
No live replica? Fall back to a restore from Proxmox Backup Server, or any backup-capable storage (dir/NFS/CIFS), right from the same console.
Prove recovery without touching production, then fail over — and back, near-instantly — with ordered, health-gated runbooks.
Non-disruptive DR testing
Boot replicated VMs in an isolated network to prove recovery — without touching production or pausing replication. Schedule tests and export the evidence.
Orchestrated failover
Recovery plans with ordered boot groups, health gates, re-IP and network mapping — so an application comes back in the right order, not VM-by-VM by hand.
Near-instant failback
While you run at the recovery site, ProxDR reverse-replicates changes back to your primary continuously — so returning home applies a few MiB of delta in seconds instead of re-copying the whole disk.
Live progress for every operation
Failover, failback, DR test and planned migration each get their own live page — ordered steps, bytes transferred, and any error. Start it on the server, then close the browser; it keeps running.
Go / no-go preflight
Capacity, storage, network-mapping and machine-type compatibility are checked before failover — so it lands, even across Proxmox versions.
Cross-site planned migration
Move a running VM between sites with a graceful, near-zero-downtime cutover and zero data loss — roll back any time before you commit.
Run DR across many sites with the resilience, access controls, approvals, and audit trail teams need.
Multi-site & DRaaS
Two-site, many-to-one hub (DRaaS), and mesh topologies — managed from one web UI at every site.
Operate DR from either site
Both sites run the identical web UI — drive any operation from whichever controller you can reach. ProxDR routes each action to the site that owns it, so two operators can't cause a split-brain, and the recovery site stays fully in control even with the primary completely down.
No single point of failure
A full instance runs at each site. If your primary site is gone, you drive recovery from the surviving side.
Self-healing controller
An interrupted failover, a stalled reverse lane, or a controller restart mid-cycle are detected and recovered automatically — and if a DR copy ever diverges, one click rebuilds it. No database surgery, no guests left stuck half-way.
Enterprise access & audit
Role-based access, optional two-person approval for failover, and a tamper-evident audit trail — with exportable compliance reports.
See ProxDR work
The whole thing is one dark, fast web UI — replication, recovery points, and every failover step in one place.
Point-in-time recovery
Recover to a moment you can trust
ProxDR keeps many retained recovery points, not just the latest. Each is integrity-checked at capture — and then continuously re-scrubbed over its whole life. If a point's contents ever drift from silent bit-rot, it's automatically quarantined so you can never fail over to a corrupt one.
Recovery points — VMID 210
Capture nowRoll back to a known-good moment. Points are integrity-checked at capture and continuously re-scrubbed over their whole retention life.
Near-instant failback
Fail back in seconds, not hours
While you run at the recovery site, ProxDR reverse-replicates changes back to your primary the whole time. So when the primary is healthy, failback applies a few MiB of delta — not a full disk re-copy. Every step is live: bytes, timings, errors. Start it and walk away; it runs on the server.
Failback — Uptime-Kuma VMID 210
In progress · 00:16Runs on the server — you can leave this page or close the browser; it won't stop.
Near-instant failback. Continuous reverse sync kept proxdr-oly current while you ran at the recovery site — so returning home applies a 5.2 MiB delta instead of re-copying the full 32 GiB disk.
- Quiesce DR copy at proxdr-arc 20:14:02guest paused
- Apply reverse-synced delta to primary disk 20:14:055.2 MiB applied
- Verify primary disk 20:14:14scoped extents · matched · 9s
- Fence DR copy & boot guest at proxdr-olystarting…
- Resume forward protection — OLY → ARC
Multi-site
Every site, one pane
A full ProxDR instance runs at each site, so there's no single point of failure — if your primary is gone, you drive recovery from the surviving side. The Overview shows health and scale across your whole Proxmox estate at a glance.
Overview
Health and scale across your Proxmox estate.
2 of 2 connected sites responding to the Proxmox API.
2 pairs configured · replication, failover, and DR testing enabled.
How ProxDR protects your Proxmox VMs
- 1
Pair two sites
Run ProxDR at your production and recovery sites and pair them over one encrypted channel — no VPN required.
- 2
Replicate continuously
Choose the VMs to protect. ProxDR ships only changed blocks to the recovery site, tracking your target RPO per VM.
- 3
Test without disruption
Boot the replicated VMs in an isolated network to prove they recover — production and replication keep running.
