WinCC Tag Logging Archive Backup Configuration Reference
Overview
WinCC Tag Logging provides two parallel storage paths for process value archives: the active runtime store under %ProjectPath%\ArchiveManager\TagLoggingFast and %ProjectPath%\ArchiveManager\TagLoggingSlow, and a user-defined backup destination such as D:\BackupArchive. When backup is activated in the Tag Logging Editor, the WinCC ArchiveManager copies each completed segment from the runtime store to the configured backup directory. Understanding the exact transfer timing, retention rules, and segment-change synchronization is essential for designing a documented, audit-ready process historian that survives drive failures without violating regulatory retention windows.
This reference covers three platforms:
- WinCC V7.5 / V7.5 SP1 (TIA-adjacent configuration in WinCC Explorer)
- WinCC RT Professional in TIA Portal V18 / V19 / V20
- PCS 7 V9.x with Process Historian and Storage Plus
Archive Manager Directory Structure
The WinCC ArchiveManager creates a fixed directory layout under the project root when the runtime database is initialized. The default paths and their purposes are summarized in the table below.
| Path | Owner | Purpose | Default Retention |
|---|---|---|---|
\ArchiveManager\TagLoggingFast |
TagLoggingFast archive | High-frequency cyclic process values (typically 500 ms to 1 s) | Segment-driven, cyclic buffer |
\ArchiveManager\TagLoggingSlow |
TagLoggingSlow archive | Low-frequency process values (typically 1 s to 1 min and longer) | Segment-driven, cyclic buffer |
\ArchiveManager\AlarmLogging |
Alarm Logging service | Persistent alarm/event records | Size-driven, cyclic buffer |
D:\BackupArchive (user-defined) |
ArchiveManager backup target | Long-term backup copy of completed segments | NOT cyclic - retained until manual deletion |
Segment Change and Backup Trigger Timing
A WinCC Tag Logging archive is composed of time-based or size-based segments. A segment change closes the current segment file and opens a new one. The backup operation is triggered by this event.
Per the WinCC documentation, the backup copy normally starts 15 minutes after the first time-related segment change. The 15-minute offset is intentional - it prevents the backup process from contending with the segment-close write that the ArchiveManager is still finalizing. If you require the backup to begin exactly at Runtime start, the start time of the segment change must be defined prior to starting Runtime so that the first segment change coincides with the project activation timestamp.
| Scenario | First Segment Change | First Backup Copy Starts |
|---|---|---|
| Default (runtime already started) | Configured trigger time (daily/weekly/monthly) | Trigger time + 15 minutes |
| Segment start synchronized to Runtime start | Runtime start | Runtime start + 15 minutes |
| Manual "Segment change now" via Tag Logging Editor | Operator trigger | Operator trigger + 15 minutes |
| Size-driven segment reached | When configured size limit hit | Size-limit event + 15 minutes |
Backup Configuration in WinCC V7.5 (Tag Logging Editor)
The legacy and current WinCC V7.x configuration is performed inside the WinCC Explorer on the Engineering Station (ES).
- Open WinCC Explorer on the ES and load the target project.
- Right-click Tag Logging in the navigation tree and select Open.
- In the Tag Logging Editor, expand Archives in the navigation area.
- Select Archive configuration → TagLogging Fast or TagLogging Slow.
- In the data area, double-click the archive to open the Properties dialog.
- Switch to the Backup tab.
- Tick Activate backup.
- Enter the destination path, for example
D:\BackupArchive\TagLoggingFast. The path must exist before runtime starts; the ArchiveManager does not create intermediate directories. - Confirm with OK and save the project.
Steps for linking an already-archived backup directory are documented in the Siemens V7.5 support entry "How to Link an Archive Backup - WinCC V7.5" via the shortcut menu Archive configuration → TagLogging Fast/Slow → Link archive.
Backup Configuration in WinCC RT Professional (TIA Portal)
RT Professional uses a different paradigm: each data log owns its own log backup configuration instead of the global ArchiveManager directory.
- Open the HMI device configuration in TIA Portal.
