Your second data centre has the hardware. Failing over shouldn’t depend on a runbook nobody has read — VMware Live Recovery, called VCF Protection and Recovery since release 9.1, runs recovery plans across two vSphere sites over vSphere or array replication, with an on-prem clean room for ransomware recovery through ACC.
Buy through TechBag
Same software. Better outcome — at a lower cost.
How it’s rated
Full scoreboard ↓Quick answer
This page covers VMware Live Recovery (now VCF Protection and Recovery) — the on-prem DR and cyber recovery stack, sold through ACC or standalone SRM. The rest:
Most product pages skip this. We start here — so you buy a capability, not a buzzword.
Broadcom’s on-prem DR and cyber recovery for vSphere, sold as VMware Live Recovery until release 9.1.
What consolidation actually replaces, dimension by dimension.
| Dimension | A runbook document and a manual failover | VMware Live Recovery |
|---|---|---|
| Running a failover | A runbook in a shared document, run by hand | A recovery plan with boot order and IP changes |
| Proving the plan works | An annual drill that needs downtime | Test recoveries in an isolated network, any day |
| Choosing replication | Whatever the storage array offers | Per-VM vSphere Replication or the array via its SRA |
| Coming home | Rebuild the primary site by hand | Reprotect, then the same plan in reverse |
| After ransomware | Restore and hope the copy is clean | Check restore points in a clean room first (ACC) |
| What it is NOT | — | Backup, Hyper-V or physical protection, or a price list |
The cheapest test is one protection group: replicate a few VMs to the second site, run a test recovery, and time it against your RTO.
Vendors love diagrams; buyers need to know what they’re actually operating. Here’s the whole platform, demystified.
Paired with vCenter at the protected and recovery sites, it holds protection groups and recovery plans (boot order, IP changes, scripts) and runs tests, migrations and failovers.
Copies each VM regardless of the storage beneath it, on an RPO set per VM; in 9.1 one management server handles up to 5,000 replicated VMs and disks up to 62 TB.
Plans can drive an array’s own replication through a Storage Replication Adapter; Broadcom stopped certifying SRAs on 20 Aug 2025, and storage vendors now ship them.
With ACC, vSAN snapshots land in an immutable on-prem vault and restore points are checked in an isolated clean room with embedded EDR before VMs return.
Two vCenters and a recovery plan — vSphere or array replication underneath, a clean room for ransomware on top.
VMware Live Recovery (VCF Protection and Recovery since 9.1) fails vSphere VMs over to a second site by plan and checks restore points in a clean room.
Schedules are set VM by VM: as short as 1 minute and as long as 24 hours under ACC, but above 5 minutes on VCF core alone.
Recovery plans can drive storage-array replication through vendor SRAs, and stretched storage works from 9.0 via partner adapters.
Release 9.1 adds fan-out replication, tag-based protection group membership and replica seeding that skips a full first sync.
Plans set the order VMs start in, change their addresses and run custom steps, including scripts for physical servers it cannot protect.
A test recovery boots replicas in an isolated network while production and replication carry on, then cleans up after itself.
Reprotect reverses replication towards the original site; the same plan, run as a planned migration, then brings the VMs home.
Local vSAN ESA snapshots come with VCF; replicating them to a remote vault needs ACC, and 9.1 adds weekly and monthly schedules.
Restore points power on in an isolated on-prem clean room, cut off by vDefend, so malware is found before VMs go back to production.
ACC cyber recovery carries embedded EDR; 9.1 adds CrowdStrike Falcon support, licensed by you (BYOL), per Broadcom’s FAQ.
A 9.1 cyber-resilience demo, a setup walkthrough, a test-recovery how-to and a VMware Explore session on storage and DR, all from official VMware channels. The January 2026 videos use the VMware Live Recovery name, before the 9.1 rename.
Broadcom’s 9.1-era look at going from a ransomware attack to a validated recovery on VMware Cloud Foundation.
A setup and configuration walkthrough, recorded under the VMware Live Recovery name a few months before the 9.1 rename.
Running a test recovery of a plan, the drill to repeat before you trust it; shown under the pre-9.1 name.
A VMware Explore session on what changed in storage and disaster recovery across VMware Cloud Foundation.
Want a live, India-context walkthrough for your environment?