- 4
Fail over, then fail back fast
Declare a disaster and run your recovery plan in order. ProxDR reverse-syncs to your primary while you run at the recovery site — so failback is near-instant when the site returns.
A VMware SRM & Zerto alternative for Proxmox
The enterprise DR capabilities you know — for Proxmox VE, at a fraction of the cost.
| Capability | Proxmox alone | ProxDR |
|---|---|---|
| VM replication | ZFS / Ceph only | Any storage |
| Non-disruptive DR testing | — | Yes |
| Recovery plans & boot order | — | Yes |
| One-click failover | — | Yes |
| Near-instant failback | — | Continuous reverse sync |
| Network re-mapping & re-IP | — | Yes |
| Point-in-time recovery | Backups only | Verified, app-consistent points |
| Continuous point-integrity scrub | — | Auto-quarantines bit-rot |
| Ransomware / corruption detection | — | Yes |
| Boot-time guest filesystem repair | — | fsck + bootloader, pre-boot |
| Pre-failover go / no-go checks | — | Yes |
| Live progress for every DR op | — | Yes |
| Self-healing after an interrupted op | — | Yes |
| Two-person failover approval & audit | — | Yes |
| Cross-site planned migration | Same cluster only | Across sites |
| Multi-site DR management | — | Yes |
Simple pricing, per DR Site Pair
A DR Site Pair is one production site paired with one recovery site — any number of nodes or VMs. Every plan includes the full feature set, per-pair, per year.
Home Lab
Non-commercial$99/yr per pair — for personal home labs, learning, and testing. What counts as non-commercial?
Business & commercial use
Running more than 25 pairs, or need an MSP / multi-tenant agreement? Talk to us. All business plans are for commercial use — see the license terms.
Proxmox disaster recovery FAQ
Does Proxmox have built-in disaster recovery?
Proxmox VE offers storage-level replication (ZFS via pvesr, Ceph via RBD mirroring) and backups via Proxmox Backup Server, but it has no SRM/Zerto-class DR orchestration: no recovery plans, non-disruptive DR testing, or one-click failover. ProxDR adds that layer, and works on storage backends Proxmox can't natively replicate.
What RPO can ProxDR achieve?
On ZFS and Ceph, ProxDR orchestrates native replication down to ~1 minute. On other storage its universal dirty-bitmap engine targets a 10-minute to 1-hour RPO — validated byte-for-byte on real Proxmox VE and QEMU.
How fast is failback after a disaster?
Near-instant. While you run at the recovery site, ProxDR reverse-replicates your changes back to the primary continuously. When the primary is healthy again, failback applies only the small delta accumulated since — often a few megabytes, in seconds — instead of re-copying the whole disk. Every step shows live on its own progress page.
Can I recover to a point before a ransomware attack?
Yes. ProxDR retains multiple integrity-verified, point-in-time recovery points, so you can fail over to a known-good moment rather than the latest (possibly-encrypted) state. Those points are not just checked once: a background scrub re-verifies each point's contents over its whole retention life and quarantines any that silently rot, so a corrupt point is caught before you need it. ProxDR also watches replication for change-rate anomalies — the signature of mass encryption or corruption — and pauses replication to preserve a clean pre-attack point.
Is this a VMware Site Recovery Manager (SRM) or Zerto alternative for Proxmox?
Yes. ProxDR brings the DR capabilities teams expect from VMware Live Site Recovery/SRM and Zerto — replication, DR testing, recovery plans, failover and failback — to Proxmox VE, at a fraction of the price.
Do I need a VPN between sites?
No. ProxDR connects your two sites over a single mutually-authenticated, encrypted channel. You can also ride an existing site-to-site VPN or Tailscale if you prefer.
How much does it cost?
Home Lab (non-commercial) is $99/year per DR Site Pair. Business licensing starts at $249/year for a single pair, with volume packs up to 25 pairs at a lower per-pair rate. A DR Site Pair is one production site paired with one recovery site. Every tier includes the full DR feature set — nothing critical is held back.
What's the difference between Home Lab and Business?
It's the same software, fully featured, either way. Home Lab is the discounted non-commercial tier for personal home labs, learning, and testing — not for running or protecting a business. Business licensing covers any commercial, production, or organizational use. See the license terms for the full definition of non-commercial use.
Protect your Proxmox estate today
Start a free 14-day trial with the full feature set. Prove recovery works in your own environment before you pay.
Start free trial