- Navigate to Runtime settings → Logs → Data logs.
- Select the target data log (e.g.,
ProcessValues_1Hz). - Open Properties → Backup.
- Configure the following parameters:
| Parameter | Description | Typical Value |
|---|---|---|
| Backup path | Absolute path or UNC to backup share | \\FS01\HistorianBackup\HMI01 |
| Backup interval | Time between backup sweeps | 15 minutes (matches segment-close cadence) |
| Number of backup files | Maximum retained backup files per log | 288 (one day's worth at 5-min intervals) |
| Backup file format | CSV, RDB, or proprietary TLG | CSV for exchange, RDB for performance |
| Backup on segment change | Trigger backup when segment closes | Enabled |
The TIA Portal V20 cloud documentation "Configuring the log backup (RT Professional)" confirms that "the backup normally starts 15 minutes after the first time-related segment change." This timing is identical to the V7.x behavior, simplifying migration planning.
PCS 7 Backup and Recovery Strategy
PCS 7 extends the WinCC archive model with the Process Historian and Storage Plus for redundancy. The official Siemens whitepaper "PCS 7 - How do you optimize your backup and recovery strategy for the process historian?" (entry ID 109808141) recommends:
- Use a dedicated backup partition or LUN sized for the largest expected retention window (typically 12-36 months for FDA 21 CFR Part 11 installations).
- Separate the Process Historian primary store from the backup volume by physical disk controller (independent I/O path).
- Schedule daily backups during low-load windows (02:00-04:00 local).
- Document and validate the segment-change schedule so the first backup completes within 15 minutes of project start.
- Verify backup integrity with the PH Maintenance tool:
phmaintool -verifybackup -path D:\BackupArchive.
For PCS 7 V9.x, the Process Historian mirrors WinCC segments to the configured backup target and additionally replicates to the redundant PH server if configured.
Original Archive vs Backup: Retention Behavior
One of the most common sources of confusion in WinCC archive administration is the asymmetry between the runtime store and the backup destination.
| Property | Runtime Store (TagLoggingFast/Slow) | Backup Destination (D:\BackupArchive) |
|---|---|---|
| Cyclic buffer | Yes - segments deleted when configured time period or size expires | No - files persist indefinitely |
| Content | Active segments + recent N segments per retention rule | Exact copy of every closed segment ever backed up |
| Modification by ArchiveManager | Read, write, delete | Read and append only; never delete |
| Effect of disk full | Oldest segments purged automatically | Backup halts; runtime continues with loss of new backups |
| Typical size on disk | Bounded by segment count and size | Monotonically increasing over project lifetime |
| Audit suitability | Limited - data may be overwritten | High - immutable record until manual purge |
Verifying the Backup Path is Active
- On the WinCC server, open Windows Explorer and navigate to the configured backup path.
- Wait at least 15 minutes after the first segment change of the day.
- Confirm at least one file with extension
.MC7or.DBF(V7.5 legacy) or.tlg(TIA RT Professional) is present. - Cross-reference the file timestamp with the expected segment-close timestamp in WinCC Explorer → Tag Logging → Archives → Statistics.
- If no file appears, check the Windows Application Event Log for sources
WinCC ArchiveManagerandCCArchiveManager.
Troubleshooting Matrix
| Symptom | Likely Root Cause | Remediation |
|---|---|---|
| No backup files appear after segment change | Backup destination path does not exist or service account lacks write permission | Create path manually; verify MACHINE\SYSTEM\CurrentControlSet\Services\CCArchiveMgr account has Modify rights |
| Backup files appear but runtime logs missing segments | Segment change interval exceeds 15-minute backup sweep, or segment was actively written when backup ran | Increase segment size or shorten segment interval; ensure segments are closed before backup sweep |
| Event ID 0x80070005 access denied on backup write | Antivirus locking backup files; or NTFS DACL missing | Add AV exclusion for *.tlg, *.mc7; grant backup path Authenticated Users: Modify
|
| Backup runs but original archive still grows unbounded | Tag Logging segment retention configuration is incorrect (no time/size limit set) | Edit archive properties → "Segment change" and "All segments" time limits |
| Backup triggers earlier than 15 minutes after first segment | Manual segment change issued from editor | Expected behavior - manual triggers bypass the 15-minute guard |
| Backup path UNC shows \\\\FS01\\Backup not reachable | WinCC service account lacks delegation rights for CIFS share | Configure constrained delegation in Active Directory or use local path with DFS-R for replication |
| PCS 7 PH backup verification reports corrupt segments | Source runtime store had I/O error during segment close | Restore affected segments from previous backup; check disk SMART and event log |
Service Account and Security Considerations
The WinCC ArchiveManager service runs under the SIMATIC HMI or the configured CCArchiveMgr user context. The backup destination inherits the same identity. For network paths:
- Use a dedicated service account (do not reuse Administrator).