Book a guided demo →Here’s what genuinely sets it apart — and exactly where it stops.
Site Recovery plugs into vCenter at both sites, so the team that runs vSphere also runs protection groups, plans and tests. Recovered VMs stay in native vSphere format, nothing is converted either way, and failback is the same plan run in reverse after a reprotect.
Replicate per VM with vSphere Replication, which ignores the storage underneath and takes an RPO from 1 minute to 24 hours under ACC, or let a plan drive your array’s replication through its SRA. Mixing both keeps storage investments working while every other VM stays covered.
Under ACC, snapshots land in an immutable vSAN vault, and each restore point is vetted in an isolated, EDR-equipped clean room before any VM returns. That clean room is on-premises only, which suits Indian firms that want recovery copies on their own sites.
vSphere VMs only: no Hyper-V, no physical-server protection. No list price, USD only. ACC is VCF-only, so vSphere Foundation gets DR through SRM but no on-prem cyber recovery. 9.1 retires the separate appliances (redeploy, no upgrade from 9.0.2) and is the last release with vVols.
Check whether you hold VCF, VVF, an existing per-VM Live Recovery subscription or legacy SRM; that decides what you buy.
Keep array-replicated volumes behind their SRA, give the rest vSphere Replication, and set each VM’s RPO to its app.
Deploy the unified appliance at both sites (fresh, if you ran 9.0.2), pair them and build the first protection group.
Run a test recovery in isolation, then a planned migration and reprotect, timing every step against your promised RTO.
With ACC, stand up the vSAN vault and clean room, pick embedded EDR or your own CrowdStrike, and rehearse a ransomware drill.
Modelled on Gartner Peer Insights structure. *Counts and breakdowns are illustrative pending verified review collection.
“Our quarterly DR test used to eat a weekend. Now we run the plan in test mode on a Tuesday and nobody notices.”
“Big databases stay on array replication, everything else uses vSphere Replication, and one recovery plan starts both.”
“Reprotect, then the planned migration back, brought us home after a site drill; the IP mapping in the plan saved hours.”
“Going to 9.1 meant deploying the unified appliance fresh, not upgrading. Book a change window and redo the pairings.”
“The clean room let our security team inspect restore points before anything went back. CrowdStrike had to be our own licence.”
“The product is solid, but moving to ACC was a licensing conversation that took longer than the technical design.”
Analyst firms bury this view behind paywalls, and G2 retired its Grid. So here’s TechBag’s synthesis of the disaster recovery market — tap any vendor to see why it sits where it does.
Execution strength vs product vision — the classic market map, minus the paywall.
No list price; ACC per core (VCF only) or standalone SRM.
The grid nobody publishes — how many platforms a product protects vs how far it goes to recover cleanly after ransomware.
vSphere only; immutable vault and on-prem clean room with ACC.
Positions are TechBag’s illustrative synthesis of public review-platform data and vendor documentation — not a reproduction of any analyst graphic. Verify before relying on it.
Against Azure Site Recovery, HPE Zerto Software, Nutanix Disaster Recovery, Veeam Data Platform and AWS Elastic Disaster Recovery — on scope, RPO, orchestration, price, scale, ransomware defence, support and India.
| Dimension | VMware Live Recovery | HPE Zerto Software | Azure Site Recovery | AWS Elastic Disaster Recovery | Veeam Data Platform | Nutanix Disaster Recovery |
|---|---|---|---|---|---|---|
| What it is | vSphere DR, clean room | Journaling CDP for VMs | Native DR into Azure | Native DR into AWS | Backup platform + CDP | DR built into NCI |
| Deployment | Appliance at each site | Manager + per-host VRA | Azure vault + appliance | Agents, AWS staging area | Self-hosted servers | Prism, Nutanix both ends |
| Workloads covered | vSphere VMs only | VMs and clouds | VMs plus physical | Almost any server | Six hypervisors + agents | Nutanix clusters only |
| Replication and RPO | 1 min–24 h, by licence | Seconds, journaled | 5-minute points | Seconds, AWS’s claim | CDP in seconds | NearSync to zero RPO |
| Orchestration and failback | Plans, tests, reprotect | Recovery Plans, VPGs | Plans for 100 machines | Plans since Aug 2026 | Orchestrator in Premium | Recovery plans, failback |
| Pricing model | ACC per core, or SRM | Per protected VM | Per instance a month | Per server-hour | Per workload (VUL) | NCI edition or add-on |
| Published entry price | Not published | No list price | $25 per instance/month | $0.028 per server-hour | ~$350–450 reported | Quote only |
| Included vs add-on | 1-min RPO needs ACC | ARE for the cyber vault | Target billed apart | Fee is a fraction | CDP in every edition | Ultimate includes it |
| Scale limits | 5,000 VMs per server | 30-day journal cap | 15-day points, 100/plan | 300 servers per Region | 168-hour CDP history | Sync needs < 5 ms |
| Ransomware defence | On-prem clean room | Stream encryption alerts | No detection | Roll back to a snapshot | Immutable, scanned | Earlier recovery points |
| India DR site | Your own vSphere sites | Any target you pick | Four India regions | ap-south-1 and -2 | Your site or Vault India | Your second cluster |
| Support | Sev 1 in 30 min, 24x7 | HPE Tech Care | Paid Azure plan | Paid support tier | 1-hour Sev 1, all year | 1-hour P1; 30 min MC |
| Lock-in and exit | vSphere, VCF for ACC | Cross-platform moves | Azure only as target | AWS only as target | Licence follows workload | Nutanix at both ends |
| Best fit | VCF estates, second site | VMware, seconds RPO | Azure as DR site | AWS as DR site | One tool, many platforms | Leaving VMware for AHV |
Honest fit signals — because the fastest way to lose your trust is to pretend one product wins every scenario.
VMware Live Recovery is one of 27 disaster recovery products TechBag carries. The Disaster Recovery guide narrows them to a shortlist and shows the reasoning. →
Drag the sliders (VMs you protect; engineer-hour cost). Estimates model the engineer time spent running failovers, tests and failbacks by hand, at an assumed 1.5 hours per protected VM a year, with 70% of it removed by recovery plans and non-disruptive tests. Both figures are assumptions. Illustrative.
Loaded cost = salary + overheads per productive hour. Illustrative only — your TechBag quote models your actual environment and modules.
Quote only. Broadcom publishes no price: its FAQ sends buyers to an account representative, sells in USD only, charges the full term upfront and does not auto-renew. New buyers choose VMware Advanced Cyber Compliance, which only VCF customers can add and which Broadcom’s VCF 9.1 FAQ counts per core across the protecting vCenter, or standalone Site Recovery Manager for DR alone. Existing per-VM VMware Live Recovery customers keep their rights. TechBag checks your entitlements first, then gets the quote itemised with the licence unit stated.
Best for VCF estates that want DR and cyber recovery
Best for a broader rollout
Best for DR alone, including on vSphere Foundation
Whatever the list prices above, TechBag negotiates a significantly better deal — with GST-compliant INR invoicing and local support. Ask us for your discounted quote.
Tell us your requirements and current tools — we’ll model it against what you spend today.
Take this into your next vendor call — including ours.
Do you hold VCF, VVF, a per-VM Live Recovery subscription or SRM? Existing per-VM customers keep rights new buyers lack.
ACC (VCF only, DR plus cyber recovery) or standalone SRM (DR only)? Ask Broadcom to state the licence unit in writing.
Which VMs need under 5 minutes? That needs ACC; VCF core alone replicates at intervals above 5 minutes.
Is everything a vSphere VM? Physical servers and Hyper-V hosts need another DR tool; here they get scripted steps only.
Using array replication? Confirm your vendor ships an SRA for 9.1, and move off vVols, which 9.1 supports for the last time.
Running 9.0.2 standalone appliances? 9.1 needs a fresh deployment of the unified appliance, so book the window.
Are vCenter and ESX patched at both sites (VMSA-2024-0019, VMSA-2025-0004, VMSA-2026-0006)? DR leans on them.
Is the quote in USD, paid upfront, on a fixed term that will not auto-renew? Agree how extra VMs are trued up.
Map your entitlements and the VMs that need sub-5-minute RPOs first, or let a TechBag advisor choose between ACC and standalone SRM and plan the 9.1 deployment.
Stats, ratings, review counts and pricing are illustrative and sourced from public materials; verify before purchase.