- Grant Modify on the backup share, not Full Control.
- Set Encrypting File System (EFS) or BitLocker on the backup volume for audit-sensitive installations.
- Disable 8.3 name creation on the backup volume to avoid path-length surprises on long archive names.
For PCI-DSS, 21 CFR Part 11, or IEC 62443 compliance, ensure the backup share supports audit logging at the storage layer (Windows file server audit, NetApp FPolicy, or equivalent).
Capacity Planning Formulas
Estimate the backup storage requirement with the following relationships:
| Symbol | Meaning | Unit |
|---|---|---|
N_tags |
Number of logged tags | count |
f_s |
Sampling frequency | Hz |
B_v |
Bytes per value (compressed) | bytes |
T_ret |
Required retention period | seconds |
K_safety |
Safety margin factor (typ. 1.3) | unitless |
The required backup capacity is:
BackupBytes = N_tags * f_s * B_v * T_ret * K_safety
Worked example: 500 tags at 1 Hz, 4 bytes per compressed value, 365 days retention, 1.3 safety margin:
BackupBytes = 500 * 1 * 4 * (365 * 86400) * 1.3
= 500 * 4 * 31_536_000 * 1.3
~ 82 GB
For higher-frequency logging, substitute the per-tag sampling rate and recompute per archive group (Fast vs Slow).
Verification Checklist
- Backup destination path exists and is writable by the ArchiveManager service account.
- First segment change occurs within the first 15 minutes of Runtime start (or scheduled offset).
- First backup file appears within 15 minutes after the first segment change.
- Subsequent backup files appear on every segment change without manual intervention.
- Runtime store (TagLoggingFast/Slow) enforces cyclic retention as configured.
- Backup destination retains files indefinitely until external purge.
- Capacity monitoring is in place (e.g., SCADA-side threshold alarms at 70% and 85% disk usage).
- Restore test has been performed within the last regulatory audit cycle.
FAQ
When does the WinCC archive transfer from the runtime store to the backup destination?
The backup copy begins approximately 15 minutes after the first time-related segment change after Runtime start. To make the backup synchronous with Runtime activation, define the segment-change start time before starting Runtime so the first segment change occurs at project start.
Will archives exist in both the runtime store and the backup destination simultaneously?
Yes. The backup operation is a copy, not a move. The runtime store retains recent segments per its cyclic buffer settings while the backup destination accumulates a full historical copy.
Are backup archives deleted automatically when the time period or segment size expires?
No. The backup destination is not a cyclic buffer. Backup files persist until manually removed by an operator or an external housekeeping script. The runtime store, in contrast, deletes the oldest segments once the configured time period or size of all segments is exceeded.
Does the same backup logic apply to WinCC RT Professional in TIA Portal?
Yes. RT Professional retains the same 15-minute backup-after-segment-change rule for data logs. Per-log backup parameters are configured under Runtime settings → Logs → Data logs → Properties → Backup.
What is the recommended capacity sizing for the backup destination?
Estimate bytes as N_tags * f_s * B_v * T_ret * 1.3, where the safety factor of 1.3 covers overhead and unexpected retention extensions. For a 500-tag, 1 Hz, 365-day archive this yields roughly 82 GB. Plan disk capacity for 3-5 years of growth.